REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
67
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b"Hanno's projects"
disclosed a bug submitted by
b'juliocesar'
b'Open redirect on https://blog.fuzzing-project.org'
10 Nov 2018
b"Hanno's projects"
disclosed a bug submitted by
b'geeknik'
b"Reflected xss in Serendipity's /index.php"
09 Nov 2018
b"Hanno's projects"
disclosed a bug submitted by
b'geeknik'
b'blind sql injection'
09 Nov 2018
b"Hanno's projects"
disclosed a bug submitted by
b'oreamnos'
b'SSRF in rompager-check'
09 Nov 2018
b"Hanno's projects"
disclosed a bug submitted by
b'oreamnos'
b'Open redirect in Serendipity (exit.php)'
09 Nov 2018
b"Hanno's projects"
disclosed a bug submitted by
b'oreamnos'
b'Reflected Cross-Site Scripting in Serendipity (serendipity.SetCookie)'
09 Nov 2018
b"Hanno's projects"
disclosed a bug submitted by
b'oreamnos'
b'SQL injection in Serendipity (serendipity_fetchComments)'
09 Nov 2018
b'Khan Academy'
disclosed a bug submitted by
b'rootbakar'
b'Possible Take Over Subdomain For Inbound Emails '
08 Nov 2018
b'Shopify'
disclosed a bug submitted by
b'h13-'
b'PII disclosure -- Past team members & their email ID(personal email) can be viewed by Staff member with no permissions on Partner Dashboard'
08 Nov 2018
b'Shopify'
disclosed a bug submitted by
b'rijalrojan'
b'Disclosure of Github Issues'
08 Nov 2018
b'HackerOne'
disclosed a bug submitted by
b'adac95'
b'Self DOM-Based XSS in www.hackerone.com'
08 Nov 2018
b'HackerOne'
disclosed a bug submitted by
b'tolo7010'
b"Disclosure of top 10 vulnerability types for programs that haven't enabled the Insights feature"
07 Nov 2018
b'HackerOne'
disclosed a bug submitted by
b'ateek'
b'Proper verification is not done before sending invitations to researchers for certain private programs with rules e.g. "Participants must be US-based"'
07 Nov 2018
b'Shopify'
disclosed a bug submitted by
b'dr_dragon'
b'Stored xss'
07 Nov 2018
b'DuckDuckGo'
disclosed a bug submitted by
b'smither'
b'DOM XSS on 50x.html page on proxy.duckduckgo.com'
07 Nov 2018
b'Shopify'
disclosed a bug submitted by
b'palant'
b'App messaging can be hijacked by third-party websites'
07 Nov 2018
b'Shopify'
disclosed a bug submitted by
b'palant'
b'Admin bar: Incomplete message origin validation results in XSS'
07 Nov 2018
b'Ubiquiti Networks'
disclosed a bug submitted by
b'hamlon'
b'UniFi Video Server - Broken access control on system configuration'
07 Nov 2018
b'Ubiquiti Networks'
disclosed a bug submitted by
b'hamlon'
b'UniFi Video Server - Arbitrary file upload as SYSTEM'
07 Nov 2018
b'TTS Bug Bounty'
disclosed a bug submitted by
b'cablej_dds'
b'Redirect on authorization allows account compromise'
06 Nov 2018
1
...
444
445
446
447
448
...
755
BY DENIS WERNER - @NOBBD -
IMPRESSUM