REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Zomato'
disclosed a bug submitted by
b'hisham'
b'Use any User to Follow you (Increase Followers) [IDOR]'
28 Nov 2017
b'Razer US'
disclosed a bug submitted by
b'hisxo'
b'Reflected XSS on domain support.razerzone.com'
27 Nov 2017
b'Razer US'
disclosed a bug submitted by
b'sp1d3rs'
b'DOM XSS and Open Redirect on the themes.razerzone.com'
27 Nov 2017
b'Razer US'
disclosed a bug submitted by
b'quistertow'
b'2 Subdomain takeovers'
27 Nov 2017
b'VK.com'
disclosed a bug submitted by
b'vladvis'
b'XSS ? ?????? ??????????'
27 Nov 2017
b'Automattic'
disclosed a bug submitted by
b'cartooncookies'
b'Stored XSS Using Media'
26 Nov 2017
b'Tor'
disclosed a bug submitted by
b'guido'
b'[tor] pre-emptive defenses, potential vulnerabilities'
26 Nov 2017
b'Tor'
disclosed a bug submitted by
b'guido'
b'16 instances where return value of OpenSSL i2d_RSAPublicKey is discarded -- might lead to use of uninitialized memory'
26 Nov 2017
b'Ed'
disclosed a bug submitted by
b'jackds'
b'Possible to redirect to a (non-existing) subdomain after logging in via GitHub (leaking the token)'
25 Nov 2017
b'Ed'
disclosed a bug submitted by
b'sp1d3rs'
b'Oauth flow on the comments widget login can lead to the access code leakage'
24 Nov 2017
b'Ubiquiti Networks'
disclosed a bug submitted by
b'hacknroll'
b'Privilege Escalation using API->Feature'
24 Nov 2017
b'Ubiquiti Networks'
disclosed a bug submitted by
b'hacknroll'
b'CSRF: Replacing the router configuration backup having an \'operator\' user and bypassing the "Referer:\' whitelist protection'
24 Nov 2017
b'Ubiquiti Networks'
disclosed a bug submitted by
b'hacknroll'
b'Privilege Escalation: From operator to ubnt (and root) with non-interactive Session Hijacking'
24 Nov 2017
b'Infogram'
disclosed a bug submitted by
b'muon4'
b'Persistent XSS in share button'
23 Nov 2017
b'WakaTime'
disclosed a bug submitted by
b'noob-walid'
b'SSH backdated version open port'
23 Nov 2017
b'OWOX, Inc.'
disclosed a bug submitted by
b'sp1d3rs'
b'Server-side cache poisoning leads to the http://my.dev.owox.com inaccessibility'
23 Nov 2017
b'HackerOne'
disclosed a bug submitted by
b'pinoywhitehat'
b'IDOR on Program Visibilty (Revealed / Concealed) against other team members'
23 Nov 2017
b'Infogram'
disclosed a bug submitted by
b'sp1d3rs'
b'Stored XSS in the Custom Logo link (non-Basic plan required)'
23 Nov 2017
b'HackerOne'
disclosed a bug submitted by
b'zuriel'
b'Introspection query leaks sensitive graphql system information.'
22 Nov 2017
b'Yelp'
disclosed a bug submitted by
b'overlax'
b'Nginx version disclosure via forbidden page'
21 Nov 2017
1
...
490
491
492
493
494
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM