REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Kaspersky Lab'
disclosed a bug submitted by
b'palant'
b'Kaspersky Password Manager: HTML injection in the browser action pop-up via user name'
24 Dec 2018
b'Flash (IBB)'
disclosed a bug submitted by
b'kinine'
b'HTTP MitM on Flash Player settings manager allows attacker to set sandbox settings'
23 Dec 2018
b'RATELIMITED'
disclosed a bug submitted by
b'hamad_iheb'
b'Server Header disclose The Os and Web server Version '
22 Dec 2018
b'HackerOne'
disclosed a bug submitted by
b'albinowax'
b'Denial of service via cache poisoning'
22 Dec 2018
b'RATELIMITED'
disclosed a bug submitted by
b'yasinylcn17'
b'Hackerone1'
21 Dec 2018
b'FanDuel'
disclosed a bug submitted by
b'mobius07'
b'Passive mixed content issues on the site https://*.fanduel.com'
21 Dec 2018
b'SEMrush'
disclosed a bug submitted by
b'saya'
b'User Controllable Cookie'
21 Dec 2018
b'Starbucks'
disclosed a bug submitted by
b'ozzyoz'
b'Able to bypass information requirements before launching a Chat.'
20 Dec 2018
b'RATELIMITED'
disclosed a bug submitted by
b'hamad_iheb'
b'Editable Wiki repo by anyone '
20 Dec 2018
b'Uber'
disclosed a bug submitted by
b'vijay_kumar1110'
b'IDOR on partners.uber.com allows for a driver to override administrator documents'
19 Dec 2018
b'Uber'
disclosed a bug submitted by
b'reptou'
b'XSS in ubermovement.com via editable Google Sheets'
19 Dec 2018
b'Uber'
disclosed a bug submitted by
b'hussain_0x3c'
b'Reflected XSS in lert.uber.com'
19 Dec 2018
b'Uber'
disclosed a bug submitted by
b'hanuman1'
b'SMS URL verification link does not expire on phone number change and lacks rate limiting'
19 Dec 2018
b'Uber'
disclosed a bug submitted by
b'vijay_kumar1110'
b'Site-wide CSRF on eats.uber.com'
19 Dec 2018
b'Uber'
disclosed a bug submitted by
b'filedescryptor'
b'lert.uber.com: Few default folders/files of AURA Framework are accessible'
19 Dec 2018
b'Keybase'
disclosed a bug submitted by
b'mirchr'
b'Linux privilege escalation via trusted $PATH in keybase-redirector '
18 Dec 2018
b'Keybase'
disclosed a bug submitted by
b'xpn'
b'Privilege Escalation via Keybase Helper'
18 Dec 2018
b'Nextcloud'
disclosed a bug submitted by
b'ezkbd'
b'Ubuntu 12.04 Privilege Escalation'
18 Dec 2018
b'OLX'
disclosed a bug submitted by
b'lukeberner'
b"Able to list user's public name, username, phone number, address, facebook ID..."
17 Dec 2018
b'MyCrypto'
disclosed a bug submitted by
b'shantuman'
b'SPF Records (SMTP protection not used)'
17 Dec 2018
1
...
419
420
421
422
423
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM