hackerone-reports icon indicating copy to clipboard operation
hackerone-reports copied to clipboard

Top disclosed reports from HackerOne

Tops of HackerOne reports. All reports' raw info stored in data.csv. Scripts to update this file are written in Python 3 and require chromedriver and Chromium executables at PATH. Every script contains some info about how it works. The run order of scripts:

  1. fetcher.py
  2. uniquer.py
  3. filler.py
  4. rater.py

Tops 100.

  • Top 100 upvoted reports
  • Top 100 paid reports

Tops by bug type.

  • Top XSS reports
  • Top XXE reports
  • Top CSRF reports
  • Top IDOR reports
  • Top RCE reports
  • Top SQLi reports
  • Top SSRF reports
  • Top Race Condition reports
  • Top Subdomain Takeover reports
  • Top Open Redirect reports
  • Top Clickjacking reports
  • Top DoS reports
  • Top OAuth reports
  • Top Account Takeover reports

Tops by program.

  • Top Mail.ru reports
  • Top HackerOne reports
  • Top Shopify reports
  • Top Nextcloud reports
  • Top Twitter reports
  • Top Uber reports
  • Top Node.js reports
  • Top shopify-scripts reports
  • Top Legal Robot reports
  • Top U.S. Dept of Defense reports
  • Top Gratipay reports
  • Top Weblate reports
  • Top VK.com reports
  • Top New Relic reports
  • Top LocalTapiola reports
  • Top Zomato reports
  • Top Slack reports
  • Top ownCloud reports
  • Top GitLab reports
  • Top Ubiquiti Inc. reports
  • Top Automattic reports
  • Top Coinbase reports
  • Top Verizon Media reports
  • Top Starbucks reports
  • Top Paragon Initiative Enterprises reports
  • Top PHP (IBB) reports
  • Top Brave Software reports
  • Top Vimeo reports
  • Top OLX reports
  • Top concrete5 reports
  • Top Phabricator reports
  • Top Pornhub reports
  • Top Localize reports
  • Top Qiwi reports
  • Top WordPress reports
  • Top The Internet reports
  • Top Open-Xchange reports
  • Top Razer reports
  • Top Rockstar Games reports
  • Top GitHub Security Lab reports
  • Top h1-ctf reports
  • Top Valve reports
  • Top Yahoo! reports
  • Top Internet Bug Bounty reports
  • Top Concrete CMS reports
  • Top Sifchain reports
  • Top Curl reports
  • Top Acronis reports