Scope Review and Bug Hunting Using Github Dorks - Bug Bounty - Ep - 02
Scope Review and Bug Hunting Using Github Dorks - Bug Bounty - Ep - 02
This is the second episode in the 'Bug Bounty' series.
Here I will talk about how I do scope review to choose a program, you could use a similar approach. Then we would look at
how to get some low hanging bugs using github dorks.
-------------------------------------------------------------------------------------------------------------------------
Links from the video :
Slides : https://docs.google.com/presentation/d/1JejTkAgH29kTk93tr2sA6v2pkWDU6GRueDF8Pb22nIE/
Hackerone Directory : https://hackerone.com/directory/programs
DoD Archive List : https://archive.defense.gov/RegisteredSites/RegisteredSites.aspx
Github Dorks :
https://github.com/techgaun/github-dorks
https://securitytrails.com/blog/github-dorks
Hackerone's CTF - Play and earn points : Private Invites - https://ctf.hacker101.com/
Play CTF and get private invite - https://www.hackerone.com/blog/Hacker101-CTF-Find-flags-get-private-bug-bounty-program-invitations
Look upcoming and past CTFs here - https://ctftime.org/
My Blog Posts on CTF Web challenges :
https://lud1161.github.io/posts/hacker-movie-club-csaw-quals-2018/
https://lud1161.github.io/posts/cat-chat-googlectf-writeup/
PicoCTF - Beginners start here - https://picoctf.com/
-------------------------------------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------------------------------------
Key Takeaways :
1. Parameters I look when choosing a program
No. of reports resolved
Assets
Payout
Response efficiency
Time to triage and Time to bounty ( personal choice )
2. As a beginner choose VDP with huge scope, less people looking into these
3. Github Dorks can fetch low hanging fruit
4. Hackerone CTF to get private invites.
5. CTFs are a good way to start with security - Start with PicoCTF
-------------------------------------------------------------------------------------------------------------------------
This series will cover all the stages of bug bounty and will get you started better in the bug bounty space.
You will have your own complete, fully automated recon setup.
-------------------------------------------------------------------------------------------------------------------------
Detailed Google FeedBack Form : https://forms.gle/rA9oy5wqN5GSLkh8A
Join the subreddit to get involved with the community, ask doubts, post tips & tricks, find latest articles related to cybersecurity and hacking :
https://www.reddit.com/r/HackingSimplified
Join the telegram channel to get latest articles related to cybersecurity and hacking : https://t.me/hackingsimplified42
Hope it was worth your time.
Stay tuned.
Thank you everyone :)
#hacking #HackingSimplified #StartHacking #beTheHACR #websecurity #howtohack #hack #uber #howtobeahacker #hackingCourse #bugBounty #bug #bounty #hacker #freeHacking #freecourse #scope #scopreview #githubdork #privateprogram
hacking ,HackingSimplified, Hacking Simplified, Start Hacking ,Be The HACR, web security, how to be a hacker, hacking Course, free hacking, free hacking course, web security,hacking,HackingSimplified,Hacking Simplified,Start Hacking,Be The HACR,how to hack,hack,how to be a hacker,hacking Course,bug Bounty,bug,bounty,hacker,bugcrowd,hackerone,yogosha,antihack,yeswehack,bug bounty,cyber security,bug bounty hunting, private invites, scope review,github hacking, github dork
Видео Scope Review and Bug Hunting Using Github Dorks - Bug Bounty - Ep - 02 автора Учим JS С Практическими Заданиями
Видео Scope Review and Bug Hunting Using Github Dorks - Bug Bounty - Ep - 02 автора Учим JS С Практическими Заданиями
Информация
4 декабря 2023 г. 18:02:16
00:20:26
Похожие видео