5153 | Messenger.com Site-Wide CSRF |
CSRF |
Meta / Facebook |
Jack Whitton (@fin1te) |
Bug Bounty | 2016-07-26 | 2023-06-13 |
5152 | CSV Injection -> Meterpreter on Pornhub |
CSV injection |
PornHub |
Andy Gill (@ZephrFish) |
Bug Bounty | 2016-07-29 | 2023-06-13 |
5145 | Turning Self-XSS into Good XSS v2: Challenge Completed but Not Rewarded |
XSS |
Uber |
- |
Bug Bounty | 2016-08-29 | 2023-06-13 |
5140 | Decoding a $😱,000.00 htpasswd bounty |
.htpasswd misconfiguration |
NA |
Patrik Fehrenbach (@ITSecurityguard) |
Bug Bounty | 2016-09-08 | 2023-06-13 |
5138 | Bug Bounty : Account Takeover Vulnerability POC |
OAuth
Account takeover
XSS |
NA |
Rakesh Mane (@RakeshMane10) |
Bug Bounty | 2016-09-16 | 2023-06-13 |
5136 | Vine Re-auth Bypass [Twitter Bug Bounty] |
Authentication flaw |
Twitter |
Abdullah Hussam (@Abdulahhusam) |
Bug Bounty | 2016-09-21 | 2023-06-13 |
5132 | gif it time it%27ll come to you - Finding More Holes in The Hub |
XSS |
PornHub |
Andy Gill (@ZephrFish) |
Bug Bounty | 2016-10-01 | 2023-06-13 |
5131 | Command Injection Without Spaces |
OS command injection |
NA |
Fyoorer (@ƒyoorer) |
Bug Bounty | 2016-10-02 | 2023-06-13 |
5128 | Exploiting CORS misconfigurations for Bitcoins and bounties |
CORS misconfiguration |
NA |
James Kettle (@albinowax) |
Bug Bounty | 2016-10-12 | 2023-06-13 |
5127 | Hacking JasperReports – The Hidden Shell Feature |
RCE |
NA |
Steve Breen (@breenmachine) |
Bug Bounty | 2016-10-14 | 2023-06-13 |
5124 | Backslash Powered Scanning: hunting unknown vulnerability classes |
- |
NA |
James Kettle (@albinowax) |
Bug Bounty | 2016-11-04 | 2023-06-13 |
5120 | Authentication bypass on Ubiquity’s Single Sign-On via subdomain takeover |
Subdomain takeover
Authentication bypass |
Ubiquity Networks |
Arne Swinnen (@ArneSwinnen) |
Bug Bounty | 2016-11-29 | 2023-06-13 |
5116 | Cross-site-scripting on one of the largest Dutch franchisors |
DOM XSS |
Hema |
Tijme Gommers (@tijme) |
Bug Bounty | 2016-12-20 | 2023-06-13 |
5113 | 0day writeup: XXE in uber.com |
XXE |
Uber |
- |
Bug Bounty | 2017-01-24 | 2023-06-13 |
5112 | How I could have compromised any account on one of the biggest startup based in California |
Account takeover
IDOR
Password reset |
NA |
Prateek Tiwari (@prateek_0490) |
Bug Bounty | 2017-01-28 | 2023-06-13 |
5111 | I got emails - G Suite Vulnerability |
Logic flaw
Authorization flaw |
Google
Meta / Facebook
Yelp |
Rojan Rijal (@uraniumhacker) |
Bug Bounty | 2017-02-02 | 2023-06-13 |
5110 | Spring Boot RCE |
RCE
SpEL injection
Spring Boot |
NA |
Tushar (@0xdeadpool) |
Bug Bounty | 2017-02-02 | 2023-06-13 |
5107 | Type Juggling and PHP Object Injection, and SQLi, Oh My! |
Type juggling
PHP Object Injection
Insecure deserialization
SQL injection |
NA |
Justin Kennedy (@jstnkndy) |
Bug Bounty | 2017-02-07 | 2023-06-13 |
5102 | SQL injection in an UPDATE query - a bug bounty story! |
SQL injection |
NA |
Mahmoud Gamal (@Zombiehelp54) |
Bug Bounty | 2017-02-17 | 2023-06-13 |
5098 | Practical Exploitation of Error Based Sql Injection |
SQL injection |
NA |
Eslam Salem (@net_code) |
Bug Bounty | 2017-02-20 | 2023-06-13 |
5096 | One company: 262 bugs, 100% acceptance, 2.57 priority, millions of user details saved. |
Stored XSS
Blind XSS
CSRF
Account takeover
IDOR |
NA |
Zseano (@zseano) |
Bug Bounty | 2017-02-25 | 2023-06-13 |
5095 | Time-based Blind SQLi on news.starbucks.com |
Blind SQL injection |
Starbucks |
toctou |
Bug Bounty | 2017-02-26 | 2023-06-13 |
5094 | Hacking Slack using postMessage and WebSocket-reconnect to steal your precious token |
postMessage
Violation of secure design principles |
Slack |
Frans Rosén (@fransrosen) |
Bug Bounty | 2017-02-28 | 2023-06-13 |
5091 | Airbnb – Chaining Third-Party Open Redirect into Server-Side Request Forgery (SSRF) via LivePerson Chat |
Open redirect
SSRF
Path traversal |
Airbnb |
Brett Buerhaus (@bbuerhaus) |
Bug Bounty | 2017-03-09 | 2023-06-13 |
5083 | Hundreds of hundreds sub-secdomains hack3d! (including Hacker0ne) |
Subdomain takeover |
HackerOne |
Ak1T4 (@akita_zen) |
Bug Bounty | 2017-03-28 | 2023-06-13 |