REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'DuckDuckGo'
disclosed a bug submitted by
b'fpatrik'
b'SSRF in proxy.duckduckgo.com via the image_host parameter'
15 Aug 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'becojo'
b'[flintcms] Account takeover due to blind MongoDB injection in password reset'
15 Aug 2018
b'Mail.Ru'
disclosed a bug submitted by
b'maxarr'
b'XSS ? ???? ??????, ? ????? ?????? ?????.'
15 Aug 2018
b'??????'
disclosed a bug submitted by
b'cdl'
b'Phone Call to XXE via Interactive Voice Response'
15 Aug 2018
b'Shopify'
disclosed a bug submitted by
b'shahzad__sadiq'
b'Stored XSS on activity'
14 Aug 2018
b'SEMrush'
disclosed a bug submitted by
b'ethical_hacker30121996'
b'Password reset token leakage via referer'
14 Aug 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'danny_grander'
b'Arbitrary File Write through archive extraction'
12 Aug 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'danny_grander'
b'Arbitrary File Write Through Archive Extraction'
12 Aug 2018
b'Ed'
disclosed a bug submitted by
b'glassofbeer'
b'Physical Laptop Takeover'
12 Aug 2018
b'HackerOne'
disclosed a bug submitted by
b'japz'
b'Private program policy page still accessible after user left the program'
12 Aug 2018
b'Passit'
disclosed a bug submitted by
b'alpha66'
b'Session not changed after password reset'
11 Aug 2018
b'Passit'
disclosed a bug submitted by
b'paramdham'
b'Authentication Required When password change '
11 Aug 2018
b'Passit'
disclosed a bug submitted by
b'muon4'
b'app.passit.io is vulnerable against Brute Force password quessing attack'
11 Aug 2018
b'Passit'
disclosed a bug submitted by
b'saneh'
b'Authorization Token is Not expiring After Logout'
11 Aug 2018
b'Passit'
disclosed a bug submitted by
b'alpha66'
b'Insecure Account Removal'
11 Aug 2018
b'Passit'
disclosed a bug submitted by
b'alpha66'
b'Weak Password Policy on Signup'
11 Aug 2018
b'Passit'
disclosed a bug submitted by
b'exception'
b' `X-XSS-Protection` header has not been set at app.passit.io'
11 Aug 2018
b'Passit'
disclosed a bug submitted by
b'ketankumar_godhani'
b'Missing HSTS (Strict Transport Security)'
11 Aug 2018
b'Passit'
disclosed a bug submitted by
b'kevinhwang'
b'Insecure opening of external links in app.passit.io/list allows for reverse tabnabbing'
11 Aug 2018
b'Passit'
disclosed a bug submitted by
b'muon4'
b'CSV-injection in export functionality'
11 Aug 2018
1
...
444
445
446
447
448
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM