5061 | WhatsApp — Dos Vulnerability In iOS & Android |
DoS |
Meta / Facebook |
Vishnu Prasad P G (@vishnuprasadnta) |
Bug Bounty | 2017-06-07 | 2023-06-13 |
5043 | WhatsApp — DoS Vulnerability In iOS & Android |
DoS |
Meta / Facebook |
Vishnuraj |
Bug Bounty | 2017-07-07 | 2023-06-13 |
5019 | Rolling around and Bypassing Facebook’s Linkshim protection on iOS |
Open redirect |
Meta / Facebook |
Seif Elsallamy (@seifelsallamy) |
Bug Bounty | 2017-07-26 | 2023-06-13 |
4979 | Exploiting a Single Request for Multiple Vulnerabilities |
Stored XSS
Reflected XSS
SSRF
OS command injection |
NA |
Osama Ansari (@AnsariOsama10) |
Bug Bounty | 2017-09-19 | 2023-06-13 |
4937 | How I Pwned a company using IDOR & Blind XSS |
IDOR
Blind XSS |
NA |
Osama Ansari (@AnsariOsama10) |
Bug Bounty | 2017-11-15 | 2023-06-13 |
4853 | [RCE] Remote Code Execution in Wordpress iOS Application (version 9.3) |
RCE
iOS |
WordPress |
Evan Ricafort (@evanricafort) |
Bug Bounty | 2018-02-21 | 2023-06-13 |
4767 | Whatsapp- DOS vulnerability on Android/iOS/Web |
DoS |
Meta / Facebook |
Pratheesh P Narayanan (@PRATHEESH_PPN) |
Bug Bounty | 2018-05-15 | 2023-06-13 |
4692 | WRITE UP – TELEGRAM BUG BOUNTY – WHATSAPP N/A [“Blind” XSS Stored iOS in messengers twins, who really care about your security?] |
Blind XSS |
Meta / Facebook |
Omar Espino (@omespino) |
Bug Bounty | 2018-07-16 | 2023-06-13 |
4605 | Write-up - Love story, from closed as informative to $3,500 USD, XSS stored in Yahoo! iOS MaiL app |
Stored XSS |
Yahoo! / Verizon Media |
Omar Espino (@omespino) |
Bug Bounty | 2018-09-07 | 2023-06-13 |
4436 | How to accidentally find a XSS in ProtonMail iOS app |
XSS |
ProtonMail |
SecuNinja (@secuninja) |
Bug Bounty | 2018-12-04 | 2023-06-13 |
4375 | How I hacked Altervista.org |
Open redirect |
Altervista |
Jacopo Tediosi (@jacopotediosi) |
Bug Bounty | 2019-01-05 | 2023-06-13 |
4266 | 3 XSS in ProtonMail for iOS |
XSS |
Apple |
Vladimir Metnew (@vladimir_metnew) |
Bug Bounty | 2019-03-06 | 2023-06-13 |
4251 | Write up – $1,000 usd in 5 minutes, xss stored in outlook.com (ios browsers) |
Stored XSS |
Microsoft |
Omar Espino (@omespino) |
Bug Bounty | 2019-03-14 | 2023-06-13 |
3588 | VPN bypass vulnerability in Apple iOS |
Privacy issue |
Apple |
Proton Team |
Bug Bounty | 2020-03-25 | 2023-06-13 |
3576 | CVE-2019-17004—Semi Universal XSS affecting Firefox for iOS |
Universal XSS |
Mozilla
Brave Software |
cliqz (@cliqz) |
Bug Bounty | 2020-03-30 | 2023-06-13 |
3563 | Touch ID Authentication Bypass on Evernote and Dropbox IOS Apps |
Authentication bypass
iOS |
Evernote
Dropbox |
Sahil Tikoo (@viperbluff) |
Bug Bounty | 2020-04-03 | 2023-06-13 |
3453 | Stored XSS in Yahoo mail IOS app($3500) |
Stored XSS |
Yahoo! / Verizon Media |
kminthein / weev3 (@kyawminthein99) |
Bug Bounty | 2020-05-28 | 2023-06-13 |
3451 | iOS Outlook Stored XSS Write-Up($3000) |
XSS |
Microsoft |
kminthein / weev3 (@kyawminthein99) |
Bug Bounty | 2020-05-28 | 2023-06-13 |
3391 | Another "Fappening" on the Horizon? |
Account takeover
Phishing |
Apple |
Sociosploit |
Bug Bounty | 2020-06-15 | 2023-06-13 |
3354 | Story of stealing mail conversation, contacts in mail.ru and myMail iOS applications via XSS |
Stored XSS |
Mail.ru |
kminthein / weev3 (@kyawminthein99) |
Bug Bounty | 2020-06-30 | 2023-06-13 |
3151 | CVE-2020-9964 - An iOS infoleak |
iOS
Memory initialisation issue |
Apple |
Muirey03 (@Muirey03) |
Bug Bounty | 2020-09-19 | 2023-06-13 |
3016 | Out of Band XXE in an E-commerce IOS app |
XXE |
NA |
Gaurang Bhatnagar (@0xgaurang) |
Bug Bounty | 2020-11-19 | 2023-06-13 |
2994 | An iOS zero-click radio proximity exploit odyssey |
iOS
Memory corruption
Buffer Overflow |
Apple |
Ian Beer (@i41nbeer) |
Bug Bounty | 2020-12-01 | 2023-06-13 |
2746 | Microsoft Edge Browser For IOS - Address Bar Spoofing Vulnerability |
Address Bar Spoofing |
Microsoft |
Rafay Baloch (@rafaybaloch) |
Bug Bounty | 2021-03-02 | 2023-06-13 |
2741 | Low hanging fruits on Facebook Group Room. Unable to remove post on group when post room add with event ($500) |
Logic flaw |
Meta / Facebook |
Randy Arios |
Bug Bounty | 2021-03-04 | 2023-06-13 |