REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Monero'
disclosed a bug submitted by
b'bugbound'
b'remote access to localhost daemon, can issue jsonrpc commands'
22 Feb 2018
b'GitLab'
disclosed a bug submitted by
b'edoverflow'
b'Using GitLab to monitor and hijack domains in mass quantity.'
21 Feb 2018
b'Inflection'
disclosed a bug submitted by
b'exception'
b'Open redirect at app.goodhire.com via ReturnUrl parameter'
21 Feb 2018
b'Inflection'
disclosed a bug submitted by
b'exception'
b'XSS at https://app.goodhire.com/member/GH.aspx'
21 Feb 2018
b'SEMrush'
disclosed a bug submitted by
b'r0p3'
b'Single Sing On - Clickjacking'
21 Feb 2018
b'Mail.Ru'
disclosed a bug submitted by
b'isaeva'
b"filin.mail.ru user's e-mail address disclosure"
21 Feb 2018
b'VK.com'
disclosed a bug submitted by
b'povargek'
b'???????? ?????????? ? ???????? email, ????? ???? ??? ???????????????? ??????-???????????'
20 Feb 2018
b'HackerOne'
disclosed a bug submitted by
b'bangrorox'
b'Information Disclosure which violate program privacy'
20 Feb 2018
b'ownCloud'
disclosed a bug submitted by
b'hexlax'
b'OS Command Injection via tainted PATH environment variable in findBinaryPath'
18 Feb 2018
b'Phabricator'
disclosed a bug submitted by
b'mishre'
b'Window.opener fix bypass'
18 Feb 2018
b'Phabricator'
disclosed a bug submitted by
b'ranjit_p'
b'Window.opener protection Bypass'
17 Feb 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'bl4de'
b'[crud-file-server] Stored XSS in filenames when directory index is served by crud-file-server'
17 Feb 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'bl4de'
b'[public] Path Traversal allows to read content of arbitrary files'
17 Feb 2018
b'Starbucks'
disclosed a bug submitted by
b'dpgribkov'
b'Subdomain takeover on developer.openapi.starbucks.com'
17 Feb 2018
b'Twitter'
disclosed a bug submitted by
b'harisec'
b'Blind XSS in Mobpub Marketplace Admin Production | Sentry via demand.mopub.com (User-Agent)'
17 Feb 2018
b'GitLab'
disclosed a bug submitted by
b'moritz30'
b'Cookie bomb'
16 Feb 2018
b'WordPress'
disclosed a bug submitted by
b'shay12tg'
b'MediaElements XSS'
15 Feb 2018
b'LocalTapiola'
disclosed a bug submitted by
b'billy_blaze'
b'Securemail server used to internal spam and resource exhaustion'
15 Feb 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'holyvier'
b'Prototype pollution attack (defaults-deep)'
15 Feb 2018
b'Node.js third-party modules'
disclosed a bug submitted by
b'holyvier'
b'Prototype pollution attack (merge-deep)'
15 Feb 2018
1
...
480
481
482
483
484
...
741
BY DENIS WERNER - @NOBBD -
IMPRESSUM