REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Liberapay'
disclosed a bug submitted by
b'kaushalag29'
b'Buffer overflow'
10 Jun 2018
b'Algolia'
disclosed a bug submitted by
b'n00bsec'
b'Directory traversal at https://msg.algolia.com'
09 Jun 2018
b'Starbucks'
disclosed a bug submitted by
b'b3nac'
b'Host header injection/redirection via newsletter signup'
08 Jun 2018
b'Mail.Ru'
disclosed a bug submitted by
b'zishanadthandar'
b'Modifying application settings via clickjacking on o2.mail.ru'
08 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'mks11nov'
b'A single user can subscribe a community multiple times'
07 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'kunal94'
b'Punny code Detection Parsing should be implemented on Markdown '
07 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'zir0x'
b'Returning back from the browser after logging off will disclose some information'
07 Jun 2018
b'Vend'
disclosed a bug submitted by
b'stok'
b'Race Condition : Exploiting the loyalty claim https://xxx.vendhq.com/loyalty/claim/email/xxxxx url and gain x amount of loyalty bonus/cash'
07 Jun 2018
b'HackerOne'
disclosed a bug submitted by
b'japz'
b'Exposing hackerone users personally identifiable information by abusing sandbox with swag reward enabled'
07 Jun 2018
b'HackerOne'
disclosed a bug submitted by
b'herrera'
b'Lack of cross-origin request blocking allows leaking of sensitive information on several endpoints'
07 Jun 2018
b'Tor'
disclosed a bug submitted by
b'metnew'
b'Tor Browser: iframe with `data:` uri has access to parent window'
06 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'kapytein'
b"Exploiting JSONP callback on /username/charts.json endpoint leads to information disclosure despite user's privacy settings"
05 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'zuh4n'
b'Missing back-end user input validation can lead to DOS flaw'
05 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'wsfengfan474'
b'Csrf token does not meet security design'
05 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'lahataleputih'
b'REGISTRATION USING FAKE EMAIL ACCOUNT'
05 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'kapytein'
b'Unsafe deserialization in Libera Pay allows to escalate a SQL injection to Remote Command Execution'
04 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'mah1ndra'
b'CSRF token manipulation in every possible form submits. NO server side Validation'
04 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'buggy_hunter'
b'csrf token did not changed after login/logout many times'
04 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'nthack'
b'Current CSP Policy chained with HTML Injection can lead to Data Exfiltration'
04 Jun 2018
b'Liberapay'
disclosed a bug submitted by
b'4w3'
b'Phishing by Navigating Browser Tabs'
04 Jun 2018
1
...
455
456
457
458
459
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM