REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Boozt Fashion AB'
disclosed a bug submitted by
b'ramsexy'
b'[www.boozt.com] - Authentication bypass'
25 May 2018
b'Instacart'
disclosed a bug submitted by
b'bigshaq'
b'View & add to cart unlisted items via IDOR'
25 May 2018
b'Valve'
disclosed a bug submitted by
b'xpaw'
b'Aapp name leakage on economy history page'
24 May 2018
b'Valve'
disclosed a bug submitted by
b'xpaw'
b'Unfiltered input allows for XSS in "Playtime Item Grants" fields'
24 May 2018
b'Valve'
disclosed a bug submitted by
b'osintopsec'
b'Stored XXS @ https://steamcommunity.com/search/users/#text= via Profile Name'
24 May 2018
b'GitLab'
disclosed a bug submitted by
b'jobert'
b'GitHub import allows user to create child group under existing namespace'
24 May 2018
b'MyCrypto'
disclosed a bug submitted by
b'nitesculucian'
b'Missing SPF record for the in scope domain'
24 May 2018
b'MyCrypto'
disclosed a bug submitted by
b'pradyumna1998'
b'Missing SPF Records.'
24 May 2018
b'Mail.Ru'
disclosed a bug submitted by
b'alex2018frolov'
b'???????? XSS ( API )'
23 May 2018
b'Mail.Ru'
disclosed a bug submitted by
b'alex2018frolov'
b'XSS ??????????'
23 May 2018
b'Shopify'
disclosed a bug submitted by
b'0xacb'
b'SSRF in Exchange leads to ROOT access in all instances'
23 May 2018
b'Bitwarden'
disclosed a bug submitted by
b'kmodi'
b'Tracking Bitwarden firefox addon users'
23 May 2018
b'Phabricator'
disclosed a bug submitted by
b'xiaoyinl'
b'The "Download Raw Diff" URL is viewable by everyone'
23 May 2018
b'Trello'
disclosed a bug submitted by
b'slowrabbit'
b'Session can be continuously reused by editting "token" cookie.'
23 May 2018
b'Starbucks'
disclosed a bug submitted by
b'bayotop'
b'XSS on https://www.starbucks.co.uk (can lead to credit card theft) (/shop/paymentmethod)'
22 May 2018
b'VK.com'
disclosed a bug submitted by
b'trainzment'
b'????? ??????? ???????? ??? ???? ?????????????'
22 May 2018
b'VK.com'
disclosed a bug submitted by
b'executor'
b'Reflected XSS ? /al_audio.php'
22 May 2018
b'LocalTapiola'
disclosed a bug submitted by
b'd3ad1y_b0073r'
b'User Information Disclosure via Json response'
22 May 2018
b'Mail.Ru'
disclosed a bug submitted by
b'vik0nd'
b'[dl.beepcar.ru] CRLF Injection'
22 May 2018
b'Mail.Ru'
disclosed a bug submitted by
b'ruvlol'
b'invalid handling of redirect_uri at o2.mail.ru/jsapi/button'
22 May 2018
1
...
458
459
460
461
462
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM