REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
65
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'WordPress'
disclosed a bug submitted by
b'b258ea62bf297b02afa9854'
b'Arbitrary file deletion in wp-core - guides towards RCE and information disclosure'
29 Aug 2018
b'Valve'
disclosed a bug submitted by
b'yalter'
b'Buffer overflows in demo parsing'
28 Aug 2018
b'Valve'
disclosed a bug submitted by
b'chippy'
b'Malformed Skybox .TGA in Half-Life (GoldSRC) leads to Access Violation'
28 Aug 2018
b'Rocket.Chat'
disclosed a bug submitted by
b'edoverflow'
b"Remote code execution by hijacking an unclaimed S3 bucket in Rocket.Chat's installation script."
28 Aug 2018
b'Weblate'
disclosed a bug submitted by
b'mur90210'
b'Audit log validation'
28 Aug 2018
b'Weblate'
disclosed a bug submitted by
b'japz'
b'Insecure Account Removal #2'
28 Aug 2018
b'Uber'
disclosed a bug submitted by
b'peuch'
b'Information Leakage - GitHub - VCenter configuration scripts, StorMagic usernames and password along with default ESXi root password'
27 Aug 2018
b'Uber'
disclosed a bug submitted by
b'peuch'
b'Information Leak - GitHub - Endpoint Configuration Details'
27 Aug 2018
b'Weblate'
disclosed a bug submitted by
b'footstep'
b' Account Restore / Reactivating an old email via old reset link'
27 Aug 2018
b'Weblate'
disclosed a bug submitted by
b'footstep'
b'Running 2 accounts with a single email #3'
27 Aug 2018
b'
'
disclosed a bug submitted by
b'michiel'
b'Remote Code Execution on Proxy Service (as root)'
27 Aug 2018
b'Vimeo'
disclosed a bug submitted by
b'bugdiscloseguys'
b'Domain pointing to vimeo portfolio are prone to takeover using on-demand.'
27 Aug 2018
b'DuckDuckGo'
disclosed a bug submitted by
b'd0nut'
b'SSRF on duckduckgo.com/iu/'
25 Aug 2018
b'Publishing Placeholder'
disclosed a bug submitted by
b'generaleg'
b'Same Origin Policy Bypass at ??????.com'
25 Aug 2018
b'SEMrush'
disclosed a bug submitted by
b'lezibintlgent'
b'Improper authentication on registration'
24 Aug 2018
b'
'
disclosed a bug submitted by
b'tomdev'
b'AWS Credentials leaked: access to production database backups, SSL certs and more'
23 Aug 2018
b'
'
disclosed a bug submitted by
b'filedescriptor'
b'DOM based XSS on *.??????.com via document.domain sink in Safari'
22 Aug 2018
b'WordPress'
disclosed a bug submitted by
b'xsszeeshan2'
b'Clickjacking In jobs.wordpress.net'
22 Aug 2018
b'WordPress'
disclosed a bug submitted by
b'europa'
b'Information / sensitive data disclosure on some endpoints'
22 Aug 2018
b'GitLab'
disclosed a bug submitted by
b'nyangawa'
b'Vulnerability in project import leads to arbitrary command execution'
22 Aug 2018
1
...
450
451
452
453
454
...
746
BY DENIS WERNER - @NOBBD -
IMPRESSUM