REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Yelp'
disclosed a bug submitted by
b'jessepinkman'
b'ClickJacking '
09 Nov 2017
b'Yelp'
disclosed a bug submitted by
b'h4ck3r0ne'
b'Clickjacking @ Main Domain[www.yelp.com]'
09 Nov 2017
b'Yelp'
disclosed a bug submitted by
b'denispugachev'
b'[Yelp Blog] Backslash in search string causes JS error'
09 Nov 2017
b'Yelp'
disclosed a bug submitted by
b'us111'
b'Research papers on yelp are getting indexed by google bots.'
09 Nov 2017
b'Yelp'
disclosed a bug submitted by
b'us111'
b'One of yelp.com url is redirecting to domain which is not yet purchased'
09 Nov 2017
b'Yelp'
disclosed a bug submitted by
b'na5ne3t'
b'User can be fooled to Bookmark any restaurant by clickjacking'
09 Nov 2017
b'Yelp'
disclosed a bug submitted by
b'mohammad_obaid'
b'ClickJacking in editing business name'
09 Nov 2017
b'Yelp'
disclosed a bug submitted by
b'hk755a'
b'IDNs displayed in unicode in messages/about/talk sections (Homograph Attack)'
09 Nov 2017
b'Yelp'
disclosed a bug submitted by
b'hk755a'
b'Password reset token not expiring'
09 Nov 2017
b'HackerOne'
disclosed a bug submitted by
b'edio'
b'Blind SSRF in "Integrations" by abusing a bug in Ruby\'s native resolver.'
09 Nov 2017
b'GitLab'
disclosed a bug submitted by
b'edio'
b'SSRF vulnerability in gitlab.com via project import.'
09 Nov 2017
b'Aspen'
disclosed a bug submitted by
b'abartan'
b'Email Spoofing'
09 Nov 2017
b'Automattic'
disclosed a bug submitted by
b'arafat'
b'Invalidate session after password reset on https://polldaddy.com'
09 Nov 2017
b'Infogram'
disclosed a bug submitted by
b'romanshyadav'
b'A10 \xe2\x80\x93 Unvalidated Redirects and Forwards'
09 Nov 2017
b'RubyGems'
disclosed a bug submitted by
b'max'
b'Remote code execution on rubygems.org'
09 Nov 2017
b'Razer US'
disclosed a bug submitted by
b'edio'
b'Authenticated DOM-based XSS in deals.razerzone.com via the rurl parameter.'
08 Nov 2017
b'Razer US'
disclosed a bug submitted by
b'sp1d3rs'
b'Open redirect on oauth2.razerzone.com due to missing verification of redirect-uri paramether on /thirdparty endpoint'
08 Nov 2017
b'Razer US'
disclosed a bug submitted by
b'sp1d3rs'
b'Reflected XSS on the https://deals.razerzone.com/json/translation endpoint'
08 Nov 2017
b'Razer US'
disclosed a bug submitted by
b'utkarsh123456'
b'XSS vulnerability on amp.razerzone.com'
08 Nov 2017
b'Razer US'
disclosed a bug submitted by
b'edio'
b'Unauthenticated DOM-based XSS in zvault.razerzone.com via the redir parameter.'
08 Nov 2017
1
...
498
499
500
501
502
...
742
BY DENIS WERNER - @NOBBD -
IMPRESSUM