H1 Disclosed - Public Disclosures (@h1disclosed) 's Twitter Profile
H1 Disclosed - Public Disclosures

@h1disclosed

User friendly unofficial HackerOne public disclosures, keeps you updated about the recently disclosed bugs.
Made With β™₯ By Hackers For Hackers. - @rohsec

ID: 1575142640366256128

linkhttps://www.buymeacoffee.com/rohsec calendar_today28-09-2022 15:17:38

1,1K Tweet

7,7K Followers

1 Following

H1 Disclosed - Public Disclosures (@h1disclosed) 's Twitter Profile Photo

⚑ [Monero wallet RPC] File precreation to file ownership and credentials leak πŸ‘¨πŸ»β€πŸ’» selmelc ➟ Monero ⬜ None πŸ’° None πŸ”— hackerone.com/reports/2425873 #bugbounty #bugbountytips #cybersecurity #infosec

⚑ [Monero wallet RPC] File precreation to file ownership and credentials leak 
πŸ‘¨πŸ»β€πŸ’» selmelc ➟ Monero 
⬜ None
πŸ’° None
πŸ”— hackerone.com/reports/2425873
#bugbounty #bugbountytips #cybersecurity #infosec
Rohit (@rohsec) 's Twitter Profile Photo

🎢 If you recognize this tune, you definitely have great taste in music 🎧✨ #Nostalgia #bugbounty #cybersecurity

H1 Disclosed - Public Disclosures (@h1disclosed) 's Twitter Profile Photo

⚑ CVE-2024-41937: Apache Airflow: Stored XSS Vulnerability on provider link πŸ‘¨πŸ»β€πŸ’» sw0rd1ight ➟ Internet Bug Bounty 🟨 Low πŸ’° $497 πŸ”— hackerone.com/reports/2677187 #bugbounty #bugbountytips #cybersecurity #infosec

⚑ CVE-2024-41937: Apache Airflow: Stored XSS Vulnerability on provider link 
πŸ‘¨πŸ»β€πŸ’» sw0rd1ight ➟ Internet Bug Bounty 
🟨 Low
πŸ’° $497
πŸ”— hackerone.com/reports/2677187
#bugbounty #bugbountytips #cybersecurity #infosec
H1 Disclosed - Public Disclosures (@h1disclosed) 's Twitter Profile Photo

⚑ Stored XSS in reclamos πŸ‘¨πŸ»β€πŸ’» valent1ne ➟ MercadoLibre πŸŸ₯ High πŸ’° None πŸ”— hackerone.com/reports/1675516 #bugbounty #bugbountytips #cybersecurity #infosec

⚑ Stored XSS in reclamos 
πŸ‘¨πŸ»β€πŸ’» valent1ne ➟ MercadoLibre 
πŸŸ₯ High
πŸ’° None
πŸ”— hackerone.com/reports/1675516
#bugbounty #bugbountytips #cybersecurity #infosec
H1 Disclosed - Public Disclosures (@h1disclosed) 's Twitter Profile Photo

⚑ cross site scripting reflected πŸ‘¨πŸ»β€πŸ’» Ali Toni ➟ MTN Group 🟧 Medium πŸ’° None πŸ”— hackerone.com/reports/1496897 #bugbounty #bugbountytips #cybersecurity #infosec

⚑ cross site scripting reflected  
πŸ‘¨πŸ»β€πŸ’» <a href="/AliToni224/">Ali Toni</a> ➟ MTN Group 
🟧 Medium
πŸ’° None
πŸ”— hackerone.com/reports/1496897
#bugbounty #bugbountytips #cybersecurity #infosec
H1 Disclosed - Public Disclosures (@h1disclosed) 's Twitter Profile Photo

⚑ CVE-2024-8096: OCSP stapling bypass with GnuTLS πŸ‘¨πŸ»β€πŸ’» kurohiro ➟ curl 🟧 Medium πŸ’° None πŸ”— hackerone.com/reports/2669852 #bugbounty #bugbountytips #cybersecurity #infosec

⚑ CVE-2024-8096: OCSP stapling bypass with GnuTLS 
πŸ‘¨πŸ»β€πŸ’» <a href="/kurohiro_x/">kurohiro</a> ➟ curl 
🟧 Medium
πŸ’° None
πŸ”— hackerone.com/reports/2669852
#bugbounty #bugbountytips #cybersecurity #infosec
H1 Disclosed - Public Disclosures (@h1disclosed) 's Twitter Profile Photo

⚑ Unauthenticated Varnish Cache Purge πŸ‘¨πŸ»β€πŸ’» 0xhuntress ➟ Adobe 🟨 Low πŸ’° None πŸ”— hackerone.com/reports/2679440 #bugbounty #bugbountytips #cybersecurity #infosec

⚑ Unauthenticated Varnish Cache Purge 
πŸ‘¨πŸ»β€πŸ’» 0xhuntress ➟ Adobe 
🟨 Low
πŸ’° None
πŸ”— hackerone.com/reports/2679440
#bugbounty #bugbountytips #cybersecurity #infosec
H1 Disclosed - Public Disclosures (@h1disclosed) 's Twitter Profile Photo

⚑ Management Console Editor Privilege Escalation to Root SSH Access in GitHub Enterprise Server via... πŸ‘¨πŸ»β€πŸ’» inspector-ambitious ➟ GitHub πŸŸ₯ High πŸ’° $10,000 πŸ”— hackerone.com/reports/2332623 #bugbounty #bugbountytips #cybersecurity #infosec

⚑ Management Console Editor Privilege Escalation to Root SSH Access in GitHub Enterprise Server via... 
πŸ‘¨πŸ»β€πŸ’» <a href="/inspector_amb/">inspector-ambitious</a> ➟ GitHub 
πŸŸ₯ High
πŸ’° $10,000
πŸ”— hackerone.com/reports/2332623
#bugbounty #bugbountytips #cybersecurity #infosec
H1 Disclosed - Public Disclosures (@h1disclosed) 's Twitter Profile Photo

⚑ Privilege Escalation to Root SSH Access via Pre-Receive Hook Environment in GitHub Enterprise Server πŸ‘¨πŸ»β€πŸ’» inspector-ambitious ➟ GitHub πŸŸ₯ High πŸ’° $10,000 πŸ”— hackerone.com/reports/2336236 #bugbounty #bugbountytips #cybersecurity #infosec

⚑ Privilege Escalation to Root SSH Access via Pre-Receive Hook Environment in GitHub Enterprise Server 
πŸ‘¨πŸ»β€πŸ’» <a href="/inspector_amb/">inspector-ambitious</a> ➟ GitHub 
πŸŸ₯ High
πŸ’° $10,000
πŸ”— hackerone.com/reports/2336236
#bugbounty #bugbountytips #cybersecurity #infosec
H1 Disclosed - Public Disclosures (@h1disclosed) 's Twitter Profile Photo

⚑ Management Console Editor Privilege Escalation to Root SSH Access in GitHub Enterprise Server via... πŸ‘¨πŸ»β€πŸ’» inspector-ambitious ➟ GitHub πŸŸ₯ High πŸ’° $10,000 πŸ”— hackerone.com/reports/2332551 #bugbounty #bugbountytips #cybersecurity #infosec

⚑ Management Console Editor Privilege Escalation to Root SSH Access in GitHub Enterprise Server via... 
πŸ‘¨πŸ»β€πŸ’» <a href="/inspector_amb/">inspector-ambitious</a> ➟ GitHub 
πŸŸ₯ High
πŸ’° $10,000
πŸ”— hackerone.com/reports/2332551
#bugbounty #bugbountytips #cybersecurity #infosec
H1 Disclosed - Public Disclosures (@h1disclosed) 's Twitter Profile Photo

⚑ Management Console Editor Privilege Escalation to Root SSH Access in GitHub Enterprise Server via... πŸ‘¨πŸ»β€πŸ’» inspector-ambitious ➟ GitHub πŸŸ₯ High πŸ’° $10,000 πŸ”— hackerone.com/reports/2329466 #bugbounty #bugbountytips #cybersecurity #infosec

⚑ Management Console Editor Privilege Escalation to Root SSH Access in GitHub Enterprise Server via... 
πŸ‘¨πŸ»β€πŸ’» <a href="/inspector_amb/">inspector-ambitious</a> ➟ GitHub 
πŸŸ₯ High
πŸ’° $10,000
πŸ”— hackerone.com/reports/2329466
#bugbounty #bugbountytips #cybersecurity #infosec
H1 Disclosed - Public Disclosures (@h1disclosed) 's Twitter Profile Photo

⚑ Authentication Bypass Leads To Complete Account TakeveOver on β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆ πŸ‘¨πŸ»β€πŸ’» reachaxis ➟ MTN Group πŸ†˜ Critical πŸ’° None πŸ”— hackerone.com/reports/1709881 #bugbounty #bugbountytips #cybersecurity #infosec

⚑ Authentication Bypass Leads To  Complete Account TakeveOver on β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆ 
πŸ‘¨πŸ»β€πŸ’» reachaxis ➟ MTN Group 
πŸ†˜ Critical
πŸ’° None
πŸ”— hackerone.com/reports/1709881
#bugbounty #bugbountytips #cybersecurity #infosec
H1 Disclosed - Public Disclosures (@h1disclosed) 's Twitter Profile Photo

⚑ This test report has been disclosed by 20_root. πŸ‘¨πŸ»β€πŸ’» gmaerx ➟ mycompany VDP πŸ†˜ Critical πŸ’° None πŸ”— hackerone.com/reports/2719072 #bugbounty #bugbountytips #cybersecurity #infosec

⚑ This test report has been disclosed by 20_root.  
πŸ‘¨πŸ»β€πŸ’» gmaerx ➟ mycompany VDP 
πŸ†˜ Critical
πŸ’° None
πŸ”— hackerone.com/reports/2719072
#bugbounty #bugbountytips #cybersecurity #infosec
H1 Disclosed - Public Disclosures (@h1disclosed) 's Twitter Profile Photo

⚑ Test by HDR πŸ‘¨πŸ»β€πŸ’» Callmed ➟ nullsec VDP ⬜ None πŸ’° None πŸ”— hackerone.com/reports/2719118 #bugbounty #bugbountytips #cybersecurity #infosec

⚑  Test by HDR 
πŸ‘¨πŸ»β€πŸ’» <a href="/HarshDRanjan1/">Callmed</a> ➟ nullsec VDP 
⬜ None
πŸ’° None
πŸ”— hackerone.com/reports/2719118
#bugbounty #bugbountytips #cybersecurity #infosec
H1 Disclosed - Public Disclosures (@h1disclosed) 's Twitter Profile Photo

⚑ Private draft report exposure in a program a user is added as a viewer to πŸ‘¨πŸ»β€πŸ’» jay ➟ HackerOne 🟧 Medium πŸ’° $2,500 πŸ”— hackerone.com/reports/2552205 #bugbounty #bugbountytips #cybersecurity #infosec

⚑ Private draft report exposure in a program a user is added as a viewer to 
πŸ‘¨πŸ»β€πŸ’» jay ➟ HackerOne 
🟧 Medium
πŸ’° $2,500
πŸ”— hackerone.com/reports/2552205
#bugbounty #bugbountytips #cybersecurity #infosec
H1 Disclosed - Public Disclosures (@h1disclosed) 's Twitter Profile Photo

⚑ Management Console Editor Privilege Escalation to Root SSH Access in GitHub Enterprise Server via... πŸ‘¨πŸ»β€πŸ’» inspector-ambitious ➟ GitHub πŸŸ₯ High πŸ’° $10,000 πŸ”— hackerone.com/reports/2325023 #bugbounty #bugbountytips #cybersecurity #infosec

⚑ Management Console Editor Privilege Escalation to Root SSH Access in GitHub Enterprise Server via... 
πŸ‘¨πŸ»β€πŸ’» <a href="/inspector_amb/">inspector-ambitious</a> ➟ GitHub 
πŸŸ₯ High
πŸ’° $10,000
πŸ”— hackerone.com/reports/2325023
#bugbounty #bugbountytips #cybersecurity #infosec
H1 Disclosed - Public Disclosures (@h1disclosed) 's Twitter Profile Photo

⚑ RC Between GitHub's Repo Update REST API and updateTeamsRepository GraphQL Mutation Results in Co... πŸ‘¨πŸ»β€πŸ’» inspector-ambitious ➟ GitHub 🟧 Medium πŸ’° $4,000 πŸ”— hackerone.com/reports/2357443 #bugbounty #bugbountytips #cybersecurity #infosec

⚑ RC Between GitHub's Repo Update REST API and updateTeamsRepository GraphQL Mutation Results in Co... 
πŸ‘¨πŸ»β€πŸ’» <a href="/inspector_amb/">inspector-ambitious</a> ➟ GitHub 
🟧 Medium
πŸ’° $4,000
πŸ”— hackerone.com/reports/2357443
#bugbounty #bugbountytips #cybersecurity #infosec
H1 Disclosed - Public Disclosures (@h1disclosed) 's Twitter Profile Photo

⚑ Management Console Editor Privilege Escalation to Root SSH Access in GitHub Enterprise Server via... πŸ‘¨πŸ»β€πŸ’» inspector-ambitious ➟ GitHub πŸŸ₯ High πŸ’° $10,000 πŸ”— hackerone.com/reports/2329547 #bugbounty #bugbountytips #cybersecurity #infosec

⚑ Management Console Editor Privilege Escalation to Root SSH Access in GitHub Enterprise Server via... 
πŸ‘¨πŸ»β€πŸ’» <a href="/inspector_amb/">inspector-ambitious</a> ➟ GitHub 
πŸŸ₯ High
πŸ’° $10,000
πŸ”— hackerone.com/reports/2329547
#bugbounty #bugbountytips #cybersecurity #infosec
H1 Disclosed - Public Disclosures (@h1disclosed) 's Twitter Profile Photo

⚑ Management Console Editor Privilege Escalation to Root SSH Access in GitHub Enterprise Server via... πŸ‘¨πŸ»β€πŸ’» inspector-ambitious ➟ GitHub πŸŸ₯ High πŸ’° $10,000 πŸ”— hackerone.com/reports/2323292 #bugbounty #bugbountytips #cybersecurity #infosec

⚑ Management Console Editor Privilege Escalation to Root SSH Access in GitHub Enterprise Server via... 
πŸ‘¨πŸ»β€πŸ’» <a href="/inspector_amb/">inspector-ambitious</a> ➟ GitHub 
πŸŸ₯ High
πŸ’° $10,000
πŸ”— hackerone.com/reports/2323292
#bugbounty #bugbountytips #cybersecurity #infosec
Rohit (@rohsec) 's Twitter Profile Photo

🚨 ALERT !! 🚨 UIs are overrated. Who needs bloated frontend nonsense when you’ve got a terminal? Hackers don’t need a UI β€” just curl it πŸ˜‰ Try it now πŸ‘‡: curl term.rohsec.com #bugbounty #bugbountytips #cybersecurity

🚨 ALERT !! 🚨

UIs are overrated. Who needs bloated frontend nonsense when you’ve got a terminal? 
Hackers don’t need a UI β€” just curl it πŸ˜‰

Try it now πŸ‘‡:
curl term.rohsec.com

#bugbounty #bugbountytips #cybersecurity