• About TC
  • Affiliate Disclaimer
  • Privacy Policy
  • TOS
  • Contact
Tuesday, May 13, 2025
Techcratic
Click For A Secret Deal
  • TC
  • AI
    Artificial Intelligence

    StreamBridge: Turning Your Offline Video Large Language Model into a Proactive Streaming Assistant

    Artificial Intelligence

    3 Excellent Practical Generative AI Courses

    Artificial Intelligence

    Building End-to-End Data Pipelines with Dask

    Artificial Intelligence

    Automate document translation and standardization with Amazon Bedrock and Amazon Translate

    Artificial Intelligence

    InterVision accelerates AI development using AWS LLM League and Amazon SageMaker AI

    Artificial Intelligence

    FireDucks: An Accelerated Fully Compatible Pandas Library

    Artificial Intelligence

    Breaking Out of Beginner: Python Patterns for Intermediate Data Scientists

    Artificial Intelligence

    Building a Personal Knowledge Management Tool with Reor

    Artificial Intelligence

    Build a location-aware agent using Amazon Bedrock Agents and Foursquare APIs

  • Crypto
    Market volatility indicator still points to $135K Bitcoin within 100 days — Analyst

    Market volatility indicator still points to $135K Bitcoin within 100 days — Analyst

    Best Presales to Buy Today – Which Coins Are Poised for a Breakout?

    $BEST Wallet Raises $12.2M as Altcoin Season Looms

    Is This the Start of ‘Altcoin Season’? Bitcoin Nears Record High as Altcoins Ignite

    Is This the Start of ‘Altcoin Season’? Bitcoin Nears Record High as Altcoins Ignite

    MoonX: BYDFi’s On-Chain Trading Engine — A Ticket from CEX to DEX

    MoonX: BYDFi’s On-Chain Trading Engine — A Ticket from CEX to DEX

    JPMorgan: Gold Could Reach $6,000 if This Shift Happens

    JPMorgan: Gold Could Reach $6,000 if This Shift Happens

    Nirvana Labs Raises $6 Million to Build Next-Gen Web3 Infrastructure

    Nirvana Labs Raises $6 Million to Build Next-Gen Web3 Infrastructure

    Hashdex Seeks SEC Approval to Add Litecoin to Crypto Index ETF

    SOL Strategies and DigitalX Unlock Institutional Solana Staking with BitGo

    JAN3 CEO Samson Mow: ‘Maybe It’s Time for Another Fork of Bitcoin’

    JAN3 CEO Samson Mow: ‘Maybe It’s Time for Another Fork of Bitcoin’

    Moscow Releases Tax Calculator for Russian Crypto Miners

    South Korean Central Bank Wades into Politicians Stablecoin Row

  • Cybersecurity
    Cybersecurity

    Can we counter online disinformation?

    Cybersecurity

    Malicious PyPI Package Posing as Solana Tool Stole Source Code in 761 Downloads

    Cybersecurity

    China-Linked APTs Exploit SAP CVE-2025-31324 to Breach 581 Critical Systems Worldwide

    Cybersecurity

    Why Exposed Credentials Remain Unfixed—and How to Change That

    Cybersecurity

    Google Pays $1.375 Billion to Texas Over Unauthorized Tracking and Biometric Data Collection

    Cybersecurity

    Deploying AI Agents? Learn to Secure Them Before Hackers Strike Your Business

    Cybersecurity

    Google Rolls Out On-Device AI Protections to Detect Scams in Chrome and Android

    Cybersecurity

    Chinese Hackers Exploit SAP RCE Flaw CVE-2025-31324, Deploy Golang-Based SuperShell

    Cybersecurity

    SonicWall Patches 3 Flaws in SMA 100 Devices Allowing Attackers to Run Code as Root

  • Deals
    Lenovo ThinkPad T490s 14.0” FHD Laptop, Intel Quad-Core i7-8665U up to 3.90GHz, 32GB…

    Lenovo ThinkPad T490s 14.0” FHD Laptop, Intel Quad-Core i7-8665U up to 3.90GHz, 32GB…

    ICY DOCK 4 Bays Dual 2 x 2.5 inch Hard Drive SSD Mounting Bracket Adapter for External…

    ICY DOCK 4 Bays Dual 2 x 2.5 inch Hard Drive SSD Mounting Bracket Adapter for External…

    MINIX Z100-0dB Fanless Mini PC, Intel 12th Gen N100, 16GB DDR4/512GB PCIe 3.0 X4 SSD/4K…

    MINIX Z100-0dB Fanless Mini PC, Intel 12th Gen N100, 16GB DDR4/512GB PCIe 3.0 X4 SSD/4K…

    Crystal Clear Cover Kickstand Case for Steam Deck Gaming Console PC Protective Skin Case…

    Crystal Clear Cover Kickstand Case for Steam Deck Gaming Console PC Protective Skin Case…

    STGAubron Gaming PC Desktop Computer, Intel Core I7 up to 3.9 GHz, Radeon RX 580 8G, 16G…

    STGAubron Gaming PC Desktop Computer, Intel Core I7 up to 3.9 GHz, Radeon RX 580 8G, 16G…

    Razer Ornata V3 X Gaming Keyboard: Low Profile Keys – Silent Membrane Switches – Spill…

    Razer Ornata V3 X Gaming Keyboard: Low Profile Keys – Silent Membrane Switches – Spill…

    NEO CHAIR Office Chair Computer Desk Gaming Chair Ergonomic Executive High Back with…

    NEO CHAIR Office Chair Computer Desk Gaming Chair Ergonomic Executive High Back with…

    MALKO 10 Pack Video Game Protector Compatible with Nintendo DS Game Case | Clear Plastic…

    MALKO 10 Pack Video Game Protector Compatible with Nintendo DS Game Case | Clear Plastic…

    Mic Pop Filter White Microphone Windscreen Compatible with HyperX QuadCast S White

    Mic Pop Filter White Microphone Windscreen Compatible with HyperX QuadCast S White

  • Gaming
    Grand Theft Auto VI (GTA VI) | OFFICIAL TRAILER | Reaction – LiteWeight Gaming

    Grand Theft Auto VI (GTA VI) | OFFICIAL TRAILER | Reaction – LiteWeight Gaming

    Funeral Horror Mascot Mobile – Gameplay Walkthrough Part 2 – Full Game (Android, iOS)

    Funeral Horror Mascot Mobile – Gameplay Walkthrough Part 2 – Full Game (Android, iOS)

    REDRAGON S101 GAMING KEYBOARD

    Valve will soon let you know if a game is compatible with your SteamOS device

    PlayStation 4 Pro Review: The First 4K Games Console?

    PlayStation 4 Pro Review: The First 4K Games Console?

    Honest Game Trailers | Overcooked

    Honest Game Trailers | Overcooked

    Beach Buggy Racing 2 – Gameplay Walkthrough Part 1 (iOS, Android)

    Beach Buggy Racing 2 – Gameplay Walkthrough Part 1 (iOS, Android)

    Nintendo’s lawsuit isn’t slowing Palworld down as it prepares for a summer collab with Terraria

    Nintendo’s lawsuit isn’t slowing Palworld down as it prepares for a summer collab with Terraria

    The Others Game Review – Damned. Good?

    The Others Game Review – Damned. Good?

    Secrets to Upgrade Faster in Clash of Clans!

    Secrets to Upgrade Faster in Clash of Clans!

  • Tesla
    Car Front Under Seat Storage Box for Tesla Model Y Model X 2020-2024 2025 Accessories…

    Car Front Under Seat Storage Box for Tesla Model Y Model X 2020-2024 2025 Accessories…

    Tesla employees try to oust Elon, new Volvo, and Micah’s close call

    Tesla employees try to oust Elon, new Volvo, and Micah’s close call

    Tesla shares video of its Optimus robot catching up to competition

    Tesla shares video of its Optimus robot catching up to competition

    Driver Side Mirror Replacement for Tesla Model Y 2019 2020 2021 2022 2023 2024, ModelY -…

    Driver Side Mirror Replacement for Tesla Model Y 2019 2020 2021 2022 2023 2024, ModelY -…

    Tesla will pause part of new Model Y production for 3 weeks for upgrades, report says

    Tesla (TSLA) Chinese deliveries dropped to a scary low level

    Car Roof Rack, 63″ x 47.2″ Universal Roof Flat Rack Aluminum Construction Heavy Duty…

    Car Roof Rack, 63″ x 47.2″ Universal Roof Flat Rack Aluminum Construction Heavy Duty…

    Front Windshield Sunshield, 55.12 inch x 27.56 inch Sunproof Heat Insulation 4 Seasons…

    Front Windshield Sunshield, 55.12 inch x 27.56 inch Sunproof Heat Insulation 4 Seasons…

    Motor Trend -2 Piece Front Car Floor Mats- Black FlexTough Contour Liners-Deep Dish…

    Motor Trend -2 Piece Front Car Floor Mats- Black FlexTough Contour Liners-Deep Dish…

    Front Fender Risers 20mm Relocator Spacer Fender Bracket Lift Mount Kit Fit Harley…

    Front Fender Risers 20mm Relocator Spacer Fender Bracket Lift Mount Kit Fit Harley…

  • UFO
    The 'Ancient Aliens' Idea is More Realistic Than You'd Expect…

    The 'Ancient Aliens' Idea is More Realistic Than You'd Expect…

    The Conscious Contactee: Understanding Alien Encounters

    The Conscious Contactee: Understanding Alien Encounters

    Nathanial Hornblower’s: The Robot v The Octopus Monster Saga | Intergalactic | 98 | 720p | GW-A.I.

    Nathanial Hornblower’s: The Robot v The Octopus Monster Saga | Intergalactic | 98 | 720p | GW-A.I.

    Fidget Toys Adult, Gravity Defying Kinetic Desk Toy, Metal ADHD Silent Fidget Toy Spinner, Balance Desk Toys for Office for Adults, Party Favors, Birthday (Gray-Rose Gold Ball)

    Fidget Toys Adult, Gravity Defying Kinetic Desk Toy, Metal ADHD Silent Fidget Toy Spinner, Balance Desk Toys for Office for Adults, Party Favors, Birthday (Gray-Rose Gold Ball)

    Astronauts Stranded in Space Until 2025 #shorts #shortsfeed

    Astronauts Stranded in Space Until 2025 #shorts #shortsfeed

    #ghosthunting #ghosts #ghoststories #horrorstories #paranormal #ghost

    #ghosthunting #ghosts #ghoststories #horrorstories #paranormal #ghost

    Trump hot mic moment sparks conspiracy theories

    Trump hot mic moment sparks conspiracy theories

    Home Prefer Mens Womens UPF50+ Sun Hat Athletic Adjustable Baseball Cap Quick Dry UV Protection Workout Running Golf Hat

    Home Prefer Mens Womens UPF50+ Sun Hat Athletic Adjustable Baseball Cap Quick Dry UV Protection Workout Running Golf Hat

    Unidentified Flying Object: Fighter Pilots Encounter Mysterious Anomaly

    Unidentified Flying Object: Fighter Pilots Encounter Mysterious Anomaly

No Result
View All Result
  • TC
  • AI
    Artificial Intelligence

    StreamBridge: Turning Your Offline Video Large Language Model into a Proactive Streaming Assistant

    Artificial Intelligence

    3 Excellent Practical Generative AI Courses

    Artificial Intelligence

    Building End-to-End Data Pipelines with Dask

    Artificial Intelligence

    Automate document translation and standardization with Amazon Bedrock and Amazon Translate

    Artificial Intelligence

    InterVision accelerates AI development using AWS LLM League and Amazon SageMaker AI

    Artificial Intelligence

    FireDucks: An Accelerated Fully Compatible Pandas Library

    Artificial Intelligence

    Breaking Out of Beginner: Python Patterns for Intermediate Data Scientists

    Artificial Intelligence

    Building a Personal Knowledge Management Tool with Reor

    Artificial Intelligence

    Build a location-aware agent using Amazon Bedrock Agents and Foursquare APIs

  • Crypto
    Market volatility indicator still points to $135K Bitcoin within 100 days — Analyst

    Market volatility indicator still points to $135K Bitcoin within 100 days — Analyst

    Best Presales to Buy Today – Which Coins Are Poised for a Breakout?

    $BEST Wallet Raises $12.2M as Altcoin Season Looms

    Is This the Start of ‘Altcoin Season’? Bitcoin Nears Record High as Altcoins Ignite

    Is This the Start of ‘Altcoin Season’? Bitcoin Nears Record High as Altcoins Ignite

    MoonX: BYDFi’s On-Chain Trading Engine — A Ticket from CEX to DEX

    MoonX: BYDFi’s On-Chain Trading Engine — A Ticket from CEX to DEX

    JPMorgan: Gold Could Reach $6,000 if This Shift Happens

    JPMorgan: Gold Could Reach $6,000 if This Shift Happens

    Nirvana Labs Raises $6 Million to Build Next-Gen Web3 Infrastructure

    Nirvana Labs Raises $6 Million to Build Next-Gen Web3 Infrastructure

    Hashdex Seeks SEC Approval to Add Litecoin to Crypto Index ETF

    SOL Strategies and DigitalX Unlock Institutional Solana Staking with BitGo

    JAN3 CEO Samson Mow: ‘Maybe It’s Time for Another Fork of Bitcoin’

    JAN3 CEO Samson Mow: ‘Maybe It’s Time for Another Fork of Bitcoin’

    Moscow Releases Tax Calculator for Russian Crypto Miners

    South Korean Central Bank Wades into Politicians Stablecoin Row

  • Cybersecurity
    Cybersecurity

    Can we counter online disinformation?

    Cybersecurity

    Malicious PyPI Package Posing as Solana Tool Stole Source Code in 761 Downloads

    Cybersecurity

    China-Linked APTs Exploit SAP CVE-2025-31324 to Breach 581 Critical Systems Worldwide

    Cybersecurity

    Why Exposed Credentials Remain Unfixed—and How to Change That

    Cybersecurity

    Google Pays $1.375 Billion to Texas Over Unauthorized Tracking and Biometric Data Collection

    Cybersecurity

    Deploying AI Agents? Learn to Secure Them Before Hackers Strike Your Business

    Cybersecurity

    Google Rolls Out On-Device AI Protections to Detect Scams in Chrome and Android

    Cybersecurity

    Chinese Hackers Exploit SAP RCE Flaw CVE-2025-31324, Deploy Golang-Based SuperShell

    Cybersecurity

    SonicWall Patches 3 Flaws in SMA 100 Devices Allowing Attackers to Run Code as Root

  • Deals
    Lenovo ThinkPad T490s 14.0” FHD Laptop, Intel Quad-Core i7-8665U up to 3.90GHz, 32GB…

    Lenovo ThinkPad T490s 14.0” FHD Laptop, Intel Quad-Core i7-8665U up to 3.90GHz, 32GB…

    ICY DOCK 4 Bays Dual 2 x 2.5 inch Hard Drive SSD Mounting Bracket Adapter for External…

    ICY DOCK 4 Bays Dual 2 x 2.5 inch Hard Drive SSD Mounting Bracket Adapter for External…

    MINIX Z100-0dB Fanless Mini PC, Intel 12th Gen N100, 16GB DDR4/512GB PCIe 3.0 X4 SSD/4K…

    MINIX Z100-0dB Fanless Mini PC, Intel 12th Gen N100, 16GB DDR4/512GB PCIe 3.0 X4 SSD/4K…

    Crystal Clear Cover Kickstand Case for Steam Deck Gaming Console PC Protective Skin Case…

    Crystal Clear Cover Kickstand Case for Steam Deck Gaming Console PC Protective Skin Case…

    STGAubron Gaming PC Desktop Computer, Intel Core I7 up to 3.9 GHz, Radeon RX 580 8G, 16G…

    STGAubron Gaming PC Desktop Computer, Intel Core I7 up to 3.9 GHz, Radeon RX 580 8G, 16G…

    Razer Ornata V3 X Gaming Keyboard: Low Profile Keys – Silent Membrane Switches – Spill…

    Razer Ornata V3 X Gaming Keyboard: Low Profile Keys – Silent Membrane Switches – Spill…

    NEO CHAIR Office Chair Computer Desk Gaming Chair Ergonomic Executive High Back with…

    NEO CHAIR Office Chair Computer Desk Gaming Chair Ergonomic Executive High Back with…

    MALKO 10 Pack Video Game Protector Compatible with Nintendo DS Game Case | Clear Plastic…

    MALKO 10 Pack Video Game Protector Compatible with Nintendo DS Game Case | Clear Plastic…

    Mic Pop Filter White Microphone Windscreen Compatible with HyperX QuadCast S White

    Mic Pop Filter White Microphone Windscreen Compatible with HyperX QuadCast S White

  • Gaming
    Grand Theft Auto VI (GTA VI) | OFFICIAL TRAILER | Reaction – LiteWeight Gaming

    Grand Theft Auto VI (GTA VI) | OFFICIAL TRAILER | Reaction – LiteWeight Gaming

    Funeral Horror Mascot Mobile – Gameplay Walkthrough Part 2 – Full Game (Android, iOS)

    Funeral Horror Mascot Mobile – Gameplay Walkthrough Part 2 – Full Game (Android, iOS)

    REDRAGON S101 GAMING KEYBOARD

    Valve will soon let you know if a game is compatible with your SteamOS device

    PlayStation 4 Pro Review: The First 4K Games Console?

    PlayStation 4 Pro Review: The First 4K Games Console?

    Honest Game Trailers | Overcooked

    Honest Game Trailers | Overcooked

    Beach Buggy Racing 2 – Gameplay Walkthrough Part 1 (iOS, Android)

    Beach Buggy Racing 2 – Gameplay Walkthrough Part 1 (iOS, Android)

    Nintendo’s lawsuit isn’t slowing Palworld down as it prepares for a summer collab with Terraria

    Nintendo’s lawsuit isn’t slowing Palworld down as it prepares for a summer collab with Terraria

    The Others Game Review – Damned. Good?

    The Others Game Review – Damned. Good?

    Secrets to Upgrade Faster in Clash of Clans!

    Secrets to Upgrade Faster in Clash of Clans!

  • Tesla
    Car Front Under Seat Storage Box for Tesla Model Y Model X 2020-2024 2025 Accessories…

    Car Front Under Seat Storage Box for Tesla Model Y Model X 2020-2024 2025 Accessories…

    Tesla employees try to oust Elon, new Volvo, and Micah’s close call

    Tesla employees try to oust Elon, new Volvo, and Micah’s close call

    Tesla shares video of its Optimus robot catching up to competition

    Tesla shares video of its Optimus robot catching up to competition

    Driver Side Mirror Replacement for Tesla Model Y 2019 2020 2021 2022 2023 2024, ModelY -…

    Driver Side Mirror Replacement for Tesla Model Y 2019 2020 2021 2022 2023 2024, ModelY -…

    Tesla will pause part of new Model Y production for 3 weeks for upgrades, report says

    Tesla (TSLA) Chinese deliveries dropped to a scary low level

    Car Roof Rack, 63″ x 47.2″ Universal Roof Flat Rack Aluminum Construction Heavy Duty…

    Car Roof Rack, 63″ x 47.2″ Universal Roof Flat Rack Aluminum Construction Heavy Duty…

    Front Windshield Sunshield, 55.12 inch x 27.56 inch Sunproof Heat Insulation 4 Seasons…

    Front Windshield Sunshield, 55.12 inch x 27.56 inch Sunproof Heat Insulation 4 Seasons…

    Motor Trend -2 Piece Front Car Floor Mats- Black FlexTough Contour Liners-Deep Dish…

    Motor Trend -2 Piece Front Car Floor Mats- Black FlexTough Contour Liners-Deep Dish…

    Front Fender Risers 20mm Relocator Spacer Fender Bracket Lift Mount Kit Fit Harley…

    Front Fender Risers 20mm Relocator Spacer Fender Bracket Lift Mount Kit Fit Harley…

  • UFO
    The 'Ancient Aliens' Idea is More Realistic Than You'd Expect…

    The 'Ancient Aliens' Idea is More Realistic Than You'd Expect…

    The Conscious Contactee: Understanding Alien Encounters

    The Conscious Contactee: Understanding Alien Encounters

    Nathanial Hornblower’s: The Robot v The Octopus Monster Saga | Intergalactic | 98 | 720p | GW-A.I.

    Nathanial Hornblower’s: The Robot v The Octopus Monster Saga | Intergalactic | 98 | 720p | GW-A.I.

    Fidget Toys Adult, Gravity Defying Kinetic Desk Toy, Metal ADHD Silent Fidget Toy Spinner, Balance Desk Toys for Office for Adults, Party Favors, Birthday (Gray-Rose Gold Ball)

    Fidget Toys Adult, Gravity Defying Kinetic Desk Toy, Metal ADHD Silent Fidget Toy Spinner, Balance Desk Toys for Office for Adults, Party Favors, Birthday (Gray-Rose Gold Ball)

    Astronauts Stranded in Space Until 2025 #shorts #shortsfeed

    Astronauts Stranded in Space Until 2025 #shorts #shortsfeed

    #ghosthunting #ghosts #ghoststories #horrorstories #paranormal #ghost

    #ghosthunting #ghosts #ghoststories #horrorstories #paranormal #ghost

    Trump hot mic moment sparks conspiracy theories

    Trump hot mic moment sparks conspiracy theories

    Home Prefer Mens Womens UPF50+ Sun Hat Athletic Adjustable Baseball Cap Quick Dry UV Protection Workout Running Golf Hat

    Home Prefer Mens Womens UPF50+ Sun Hat Athletic Adjustable Baseball Cap Quick Dry UV Protection Workout Running Golf Hat

    Unidentified Flying Object: Fighter Pilots Encounter Mysterious Anomaly

    Unidentified Flying Object: Fighter Pilots Encounter Mysterious Anomaly

No Result
View All Result
Techcratic
No Result
View All Result

Celebrating $20M in Bounties with a Recap of Our Top 20 Up Voted Reports on Hacktivity

Hacker News by Hacker News
February 15, 2025
in Hacker News
Reading Time: 15 mins read
121 9
A A
0
Home Hacker News
Share on FacebookShare on XShare on LinkedIn

johnk
2017-08-28 14:00:00
www.hackerone.com

Hacktivity is one of the most popular pages on hackerone.com. And for good reason as it’s a veritable treasure trove of learning for hackers and a wonderful way for companies to practice transparency and showcase their security efforts.

In honor of our $20M in bounties paid out to hackers (yay!), we thought we’d revisit some of the top most up voted reports ever submitted on HackerOne.

img1

And here they are, in descending order, with a corresponding cat gif (because, the internet is awesome). Congrats to all hackers in the list, you’re making the internet safer day by day!

20. (102 upvotes) Stealing xoxs-tokens using weak postMessage / call-popup redirect to current team domain
$3,000 awarded to @fransrosen by Slack for finding a vulnerability which would allow an attacker running a malicious site to steal XOXS tokens.

img 2

19. (104 upvotes) Subdomain takeover at info.hacker.one
$1,000 awarded to @ak1t4 by HackerOne for discovering a CNAME entry for unbouncepages.com that allowed takeover of hundreds of managed domains.

img 3

18. (110 upvotes) Disclose any user’s private email through API
$2,000 awarded to @zombiehelp54 by HackerOne for finding a vulnerability that allows an attacker to disclose any user’s private email address.

img 4
 

17. (111 upvotes) Round error issue -> produce money for free
$1,000 awarded to @4lemon by itBit Exchange for finding a way to exploit a rounding error during financial transactions to “make money.”

img 5

16. (114 upvotes) Reading Emails in Uber Subdomains
$10,000 awarded to @uranium238 by Uber for discovering a bug that allowed reading emails from various subdomains.

img 6

15. (116 upvotes) Authentication bypass on auth.uber.com via subdomain takeover of saostatic.uber.com
$5,000 awarded to @arneswinnen by Uber for finding access to subdomains by bypassing the SSO login system.

img 7

14. (119) Web Authentication Endpoint Credentials Brute-Force Vulnerability
$1,500 awarded to @arneswinnen by HackerOne for discovering an inferior request rate-limiting mechanism, which provided inadequate protection against brute force attacks.

img 8

13. (122 upvotes) Hacker.One Subdomain Takeover
$1,000 awarded to @geekboy by HackerOne for exploiting an Instapage cname bug to to takeover a subdomain.

img 9

12. (125 upvotes) Multiple endpoints are vulnerable to XML External Entity injection (XXE)
$2,500 awarded to @mak by Pornhub for finding multiple endpoints vulnerable to XML External Entity injection, enabling arbitrary requests from a production server.

img 10

11. (161 upvotes) Stored XSS in developer.uber.com
$7,500 awarded to @albinowax by Uber for discovering a method for permanently defacing of an entire domain.

img 11

10. (166 upvotes) RCE by command line argument injection to `gm convert` in `/edit/process?a=crop`
$5,000 awarded to @neex by Imgur for finding a command line argument injection vulnerability that would lead to command execution.

img 12

9. (174 upvotes) Publicly exposed SVN repository, ht.pornhub.com
$10,000 awarded to @mak by Pornhub for discovering a means for accessing a public .svn repository, which exposed usernames and provided subsequent access to production servers.

img 13

8. (175 upvotes) XXE on sms-be-vip.twitter.com in SXMP Processor 
$10,080 awarded to @joshbrodienz by Twitter for finding a bug that exposed local files and allowed sending of web requests.

img 14

7. (200 upvotes) Internal attachments can be exported via “Export as .zip” feature
$12,500 awarded to @japzdivino by HackerOne for discovering a vulnerability that inadvertently included private, internal files when any user exported the complete report.

img 15

6. (210 upvotes) Information Disclosure in /skills call
$10,000 awarded to @deepankerchawla by HackerOne for finding a vulnerability that exposed bug reports submitted by other HackerOne community members, including confidential report descriptions.

img 16

5. (223 upvotes) Change any Uber user’s password through /rt/users/passwordless-signup – Account Takeover (critical)
$10,000 awarded to @mongo by Uber for discovering a vulnerability which allowed a password change just by entering any Uber-registered phone number.

img 17

4. (262 upvotes) Partial disclosure of report activity through new “Export as .zip” feature
$10,000 awarded to @faisalahmed by HackerOne for finding a vulnerability that allowed viewing comments not normally visible in a limited disclosure.

img 18

3. (290 upvotes) Open prod Jenkins instance
$15,000 awarded to @preben_ve by Snapchat for discovering a Jenkins instance which would allow login with any valid Google account and further enable access to sensitive API tokens and source code.

img 19

2. (432 upvotes) [phpobject in cookie] Remote shell/command execution
$20,000 awarded to @static by Pornhub for finding a vulnerable deserialization function in PHP leading to remote shell on a production server.

img 20

1. (478 votes) WannaCrypt “Killswitch”
$10,000 awarded to @malwaretech by HackerOne for identifying the “killswitch” for the  May 2017 global ransomware attack, which the hacker disclosed here.

img 21

 


HackerOne is the #1 hacker-powered security platform, helping organizations find and fix critical vulnerabilities before they can be criminally exploited. As the contemporary alternative to traditional penetration testing, our bug bounty program solutions encompass vulnerability assessment, crowdsourced testing and responsible disclosure management. Discover more about our security testing solutions or Contact Us today.



Source Link


Keep your files stored safely and securely with the SanDisk 2TB Extreme Portable SSD. With over 69,505 ratings and an impressive 4.6 out of 5 stars, this product has been purchased over 8K+ times in the past month. At only $129.99, this Amazon’s Choice product is a must-have for secure file storage.

Help keep private content private with the included password protection featuring 256-bit AES hardware encryption. Order now for just $129.99 on Amazon!


Start your free Amazon Prime trial
today and unlock unlimited streaming and more!

Help Power Techcratic’s Future – Scan To Support

If Techcratic’s content and insights have helped you, consider giving back by supporting the platform with crypto. Every contribution makes a difference, whether it’s for high-quality content, server maintenance, or future updates. Techcratic is constantly evolving, and your support helps drive that progress.

As a solo operator who wears all the hats, creating content, managing the tech, and running the site, your support allows me to stay focused on delivering valuable resources. Your support keeps everything running smoothly and enables me to continue creating the content you love. I’m deeply grateful for your support, it truly means the world to me! Thank you!

BITCOIN

Bitcoin Logo

Bitcoin QR Code

bc1qlszw7elx2qahjwvaryh0tkgg8y68enw30gpvge

Scan the QR code with your crypto wallet app

DOGECOIN

Dogecoin Logo

Dogecoin QR Code

D64GwvvYQxFXYyan3oQCrmWfidf6T3JpBA

Scan the QR code with your crypto wallet app

ETHEREUM

Ethereum Logo

Ethereum QR Code

0xe9BC980DF3d985730dA827996B43E4A62CCBAA7a

Scan the QR code with your crypto wallet app

Please read the Privacy and Security Disclaimer on how Techcratic handles your support.

Disclaimer: As an Amazon Associate, Techcratic may earn from qualifying purchases.

Tags: Hacker News
Share162Tweet101Share28
Previous Post

Art lesson on creating Easter digital collage art piece. “New beginnings “

Next Post

25 Weird Facts That Sound Like Conspiracy Theories

Hacker News

Hacker News

Stay updated with Hacker News, where technology meets entrepreneurial spirit. Get the latest on tech trends, startup news, and discussions from the tech community. Read the latest updates here at Techcratic.

Related Posts

Hacker News

Failed Soviet Venus lander Kosmos 482 crashes to Earth after 53 years in orbit

May 13, 2025
1.3k
Starcloud: Data centers in space
Hacker News

Starcloud: Data centers in space

May 13, 2025
1.3k
Google is finally building its own DeX: First look at Android’s Desktop Mode
Hacker News

Google is finally building its own DeX: First look at Android’s Desktop Mode

May 13, 2025
1.3k
HelixDB/helix-db: HelixDB is a powerful, open-source, graph-vector database built in Rust for intelligent data storage for RAG and AI.
Hacker News

HelixDB/helix-db: HelixDB is a powerful, open-source, graph-vector database built in Rust for intelligent data storage for RAG and AI.

May 13, 2025
1.3k
Why are coffee stains darkest at the edges when they dry?
Hacker News

Why are coffee stains darkest at the edges when they dry?

May 13, 2025
1.3k
INE Security Alert: Top 5 Takeaways from RSAC 2025 – Latest Hacking News
Hacker News

INE Security Alert: Top 5 Takeaways from RSAC 2025 – Latest Hacking News

May 13, 2025
1.3k
Load More
Next Post
25 Weird Facts That Sound Like Conspiracy Theories

25 Weird Facts That Sound Like Conspiracy Theories

Smartphone

Our Honor Magic7 Lite battery test and charging test results are in

Super Mario Wonder (dunkview)

Super Mario Wonder (dunkview)

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Your Tech Resources

  • 30 Second Tech ™
  • AI
  • App Zone ™
  • Apple
  • Ars Technica
  • CNET
  • ComputerWorld
  • Crypto News
  • Cybersecurity
  • Endgadget
  • Fossbytes
  • Gaming
  • GeekWire
  • Gizmodo
  • Google News
  • Hacker News
  • Harvard Tech
  • I Like Cats ™
  • I Like Dogs ™
  • LifeHacker
  • MacRumors
  • Macworld
  • Mashable
  • Microsoft
  • MIT Tech
  • PC World
  • Photofocus
  • Physics
  • Random Tech
  • Retro Rewind ™
  • Robot Report
  • SiliconANGLE
  • SlashGear
  • Smartphone
  • StackSocial
  • Tech Art
  • Tech Careers
  • Tech Deals
  • Techcratic ™
  • TechCrunch
  • Techdirt
  • TechRepublic
  • Techs Got To Eat ™
  • TechSpot
  • Tesla
  • The Verge
  • TNW
  • Trusted Reviews
  • UFO
  • VentureBeat
  • Visual Capitalist
  • Weird Stuff
  • Wired
  • ZDNet

Tech News

  • 30 Second Tech ™
  • AI
  • AnandTech
  • Apple Insider
  • Ars Technica
  • CNET
  • ComputerWorld
  • Crypto News
  • Cybersecurity
  • Endgadget
  • ExtremeTech
  • Fossbytes
  • Gaming
  • GeekWire
  • Gizmodo

Tech News

  • Harvard Tech
  • MacRumors
  • Macworld
  • Mashable
  • Microsoft
  • MIT Tech
  • Physics
  • PC World
  • Random Tech
  • Retro Rewind ™
  • SiliconANGLE
  • SlashGear
  • Smartphone
  • StackSocial
  • Tech Careers

Tech News​

  • Tech Art
  • TechCrunch
  • Techdirt
  • TechRepublic
  • Techs Got To Eat ™
  • TechSpot
  • Tesla
  • The Verge
  • TNW
  • Trusted Reviews
  • UFO
  • VentureBeat
  • Visual Capitalist
  • Weird Stuff
  • Wired
  • ZDNet

Site Links

  • About Techcratic
  • Affiliate Disclaimer
  • Affiliate Link Policy
  • Contact Techcratic
  • Dealors Discount Store
  • Privacy and Security Disclaimer
  • Privacy Policy
  • RSS Feed
  • Site Map
  • Support Techcratic
  • Techcratic
  • Tech Deals
  • TOS
  • 𝕏
Click For A Secret Deal

Techcratic – Your All In One Tech Hub © 2020 – 2025
All Rights Reserved
∞

No Result
View All Result
  • Home
  • Apple
  • Gaming
  • Microsoft
  • AnandTech