Stored XSS Via https://t.co/EgRjRRmQWR
Today, the HackerPlus team discovered an XSS stored in Gitlab and reported and accepted the report.
Thank You Gitlab Team @Hacker0x01
Thank You HackerOne Team @gitlab
Waiting For Reward Review $$$
HackerPlus Team 🛡
CSRF Injection Via Goldman Sachs
Target : @GoldmanSachs | @Hacker0x01
Report : Triaged
Bounty : $1,615
Anyone who would like to join the Telegram group, please send us a private message. Thank you.
Video POC Programs On HackerOne.
. CSRF Injection POC
. Account Takeover Zero Click POC
. HTML Injection POC
Anyone who wants to join the group, send us a private message. Thank you.
@Hacker0x01@Bugcrowd@telegram
Account TakeOver Zero Click Via https://t.co/ig1xpGt7oh
The HackerPlus+ team has received a $20,000 reward from PayPal today
Thank You For Bounty @PayPal
Thank You @Hacker0x01
There is a Telegram Channel where all the WriteUps of the HackerPlus+ team reports are posted, and POC videos are posted on it. Whoever wants to join should send us a message.
@HemantSolo@Apple Hello @HemantSolo
If you get the first reward, contact me and I will help you skip the correction and submit the report again, but on one condition: I will take 50% of the reward from you.
28 researchers. 9 days. 45 valid critical or high severity issues uncovered.
@amazon's first-ever In-Person Challenge brought together top security researchers to test its systems.
A HackerOne Challenge is more than just a bug bounty—it’s an invite-only, time-bound offensive testing program focused on finding high-impact vulnerabilities fast.
Here’s what this one produced:
👀 222 vulnerability submissions triaged by a dedicated HackerOne pod
💪 129 valid issues: ~60% of all submissions!
💥 12 critical & 33 high-severity findings
🧠 The opportunity for in-house teams to observe researchers’ reconnaissance & attack methodologies firsthand—gaining a deeper understanding of potential security issues
This is what modern, proactive security looks like.
@namcoder_com@PayPal Hello my friend, congratulations on the reward. Contact me and we will send you the same loophole again, but in a way that has a bypass, so that you can be accepted again and get the same reward, but on the condition that you will get 50% of the bounty.
the line with the company employees, I will delete the page and delete all the information. We do not ask anything from you and we do not take anything in return for dealing with us in an aggressive manner. We publish knowledge without compensation. Please respect and appreciate
The HackerPlus+ team is proud to announce that 10% of every reward we receive will be donated to charitable organizations. This decision aligns with the team's core mission to contribute meaningfully to humanitarian and developmental causes.
@Hacker0x01@Bugcrowd@yeswehack
Subdomain TakeOver Programs BugCrowd $2100 Bounty
HackerPlus+ | Writeups
Link : https://t.co/YHtHWjJrkK
The HackerPlus team has created a training camp that will teach you the field from scratch to professionalism. Send us here on Twitter
@Hacker0x01@Bugcrowd@yeswehack
ATM | Penetration Testing
HackerPlus+ | Writeups
Link : https://t.co/KttT19KZzc
The HackerPlus team has created a training camp that will teach you the field from scratch to professionalism. Send us here on Twitter
@Hacker0x01@yeswehack@Bugcrowd