Responsible Disclosure Hall of Fame

Welcome to our hall of fame where all the great bug-bounty hunters and security researchers that disclosed a vulnerability are ranked. The bigger the vulnerability (on terms of impact for the constituent), the higher the ranking. All high-impact vulnerability will also be rewarded. So can you reach the first place and help us to secure our systems even further?

Want to disclose a vulnerability? Please read the responsible disclosure procedure provided by the constituent and file a report by using this form.

Disclose a vulnerability

Our hall of fame

  1. Koen van Hove - SaaS e-mail Spoofing/Impersonation
  2. CondaSecurity.nl
  3. Michael Jones - Skype for Business Vulnerability Disclosure
  4. Mark Fijneman - Registration bypass, XSS and multiple IDOR's
  5. Khaled Selim - HTML email injection / Blind XSS in admin panel / Stored XSS / Open Redirection / Rate Limiting
  6. Theologos Kokkinellis - Multiple reflected XXS
  7. Constantin Mader - HTTP Request Smuggling - CL.TE variant + TomCat Manager Access
  8. Wouter de Vries - Multiple Open Redirects
  9. Alwin Warringa - SQL Injection
  10. Ahmad Asaad - Stored XXS
  11. Niek Flipse (TheWhiteBoot) - Reflected XSS
  12. Shail Sandip Patel - Reflected XSS
  13. Harsh Maheta
  14. Hassan Jaleel (CEO Tricklesoft.com) - Information Disclosure
  15. Kent Apostol
  16. Vít Chramosta - Confidential Information Disclosure
  17. Dhruvi Pandya
  18. Devansh  Chauhan - Session verrification
  19. Takshal Patel - Information Disclosure
  20. Jiehao Zhang - Information Disclosure