REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Mail.ru'
disclosed a bug submitted by
b'godexmachine'
b'[online.games.mail.ru] - Sensitive information disclosure'
16 Jan 2019
b'Mail.ru'
disclosed a bug submitted by
b'godexmachine'
b'[3k.mail.ru] - Content spoofing'
16 Jan 2019
b'Dropbox'
disclosed a bug submitted by
b'karlito'
b'Disclose anonymous accessible link on embedded files in paper dropbox sessions'
15 Jan 2019
b'Weblate'
disclosed a bug submitted by
b'elmahdi'
b'No Rate Limit On Add new word'
14 Jan 2019
b'RATELIMITED'
disclosed a bug submitted by
b'aty'
b'Line feed injection in get request leads AWS S3 Bucket information disclosure '
14 Jan 2019
b'HackerOne'
disclosed a bug submitted by
b'jobert'
b'Embedded submission form UUIDs can be enumerated through GraphQL node interface, exposing sensitive program details'
11 Jan 2019
b'SEMrush'
disclosed a bug submitted by
b'saya'
b'Persistent CSV injection'
11 Jan 2019
b'SEMrush'
disclosed a bug submitted by
b'prial261'
b'protocol & Ports are not shown in third-party site redirect warning page '
11 Jan 2019
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'mik317'
b'Account takeover due to CSRF in "Account details" option on ?????????'
11 Jan 2019
b'Chaturbate'
disclosed a bug submitted by
b'imran1121'
b'Unsecure Caching Mechanism May Expose users Credit Card Details'
11 Jan 2019
b'Starbucks'
disclosed a bug submitted by
b'debo'
b'SQL Injection Proof of Concept for Starbucks URL'
09 Jan 2019
b'CFP Time'
disclosed a bug submitted by
b'drosofraymaybe'
b'Content spoofing on error pages or text injection'
08 Jan 2019
b'Grabtaxi Holdings Pte Ltd'
disclosed a bug submitted by
b'phreak'
b'Production secret key leak in config/secrets.yml'
08 Jan 2019
b'Urban Dictionary'
disclosed a bug submitted by
b'linkks'
b'Source Code Disclosure'
08 Jan 2019
b'Valve'
disclosed a bug submitted by
b'ronak_9889'
b'Comment restriction in subsection "Workshop" of domain "steamcommunity.com" can be bypassed using IDOR'
07 Jan 2019
b'Valve'
disclosed a bug submitted by
b'xpaw'
b'Reflected XSS on help.steampowered.com'
07 Jan 2019
b'Valve'
disclosed a bug submitted by
b'tvmpt'
b'XSS @ store.steampowered.com via agecheck path name'
07 Jan 2019
b'Valve'
disclosed a bug submitted by
b'romesful'
b"CSRF | Ban or unban users in broadcast's chat"
07 Jan 2019
b'Valve'
disclosed a bug submitted by
b'mvc'
b"Stored XSS in the guide's GameplayVersion (www.dota2.com)"
07 Jan 2019
b'Valve'
disclosed a bug submitted by
b'zemnmez'
b'code injection, steam chat client'
07 Jan 2019
1
...
420
421
422
423
424
...
741
BY DENIS WERNER - @NOBBD -
IMPRESSUM