REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'haxta4ok00'
49
b'jon_bottarini'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Mail.Ru'
disclosed a bug submitted by
b'danila_xawdxawdx'
b'Account Takeover on https://www.delivery-club.ru ????? ??????????? ???????.'
04 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'd4w'
b'The csrf token remains same after user logs in'
04 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'mah1ndra'
b'Same CSRF token is being used for deleting other platform login\xe2\x80\x99s within an account and across other liberapay Account\xe2\x80\x99s'
04 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'4bg0p'
b'Anyone can register organization legal type as "Soletrader"'
03 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'babayaga_'
b'Liberapay Non Verified Account Takeover with signup feature'
03 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'amaljacob'
b'Able to View other users income history'
02 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'johnevetsecond24'
b'Unsecure changing password'
02 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'sonahri_501'
b'twitter api access token leaked on github '
02 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'techguynoob'
b'Authenticated reflected XSS on liberapay.com via the back_to parameter when leaving a team.'
02 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'albatraoz'
b'CSRF to make any user accept the invitation to the team'
02 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'europa'
b'Origin IP found, Cloudflare bypassed'
02 Jun 2018
b'HackerOne'
disclosed a bug submitted by
b'amans'
b'HackerOne support disclosing report state without checking user identity'
02 Jun 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'patrickrbc'
b'Unrestricted file upload (RCE)'
02 Jun 2018
b'Twitter'
disclosed a bug submitted by
b'trabajoduro_2'
b'No Rate Limit in email leads to huge Mass mailings'
01 Jun 2018
b'PHP (IBB)'
disclosed a bug submitted by
b'97ffb8d5'
b'Heap Buffer Overflow (READ: 1786) in exif_iif_add_value'
01 Jun 2018
b'Mail.Ru'
disclosed a bug submitted by
b'arafat'
b'Clickjacking Vulnerability on https://support.my.com/games/ticket/xxxx/'
01 Jun 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'tungpun'
b'[serve] Directory listing and File access even when they have been set to be ignored'
31 May 2018
b'Valve'
disclosed a bug submitted by
b'milkgames'
b"GetReports works for hubs you don't have access to"
30 May 2018
b'Starbucks'
disclosed a bug submitted by
b'damian89'
b'Unauthorized access to jiratest.starbucks.com '
30 May 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'dienpv'
b'[localhost-now] bypassing url filter which leads to read content of arbitrary file'
30 May 2018
1
...
446
447
448
449
450
...
727
BY DENIS WERNER - @NOBBD -
IMPRESSUM