Bug Hunter Notes – Telegram
Bug Hunter Notes
212 subscribers
24 photos
5 files
367 links
I will public my notes related to Bug Hunter learning
На этом канале я буду публиковать записи связанные с обучением Bug Hunter'а
Download Telegram
Channel created
Привет, всем пришедшим на канал,
Создаю его в основном для себя, чтоб публиковать различные записи, которые могут помочь в обучении Bug Hunter'а
Open Source Курс Hacker101, для начинающих Bug Hunter'ов
https://www.hacker101.com/

создан и поддерживается в рамках платформы HackerOne - https://www.hackerone.com/start-hacking
и обновляется через GitHub - https://github.com/Hacker0x01/hacker101
Channel photo updated
Курс Ethical Hacking от Udemy
https://yadi.sk/d/drl1c6rO3BKu2J
Курс The Complete Ethical Hacking Course Beginner To Advanced от Udemy
https://archive.org/download/TheCompleteEthicalHackingCourseBeginnerToAdvanced
Forwarded from HackerOne (xDD)
Давно здесь ничего не публиковал, даже канал свой потерял среди остальных. Нашел его случайно при поиске по теме bug hunting 😂
tips from https://youtu.be/CU9Iafc-Igs

So here are the tips/pointers I give to anyone that’s new to Bug bounty / bounties and apptesting.
1. Sign up for Hackerone to get Petes book Webhacking 101 bit.ly/hackerone-stok
2. Watch anything you can from Jason Haddix just google it.
3. Watch all the tutorials and do the CTF on Hacker101 bit.ly/hacker101-stok
4. Sign up for Pentersterlab and try their stuff out! bit.ly/pentesterlab-stok
5. Watch everything on https://www.bugcrowd.com/university
6. Sign up for Hackerone (bit.ly/hackerone-stok) Bugcrowd or any other BB platform.
7. Get a Burp pro license, its way better than getting a “ethical hacker course” https://portswigger.net/
8. Find a program that you like and vibe with, its more fun to hack on a program or brand you like.
9. Don’t waste time on VDP’s
10. Don’t be discouraged that everyone else has automated everything, its just not true.
11. Always approach a target like you’re the first one there. Your view is unique.
12. Remember, Zero days can be new bugs in old code. Tavis has shown that over and over again.
13. Be proud of your work, you did this!

//STÖK..
ps,., stay epic..
Forwarded from S.E.Book
📓 Bug Bounty Bootcamp: The Guide to Finding and Reporting Web Vulnerabilities.

💬 Bug bounty programs are company-sponsored programs that invite researchers to search for vulnerabilities on their applications and reward them for their findings. This book is designed to help beginners with little to no security experience learn web hacking, find bugs, and stay competitive in this booming and lucrative industry.

💬 You’ll start by learning how to choose a program, write quality bug reports, and maintain professional relationships in the industry. Then you’ll learn how to set up a web hacking lab and use a proxy to capture traffic. In Part 3 of the book, you’ll explore the mechanisms of common web vulnerabilities, like XSS, SQL injection, and template injection, and receive detailed advice on how to find them and bypass common protections. You’ll also learn how to chain multiple bugs to maximize the impact of your vulnerabilities.

📌 Download.

#Bug_Bounty #Book