We hunt for bugs

You want us to review your application or want the list to be updated? Please contact us.

External links

Examples

Interested in finding which companies we helped? Find some examples below.

Note that due to agreemenet with the vendors, vendor name or issue title are not always disclosed. We strongly value the privacy of our clients and the protection of their business.

Filter by issue:
evernote
utils
SQL injtection
Fixed: yes
tchap (FR)
IM
Path transversal, private data leakage
Fixed: yes
Riot IM (US)
IM
Path transversal, private data leakage
Fixed: yes
Librem Chat
IM
Path transversal, private data leakage
Fixed: yes
Facebook Katana (US)
Social
General - Insecure data storage
Fixed: yes
Facebook Katana (US)
Social
General - Insecure data storage
Fixed: yes
non public
storage
General - Insecure data storage
non public
storage
General - Insecure data storage
AOSP (US)
system - CVE-2018-9374
General - Broken authentication
Fixed: yes
AOSP (US)
General
AOSP (US)
General
Dolphin Browser
browser
General - Insecure data storage, private data leakage
non public
browser
General - Insecure data storage, private data leakage
non public
bank
General - Insecure data storage
non public
bank
General - Insecure data storage, private data leakage
non public
bank
General - Insecure data storage
non public
bank
General - Insecure data storage
Passit (US)
password management
General
Sony (JP)
OEM
General - Insecure data storage
Sony (JP)
OEM
General - Insecure data storage
TeamViewer
utils
General - Insecure data storage, private data leakage
Fixed: yes
VideoLan
utils
General - Insecure data storage, private data leakage
Fixed: yes
non public
General - Insecure data storage, private data leakage
non public
storage
Path transversal, private data leakage
non public
storage
SQL injtection
non public
storage
Path transversal, private data leakage
non public
storage
General - Insecure data storage
non public
storage
General - Broken authentication
non public
storage
General - Insecure data storage, private data leakage
non public
storage
General - Insecure data storage
non public
General - Broken authentication
MapWithMe (RU)
GPS
General - Insecure data storage
non public
framework
Path transversal, private data leakage
Seattle cloud
framework
Path transversal, private data leakage
Fixed: yes
Oszkar (HU)
social
General - Insecure data storage
Oszkar (HU)
social
General - Broken authentication
Jofogas (HU)
utils
General - Insecure data storage, token leakage
non public
password management
General - Insecure data storage
non public
password management
General - Insecure data storage
Tresorit
storage
General - Insecure data storage
Tresorit
storage
General - Insecure data storage, private data leakage
non public
storage
General - Insecure data storage
non public
storage
General - Insecure data storage
non public
GPS
General - Insecure data storage, private data leakage
non public
GPS
General - Insecure data storage
Youtube (US)
social
General - Insecure data storage
Twitter (US)
social
General - Insecure data storage
non public
bank
General - Insecure data storage
Fixed: yes
non public
bank
General - Insecure data storage, private data leakage
Fixed: yes
non public
system
Path transversal, private data leakage
non public
social
General - Insecure data storage, token leakage
non public
utils
Path transversal, private data leakage
non public
utils
Path transversal, private data leakage
Mobisystem File Commander
utils
Non public
Mobisystem Quick PDF
utils
Non public
SolidExplorer
utils
Non public
non public
browser
Path transversal, private data leakage
non public
GPS
General - Insecure data storage
non public
GPS
General - Insecure data storage
non public
utils
Path transversal, private data leakage
MC Donald
Path transversal, private data leakage
Fixed: yes
non public
utils
SQL injtection
non public
utils
SQL injtection
non public
system
SQL injtection
JIO Cloud
storage
Non public
JIO Cloud
storage
General - Insecure data storage, token leakage
Fixed: yes
JIO Play
utils
General - Insecure data storage, token leakage
Fixed: yes
non public
Path transversal, private data leakage
non public
Path transversal, private data leakage
non public
ecommerce
Path transversal, private data leakage
non public
ecommerce
Path transversal, private data leakage
non public
Path transversal, private data leakage
non public
Path transversal, private data leakage
non public
social
General - Insecure data storage, private data leakage
non public
social
Path transversal, private data leakage
non public
social
General - Insecure data storage
non public
ecommerce
Path transversal, private data leakage
non public
framework
Path transversal, private data leakage
non public
Path transversal, private data leakage
non public
OEM
Path transversal, private data leakage
non public
OEM
Path transversal, private data leakage
non public
OEM
Path transversal, private data leakage
non public
OEM
Path transversal, private data leakage
non public
utils
Path transversal, private data leakage
non public
IM
Path transversal, private data leakage
Fixed: yes
non public
utils
General - Broken authentication
non public
IM
General - Broken authentication
non public
utils
Path transversal, private data leakage
non public
family
Path transversal, private data leakage
non public
family
Path transversal, private data leakage
Sleep as Android
family
Non public
non public
util
Path transversal, private data leakage
non public
util
Path transversal, private data leakage
non public
util
Path transversal, private data leakage