How To Find First Bug in Bug Bounty | Ethical Hacking

preview_player
Показать описание
All my videos are for educational purposes with bug bounty hunters and penetration testers in mind YouTube don't take down my videos 😉

In this video i will give 6 tips on how to find your first bug in a bug bounty program

0:00 #1
0:49 #2
1:17 #3
1:49 #4
2:23 #5
2:57 Best Tip
Рекомендации по теме
Комментарии
Автор

00:04 Know when to give up and set time limits for working on exploits

00:38 Start with easy bugs like Cross-Site Scripting

01:14 Look for IDORs as they are usually easier to find and can yield higher rewards.

01:46 Look for bugs that you've just got done studying for

02:20 Staying in scope is crucial for bug bounty programs

02:52 Finding the right bug bounty programs is crucial for success.

03:23 Look for newer and unpaid bug bounty programs for higher chances of finding the first bug.

03:56 Select programs you're familiar with and analyze the newest version for unpaid programs

Crafted by Merlin AI.

Cosmogyral
Автор

very good tips.i'm trying to find my first bug.i'm still learning.
I hope I can succeed. To be honest, I admit that it is really hard not to be disappointed and continue. I have failed in all my efforts so far.
But I will continue.
Your advice helps me a lot, thank you very much.

arictor
Автор

Johnny sin, a doctor a lawyer a teacher a Hacker 😁✌️

unknown_
Автор

hey my brother blessings to you, love your videos. your videos on fire. Thanks for the videos they mean alot to us.

cybericanintel
Автор

I'm new in bug Last night i discovered alot of directory listing vulnerabilities in web applications.... Funny enough.... They are not part of bug bounty platforms... I don't know whether i should go ahead to report it

robinhood
Автор

Do the companies you do this with require you to have a landline dial up when hacking their stuff? Or can you use wireless internet and still get paid?

DBCooper
Автор

Hey sir, i ve been a year now since i first learnt bug bounty, i m reading alot of poc rapports, my rapports only end up as duplicate, informative or n/abut i haven't got a bounty yet,
Can you help me? Should i keep up at it? Does it deserve giving more time to it?

medhasni
Автор

bro i dont know if you will ever see this but this thing with xss is not true, every website is full protected against user input brackets, and im talking about vdps, those with 1 or 2 bugs found in the website, i cant break out html tags and javascript aways get filtered away or blocked

yungxxilax
Автор

So how do yu choose the websites you will test, how do you find them?

divineciipher
Автор

Hi, all. I have learnt and done ceh last 5 years ago. But i can't do any job bcz of some problems. Now i want to go in IT field but i can't. I have career gap for 6 years. So, now what can I do. I have knowledge on vapt, web security. I don't have any job. I am going for daily labour. Any suggestions.

rameshnaradala
Автор

Can you suggest some sites or books? For security fundamentals I struggle a lot keeping my website data secure :0

vinayakhegde
Автор

Sir bug bounty nowadays don't have I searched lot of web site give some advice for me

prathees
Автор

Can you tell me how to start bug bounty and where I can learn bug bounty hunting.

LoopStatus.
Автор

#bugbounty question
1. Is HTML Injection or XSS both are same vulnerability?
2. Is RCE is a vulnerability or impact ?

skselim
Автор

aweso Video!!! tNice tutorials helpped a lot

charolinecatanduanes
Автор

Still waiting for your admin panel video!!!

nevildenis
Автор

bro i'm never going to find a bug 😭

shahid