REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'haxta4ok00'
49
b'jon_bottarini'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Zomato'
disclosed a bug submitted by
b'prateek_0490'
b'[www.zomato.com/dubai/gold] CRITICAL - Allowing abitraty amount to become a GOLD MEMBER can lead to HUGE loss for ZOMATO'
27 Oct 2017
b'Zomato'
disclosed a bug submitted by
b'prateek_0490'
b'[www.zomato.com] Unauthenticated access to Internal Sales Data of Zomato through an unrestricted endpoint'
27 Oct 2017
b'Zomato'
disclosed a bug submitted by
b'prateek_0490'
b'[www.zomato.com] IDOR - Leaking all Personal Details of all Zomato Users through an endpoint'
27 Oct 2017
b'Inflection'
disclosed a bug submitted by
b'gopalsingh27'
b'Limited Account Takeover via Backup codes '
26 Oct 2017
b'MapsMarker.com e.U.'
disclosed a bug submitted by
b'nih95had'
b'facebook button URL should be HTTPS'
26 Oct 2017
b'Tor'
disclosed a bug submitted by
b'xiaoyinl'
b'Cross-domain linkability when system time changed in Tor Browser'
26 Oct 2017
b'HackerOne'
disclosed a bug submitted by
b'reydd'
b'Report Private Links Leaks to Google Analytics via Query String Param'
25 Oct 2017
b'Quora'
disclosed a bug submitted by
b'hk755a'
b'IDNs displayed in unicode'
25 Oct 2017
b'Tor'
disclosed a bug submitted by
b'julianjackson'
b'Linux TBB SFTP URI allows local IP disclosure'
25 Oct 2017
b'Tor'
disclosed a bug submitted by
b'geeknik'
b'Use of uninitialized value in memarea_strdup (src/common/memarea.c:369)'
25 Oct 2017
b'Inflection'
disclosed a bug submitted by
b'namansahore'
b'Fake mailing reports using mail service on [URL : mail-txn.identity.com]'
25 Oct 2017
b'VK.com'
disclosed a bug submitted by
b'lincoln9932'
b'CSRF ???????? ???????? ? ?????? ??? ?????? ????????????.'
25 Oct 2017
b'Ruby'
disclosed a bug submitted by
b'usa'
b'Ruby 2.3.x and 2.2.x still bundle DoS vulnerable verision of libYAML'
25 Oct 2017
b'Ruby'
disclosed a bug submitted by
b'dgollahon'
b'Parsing invalid unicode codepoints using json c extension (2.0.1+) triggers a segfault'
25 Oct 2017
b'VK.com'
disclosed a bug submitted by
b'alibaba_orange'
b'XSS ? ??????????? ? ??????'
25 Oct 2017
b'Maximum'
disclosed a bug submitted by
b'whitesector'
b'xss flash on http://presentatie.werkenbijmcdonalds.nl/'
25 Oct 2017
b'Inflection'
disclosed a bug submitted by
b'kiddie'
b'Host Header Injection and Cache Poisoning'
24 Oct 2017
b'Inflection'
disclosed a bug submitted by
b'leet-boy'
b'Privilege Escalation.'
24 Oct 2017
b'Gratipay'
disclosed a bug submitted by
b'b3nac'
b'Sub Domain Takeover'
24 Oct 2017
b'Boozt Fashion AB'
disclosed a bug submitted by
b'rey_7'
b'Users Unable to login using Gmail/Facebook on https://boozt-stage1.booztx.com/login'
24 Oct 2017
1
...
490
491
492
493
494
...
727
BY DENIS WERNER - @NOBBD -
IMPRESSUM