5221 | Telegram App Store Secret-Chat Messages in Plain-Text Database |
Privacy issue
Information disclosure |
Telegram |
Jon Paterson (@shellprompt) |
Bug Bounty | 2015-02-23 | 2023-06-13 |
4654 | FakesApp: A Vulnerability in WhatsApp |
Content spoofing
Authorization flaw
Privacy issue |
Meta / Facebook |
Dikla Barda |
Bug Bounty | 2018-08-07 | 2023-06-13 |
3932 | Telegram addresses another privacy issue |
Logic flaw
Privacy issue |
Telegram |
Dhiraj (@RandomDhiraj) |
Bug Bounty | 2019-09-09 | 2023-06-13 |
3588 | VPN bypass vulnerability in Apple iOS |
Privacy issue |
Apple |
Proton Team |
Bug Bounty | 2020-03-25 | 2023-06-13 |
3542 | Here is the Non Technical write-up on Technical Bug for My Second Bounty of $xxxx From Facebook |
Logic flaw
Privacy issue |
Meta / Facebook |
Ashok Chapagai (@ashokcpg) |
Bug Bounty | 2020-04-17 | 2023-06-13 |
3220 | Improper Implementation of My Status video time limit in WhatsApp |
Logic flaw
Privacy issue
Android |
Meta / Facebook |
Vishal Ranjan |
Bug Bounty | 2020-08-14 | 2023-06-13 |
3219 | Deleted data stored permanently on Instagram? Facebook Bug Bounty 2020 |
Logic flaw
Privacy issue |
Meta / Facebook |
Saugat Pokharel (@saugatpk5) |
Bug Bounty | 2020-08-14 | 2023-06-13 |
3077 | TikTok fixes privacy issue discovered by Check Point Research |
Information disclosure |
TikTok |
Eran Vaknin |
Bug Bounty | 2020-10-26 | 2023-06-13 |
2819 | The "P" in Telegram stands for Privacy |
Privacy issue |
Telegram |
Dhiraj (@RandomDhiraj) |
Bug Bounty | 2021-02-11 | 2023-06-13 |
2617 | PrivateDrop: Breaking and Fixing Apple AirDrop |
Privacy issue
Information disclosure |
Apple |
Alexander Heinrich |
Bug Bounty | 2021-04-21 | 2023-06-13 |
2615 | Telegram bug bounties: XSS, privacy issues, official bot exploitation and more… |
XSS
Authorization flaw
DoS |
NA |
Davide |
Bug Bounty | 2021-04-22 | 2023-06-13 |
2598 | De-anonymising Anonymous Animals in Google Workspace |
Privacy issue
Information disclosure |
Google |
David Schütz (@xdavidhu) |
Bug Bounty | 2021-04-29 | 2023-06-13 |
2594 | How I was able to Retrieve your Personal Documents using the Wayback Machine! |
Privacy issue
Information disclosure |
NA |
Savir Suda (@savxiety) |
Bug Bounty | 2021-04-30 | 2023-06-13 |
2399 | Hacking Xiaomi%27S Android Apps - Part 1 |
Android
Information disclosure
Open redirect
Privacy issue |
Xiaomi |
Ameya (@iamTakeMyHand) |
Bug Bounty | 2021-07-19 | 2023-06-13 |
2319 | CVE-2021-22929 – Brave Browser 1.27 and below permanently logs the server connection time for all v2 tor domains to ~/.config/BraveSoftware /Brave-Browser/tor/data/tor.log |
Privacy issue
Information disclosure |
Brave Software |
sickcodes (@sickcodes) |
Bug Bounty | 2021-08-16 | 2023-06-13 |
2258 | Play the music and bypass TCC aka CVE-2020-29621 |
Privacy issue
MacOS |
Apple |
Wojciech Reguła (@_r3ggi) |
Bug Bounty | 2021-09-02 | 2023-06-13 |
2236 | Change home directory and bypass TCC aka CVE-2020-27937 |
Privacy issue
MacOS |
Apple |
Wojciech Reguła (@_r3ggi) |
Bug Bounty | 2021-09-09 | 2023-06-13 |
2194 | Disclosure of three 0-day iOS vulnerabilities and critique of Apple Security Bounty program |
Information disclosure
Local Privilege Escalation
Privacy issue |
Apple |
Denis Tokarev / illusionofchaos |
Bug Bounty | 2021-09-24 | 2023-06-13 |
2184 | Telegram users%27 privacy has been violated again. Messenger representatives demand not to disclose details |
Privacy issue |
Telegram |
ne555 |
Bug Bounty | 2021-09-29 | 2023-06-13 |
2026 | How I accessed the Sensitive document which I had already deleted |
Privacy issue |
NA |
Pawan Chhabria (@heybenchmarkkk) |
Bug Bounty | 2021-12-04 | 2023-06-13 |
1959 | WhatsApp for Android Retains Deleted Contacts Locally |
Privacy issue |
Meta / Facebook |
Nightwatch Cybersecurity (@nightwatchcyber) |
Bug Bounty | 2021-12-30 | 2023-06-13 |
1930 | New macOS vulnerability, “powerdir,” could lead to unauthorized user data access |
Privacy issue
MacOS |
Apple |
Microsoft 365 Defender Research Team |
Bug Bounty | 2022-01-10 | 2023-06-13 |
1858 | How I Tracked You Around The Globe 🌎 |
Information disclosure
Privacy issue |
Google (Waze) |
0xdroopy (@NikhilK50866227) |
Bug Bounty | 2022-02-02 | 2023-06-13 |
1773 | Skype extension: All functionality broken? Still exploitable! |
Information disclosure
Privacy issue |
Microsoft |
Wladimir Palant (@WPalant) |
Bug Bounty | 2022-03-01 | 2023-06-13 |
1489 | De-Anonymization attacks against Proton services |
Privacy issue
Information disclosure
HTML injection
Local Privilege Escalation |
Proton AG |
Ruben Santamarta (@reversemode) |
Bug Bounty | 2022-06-08 | 2023-06-13 |