REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'haxta4ok00'
49
b'jon_bottarini'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Vimeo'
disclosed a bug submitted by
b'bugdiscloseguys'
b'Domain pointing to vimeo portfolio are prone to takeover using on-demand.'
27 Aug 2018
b'DuckDuckGo'
disclosed a bug submitted by
b'd0nut'
b'SSRF on duckduckgo.com/iu/'
25 Aug 2018
b'Publishing Placeholder'
disclosed a bug submitted by
b'generaleg'
b'Same Origin Policy Bypass at ??????.com'
25 Aug 2018
b'SEMrush'
disclosed a bug submitted by
b'lezibintlgent'
b'Improper authentication on registration'
24 Aug 2018
b'
'
disclosed a bug submitted by
b'tomdev'
b'AWS Credentials leaked: access to production database backups, SSL certs and more'
23 Aug 2018
b'
'
disclosed a bug submitted by
b'filedescriptor'
b'DOM based XSS on *.??????.com via document.domain sink in Safari'
22 Aug 2018
b'WordPress'
disclosed a bug submitted by
b'xsszeeshan2'
b'Clickjacking In jobs.wordpress.net'
22 Aug 2018
b'WordPress'
disclosed a bug submitted by
b'europa'
b'Information / sensitive data disclosure on some endpoints'
22 Aug 2018
b'GitLab'
disclosed a bug submitted by
b'nyangawa'
b'Vulnerability in project import leads to arbitrary command execution'
22 Aug 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'asgerf'
b'Prototype pollution attack (extend)'
22 Aug 2018
b'ok.ru'
disclosed a bug submitted by
b'iframe'
b'Privacy violation ??? ??????? ? ??????????.'
21 Aug 2018
b'Evernote'
disclosed a bug submitted by
b'jobert'
b'Wormable stored XSS in www.evernote.com'
21 Aug 2018
b'Mail.Ru'
disclosed a bug submitted by
b'truwa'
b'XSS in delivery club'
21 Aug 2018
b'ICQ'
disclosed a bug submitted by
b'iframe'
b'api.icq.com / ??????????? ???????? ???????? ? ???????? ?????????? ????'
21 Aug 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'douglas_hall'
b'[egg-scripts] Command injection'
19 Aug 2018
b'Twitter'
disclosed a bug submitted by
b'filedescriptor'
b'Incorrect param parsing in Digits web authentication'
18 Aug 2018
b'HackerOne'
disclosed a bug submitted by
b'dudez'
b'Internal usage of AdBlockPlus may expose PoC URLs to unknown third-parties'
17 Aug 2018
b'SEMrush'
disclosed a bug submitted by
b'apapedulimu'
b'Post Based XSS On Upload Via CK Editor [semrush.com]'
17 Aug 2018
b'Vanilla'
disclosed a bug submitted by
b'balis0ng'
b'Vanilla SQL Injection Vulnerability'
17 Aug 2018
b'New Relic'
disclosed a bug submitted by
b'michiel'
b'User to Admin privilege escalation in Infrastructure Conditions - /v2/accounts/1835740/alerts/conditions'
17 Aug 2018
1
...
433
434
435
436
437
...
729
BY DENIS WERNER - @NOBBD -
IMPRESSUM