REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'haxta4ok00'
49
b'jon_bottarini'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Ubiquiti Networks'
disclosed a bug submitted by
b'hacknroll'
b'Privilege Escalation: From operator to ubnt (and root) with non-interactive Session Hijacking'
24 Nov 2017
b'Infogram'
disclosed a bug submitted by
b'muon4'
b'Persistent XSS in share button'
23 Nov 2017
b'WakaTime'
disclosed a bug submitted by
b'noob-walid'
b'SSH backdated version open port'
23 Nov 2017
b'OWOX, Inc.'
disclosed a bug submitted by
b'sp1d3rs'
b'Server-side cache poisoning leads to the http://my.dev.owox.com inaccessibility'
23 Nov 2017
b'HackerOne'
disclosed a bug submitted by
b'pinoywhitehat'
b'IDOR on Program Visibilty (Revealed / Concealed) against other team members'
23 Nov 2017
b'Infogram'
disclosed a bug submitted by
b'sp1d3rs'
b'Stored XSS in the Custom Logo link (non-Basic plan required)'
23 Nov 2017
b'HackerOne'
disclosed a bug submitted by
b'zuriel'
b'Introspection query leaks sensitive graphql system information.'
22 Nov 2017
b'Yelp'
disclosed a bug submitted by
b'overlax'
b'Nginx version disclosure via forbidden page'
21 Nov 2017
b'HackerOne'
disclosed a bug submitted by
b'what94'
b'Reverse Tabnabbing Vulnerability in Outgoing Links'
21 Nov 2017
b'Mail.Ru'
disclosed a bug submitted by
b'lincoln9932'
b'XSS ????? ????????? ??????.'
21 Nov 2017
b'Ubiquiti Networks'
disclosed a bug submitted by
b'kushal89shah'
b'Security: Publicly accessible x.509 Public and Private Key of Ubiquiti Networks.'
20 Nov 2017
b'Mail.Ru'
disclosed a bug submitted by
b'whitesector'
b'reflected XSS on healt.mail.ru'
20 Nov 2017
b'WordPress'
disclosed a bug submitted by
b'skansing'
b'Wordpress 4.7 - CSRF -> HTTP SSRF any private ip:port and basic-auth'
20 Nov 2017
b'Twitter'
disclosed a bug submitted by
b'segumarc'
b'Listing of Amazon S3 Bucket accessible to any amazon authenticated user (metrics.pscp.tv)'
19 Nov 2017
b'WordPress'
disclosed a bug submitted by
b'sikic'
b'Authenticated Cross-site Scripting in Template Name'
18 Nov 2017
b'Slack'
disclosed a bug submitted by
b'kamikaze'
b'Bypass two-factor authentication'
18 Nov 2017
b'Tor'
disclosed a bug submitted by
b'closer'
b'Access to local file system using javascript'
18 Nov 2017
b'HackerOne'
disclosed a bug submitted by
b'ashish_r_padelkar'
b'Pending member invitations are not revoked on program name change'
18 Nov 2017
b'HackerOne'
disclosed a bug submitted by
b'bigbug'
b"GraphQL sessions aren't immediately invalidated when user password is changed"
17 Nov 2017
b'TTS Bug Bounty'
disclosed a bug submitted by
b'muskecan'
b"2FA bypass - confirmation tokens don't expire"
17 Nov 2017
1
...
480
481
482
483
484
...
727
BY DENIS WERNER - @NOBBD -
IMPRESSUM