4286 | Abusing autoresponders and email bounces |
Information disclosure
Logic flaw |
Google
Intigriti |
Inti De Ceukelaire (@securinti) |
Bug Bounty | 2019-02-21 | 2023-06-13 |
4245 | Should you be concerned about LastPass uploading your passwords to its server? |
Information disclosure
Logic flaw |
LastPass |
Wladimir Palant (@WPalant) |
Bug Bounty | 2019-03-18 | 2023-06-13 |
4240 | Slack announcement-only channel post restriction bypass |
Authorization flaw
Logic flaw |
Slack |
Rodney Beede |
Bug Bounty | 2019-03-20 | 2023-06-13 |
4224 | Facebook Vulnerability: Hiding from Facebook Page Admin(s) in /hacked workflow |
Logic flaw |
Meta / Facebook |
Ritish Kumar Singh |
Bug Bounty | 2019-04-02 | 2023-06-13 |
4223 | How I am able to hijack you. |
Logic flaw |
Google |
Terjanq (@terjanq) |
Bug Bounty | 2019-04-03 | 2023-06-13 |
4165 | XSS attacks on Googlebot allow search index manipulation |
Logic flaw |
Google |
Tom Anthony (@TomAnthonySEO) |
Bug Bounty | 2019-05-01 | 2023-06-13 |
4150 | Bypassing Instagram’s stories restriction |
Logic flaw |
Meta / Facebook |
Baibhav Anand (@SpongeBhav) |
Bug Bounty | 2019-05-17 | 2023-06-13 |
4139 | How I acquired $XXX bounty by investing 99 cents |
Logic flaw |
NA |
Smaran Chand (@smaranchand) |
Bug Bounty | 2019-05-24 | 2023-06-13 |
4114 | Facebook Vulnerability: Non-unfriendable user in /hacked workflow |
Logic flaw |
Meta / Facebook |
Ritish Kumar Singh |
Bug Bounty | 2019-06-11 | 2023-06-13 |
4093 | Business user Employees could have applied block list to all ad accounts listed in the business manager. |
Authorization flaw
Logic flaw |
Meta / Facebook |
Rohit kumar (@rohitcoder) |
Bug Bounty | 2019-06-17 | 2023-06-13 |
4090 | Facebook Vulnerability: Unremovable Co-Host in facebook group events |
Logic flaw |
Meta / Facebook |
Ritish Kumar Singh |
Bug Bounty | 2019-06-19 | 2023-06-13 |
4083 | Catching support emails from my internet service provider |
Logic flaw |
T-Mobile |
Sander Lentink |
Bug Bounty | 2019-06-21 | 2023-06-13 |
4058 | Facebook Vulnerability: Unremovable Co-Host in facebook page events |
Logic flaw
DoS |
Meta / Facebook |
Ritish Kumar Singh |
Bug Bounty | 2019-07-04 | 2023-06-13 |
4057 | This is how I managed to win $2000 through Facebook Bug Bounty |
Logic flaw |
Meta / Facebook |
Saugat Pokharel (@saugatpk5) |
Bug Bounty | 2019-07-04 | 2023-06-13 |
3990 | BugBounty WriteUp — Creative thinking is our everything (Race Condition + Business Logic Error) |
Race condition
Logic flaw |
NA |
Oleksandr Opanasiuk (@Lekssik2) |
Bug Bounty | 2019-08-05 | 2023-06-13 |
3974 | [Business Logic] Bypassing Nickname Feature |
Logic flaw |
NA |
Kent Bayron / kntx (@bayronkentoy) |
Bug Bounty | 2019-08-14 | 2023-06-13 |
3972 | Facebook Messenger exposing deleted messages using [Remove for Everyone] |
Logic flaw |
Meta / Facebook |
Renwa (@RenwaX23) |
Bug Bounty | 2019-08-15 | 2023-06-13 |
3971 | ByPassing fix of Domain Blocking feature in Business Manager |
Authorization flaw
Logic flaw |
Meta / Facebook |
Rohit kumar (@rohitcoder) |
Bug Bounty | 2019-08-15 | 2023-06-13 |
3932 | Telegram addresses another privacy issue |
Logic flaw
Privacy issue |
Telegram |
Dhiraj (@RandomDhiraj) |
Bug Bounty | 2019-09-09 | 2023-06-13 |
3874 | Hunting for bounties antihack.me case study |
RCE
XSS
Logic flaw
Information disclosure |
AntiHack.me |
0xSha (@0xsha) |
Bug Bounty | 2019-10-20 | 2023-06-13 |
3855 | Live Video facebook application (Android) its not expired when log out the device on https://www.facebook.com/settings?tab=security§ion=sessions&view |
Logic flaw |
Meta / Facebook |
Naufal Septiadi |
Bug Bounty | 2019-10-30 | 2023-06-13 |
3829 | Bypassing the patch for my previous Instagram bug. |
Authorization flaw
Logic flaw |
Meta / Facebook |
Baibhav Anand (@SpongeBhav) |
Bug Bounty | 2019-11-18 | 2023-06-13 |
3804 | Hacking GitHub with Unicode%27s dotless %27i%27 |
Logic flaw |
GitHub |
John Gracey (@jagracey) |
Bug Bounty | 2019-11-28 | 2023-06-13 |
3782 | How I was able to find a logical bug on Instagram? |
Logic flaw |
Meta / Facebook |
Jabir Khan (@Jabirkhan0x0) |
Bug Bounty | 2019-12-13 | 2023-06-13 |
3750 | How I made $7500 from My First Bug Bounty Found on Google Cloud Platform |
Logic flaw |
Google |
James Grunewald |
Bug Bounty | 2019-12-29 | 2023-06-13 |