📝 HackerOne reports.



• Держите ссылки на очень объемный и полезный репозиторий, который включает в себя топ отчеты HackerOne. Репо постоянно поддерживают в актуальном состоянии, что поможет вам узнать много нового и полезного (варианты эксплуатации различных уязвимостей, векторы атак и т.д.).



Tops 100:

Top 100 upvoted reports;

Top 100 paid reports.



Tops by bug type:

Top XSS reports;

Top XXE reports;

Top CSRF reports;

Top IDOR reports;

Top RCE reports;

Top SQLi reports;

Top SSRF reports;

Top Race Condition reports;

Top Subdomain Takeover reports;

Top Open Redirect reports;

Top Clickjacking reports;

Top DoS reports;

Top OAuth reports;

Top Account Takeover reports;

Top Business Logic reports;

Top REST API reports;

Top GraphQL reports;

Top Information Disclosure reports;

Top Web Cache reports;

Top SSTI reports;

Top Upload reports;

Top HTTP Request Smuggling reports;

Top OpenID reports;

Top Mobile reports;

Top File Reading reports;

Top Authorization Bypass reports;

Top Authentication Bypass reports;

Top MFA reports.



Tops by program:

Top Mail.ru reports;

Top HackerOne reports;

Top Shopify reports;

Top Nextcloud reports;

Top Twitter reports;

Top X (formerly Twitter) reports;

Top Uber reports;

Top Node.js reports;

Top shopify-scripts reports;

Top Legal Robot reports;

Top U.S. Dept of Defense reports;

Top Gratipay reports;

Top Weblate reports;

Top VK.com reports;

Top New Relic reports;

Top LocalTapiola reports;

Top Zomato reports;

Top Slack reports;

Top ownCloud reports;

Top GitLab reports;

Top Ubiquiti Inc. reports;

Top Automattic reports;

Top Coinbase reports;

Top Verizon Media reports;

Top Starbucks reports;

Top Paragon Initiative Enterprises reports;

Top PHP (IBB) reports;

Top Brave Software reports;

Top Vimeo reports;

Top OLX reports;

Top concrete5 reports;

Top Phabricator reports;

Top Localize reports;

Top Qiwi reports;

Top WordPress reports;

Top The Internet reports;

Top Open-Xchange reports;



#Отчет #Пентест