Easy $500 Vulnerabilities! // How To Bug Bounty

preview_player
Показать описание

NahamCon Talk:

💵 Support the Channel:
You can support the channel by becoming a member and get access exclusive content, behind the scenes, live hacking session and more!
☕️ Buy Me Coffee:

JOIN DISCORD:

🆓 🆓 🆓 $200 DigitalOcean Credit:

💬 Social Media

#bugbounty #ethicalhacking #infosec #cybersecurity #redteam #webapp
Рекомендации по теме
Комментарии
Автор

📚 Purchase my course and learn about bug bounty hunting with over 11 hours of content, 100+ labs, and 15+ vulnerability types 👇

NahamSec
Автор

Hey! Would love to see the demo videos on each vulnerablity type.

SyedShayan-ytin
Автор

It would be very helpful and interesting to have videos on:
- How to quickly and efficiently write a bug report (templates, automation, AI and so on...)
- What are the most common BBPs policies and practices for not breaking them (rate limit, automation limitations)
- Burp suite: best extensions and when to use

Thanks mate, love your videos and appreciate your work!

minimanimo
Автор

Hands-on demo would definitely be a great way to absorb and ultimately solidify this content in the old brain! Thank you, Ben!

MrFrankenstock
Автор

● [1:41] Prerequisites: HTML, Web Technologies
● [1:57] #1 - XSS
● [4:03] #1(2) - CSRF
● ● [4:11] Burp Suit PRO : "Engagement tools" -> "Generate CSRF PoC"
● [6:22] #3 - IDOR
● [8:46] #4 - Authorization Issues
● [10:34] #5 - Leaked Credentials

marcelosmoniz
Автор

Yes please do a demo of the vulnerabilities. Love your encouragement! Your videos always pump me up!

MarkFoudy
Автор

CSRF and IDOR hands-on tutorials would be interesting. Would love to see some handy tricks for when our attacks aren't working.

mianashhad
Автор

Honestly, I care less about learning the hands-on-tutorials about specific vulns, I would much rather see a tutorial on how to enumerate a target and suggestions on how to learn the technology the target is using. What questions should I be looking to answer about that tech? How to check for previous CVEs on that specific tech? Then maybe most importantly, how can track data flow of the target with that specific tech in mind. The issue with seeing tutorials on specific attack types seems to be trying to attack the same few input fields for hours but ignoring the all the technology used on that webpage that would likely tell me, "Hey, this page is pretty secure, maybe keep digging into other subs/ends."

papafhill
Автор

Yes, would absolutely love a hands on video on each of all the topics!

1. XSS
2. CSRF
3. IDOR
4. Auth Issues
5. Leaked Creds

omarmahmood
Автор

Yes! I would very much want to see more hands on videos on these bugs :) Your videos are awesome always!

azoosh
Автор

Am planning on being a full time bug bounty hunter this coming January, but my piggy bank is still behind ..if i could i would take your bug bounty course to fortify my skills.., gotta say your vids really motivate me..cheers!! from Botswana

OmphemetseMokene
Автор

this channel is literally a goldmine, don't understand how it's only 105k subscribers

DavitHayrapetyan-tcuj
Автор

A hands on version of this video where you can make some labs will be highly appreciated. Thanks for the cool heads up !!

bertrandfossung
Автор

Listen $500 is a lot for me and thank you so much for this video! I am going to focus on Blind XSS and start your Udemy course thank you!

alexandriarichard
Автор

I would love more videos like this from you. Very helpful. Thank you

MW-cszd
Автор

Please do a hands on version of each vulnerability . Thank you man ❤

ASecurityPro
Автор

Yes i would genuinely love to see and would definitely watch hands on demo videos of each vulnerability type

TrailMix
Автор

Yes please! You really talanted tutor! It easy to understand and follow you. Thank you a lot xx

marijasilentj
Автор

Yes, Love the content and would love you to do a demo of the vulnerabilities.

VinceOConnor
Автор

Hey Ben, It will be better to share step by step resources to learn, master and get confidence of hunting for a specific bug. :) It would be a really awesome content. People like me sometimes get confused how they could master a bug and how to learn that at an insane level to get out of average hackers. So I hope you'll make this content in near future.

nhlimon