REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'haxta4ok00'
49
b'jon_bottarini'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Yelp'
disclosed a bug submitted by
b'hk755a'
b'IDNs displayed in unicode in messages/about/talk sections (Homograph Attack)'
09 Nov 2017
b'Yelp'
disclosed a bug submitted by
b'hk755a'
b'Password reset token not expiring'
09 Nov 2017
b'HackerOne'
disclosed a bug submitted by
b'edio'
b'Blind SSRF in "Integrations" by abusing a bug in Ruby\'s native resolver.'
09 Nov 2017
b'GitLab'
disclosed a bug submitted by
b'edio'
b'SSRF vulnerability in gitlab.com via project import.'
09 Nov 2017
b'Aspen'
disclosed a bug submitted by
b'abartan'
b'Email Spoofing'
09 Nov 2017
b'Automattic'
disclosed a bug submitted by
b'arafat'
b'Invalidate session after password reset on https://polldaddy.com'
09 Nov 2017
b'Infogram'
disclosed a bug submitted by
b'romanshyadav'
b'A10 \xe2\x80\x93 Unvalidated Redirects and Forwards'
09 Nov 2017
b'RubyGems'
disclosed a bug submitted by
b'max'
b'Remote code execution on rubygems.org'
09 Nov 2017
b'Razer US'
disclosed a bug submitted by
b'edio'
b'Authenticated DOM-based XSS in deals.razerzone.com via the rurl parameter.'
08 Nov 2017
b'Razer US'
disclosed a bug submitted by
b'sp1d3rs'
b'Open redirect on oauth2.razerzone.com due to missing verification of redirect-uri paramether on /thirdparty endpoint'
08 Nov 2017
b'Razer US'
disclosed a bug submitted by
b'sp1d3rs'
b'Reflected XSS on the https://deals.razerzone.com/json/translation endpoint'
08 Nov 2017
b'Razer US'
disclosed a bug submitted by
b'utkarsh123456'
b'XSS vulnerability on amp.razerzone.com'
08 Nov 2017
b'Razer US'
disclosed a bug submitted by
b'edio'
b'Unauthenticated DOM-based XSS in zvault.razerzone.com via the redir parameter.'
08 Nov 2017
b'Razer US'
disclosed a bug submitted by
b'edio'
b'Reflected XSS in deals.razerzone.com via the interesting parameter.'
08 Nov 2017
b'Razer US'
disclosed a bug submitted by
b'utkarsh1'
b'[amp.razerzone.com] SQL injection via resource_type parameter '
08 Nov 2017
b'Razer US'
disclosed a bug submitted by
b'edio'
b'Unauthenticated DOM-based XSS in pay.zvault.razerzone.com via the redir parameter.'
08 Nov 2017
b'Razer US'
disclosed a bug submitted by
b'sp1d3rs'
b'Database credentials leak on the https://razer-id.razerzone.com/'
08 Nov 2017
b'WordPress'
disclosed a bug submitted by
b'qasuar'
b'Self-XSS in WordPress Editor Link Modal'
08 Nov 2017
b'Infogram'
disclosed a bug submitted by
b'spicyturtle'
b'Internal Ports Scanning via Blind SSRF (URL Redirection to beat filter)'
08 Nov 2017
b'Brave Software'
disclosed a bug submitted by
b'qab'
b'application/x-brave-tab should not be readable.'
07 Nov 2017
1
...
484
485
486
487
488
...
727
BY DENIS WERNER - @NOBBD -
IMPRESSUM