bugbountygroup | Unsorted

Telegram-канал bugbountygroup - Bug bounty chat

2114

Talk and help about bugbounty

Subscribe to a channel

Bug bounty chat

are you saying Hackerone will take the report as their own ?

Читать полностью…

Bug bounty chat

Que tiempo te han dejado esperando?

Читать полностью…

Bug bounty chat

i found a sensitive exposure bug on a web server .. and the organization that is link to the server doesn't reply my email .. how do i do it ??

Читать полностью…

Bug bounty chat

if you started this journey you can't know the time you'll get your first bounty some people it took for them a year or more and others just some days it's more about if you love this field or not and surely you will get exhausted in the middle of the way because of the pressure that's why people often take it just as a part-time.

Читать полностью…

Bug bounty chat

Any South Indian guys

Читать полностью…

Bug bounty chat

https://www.linkedin.com/posts/abdullah-parvez-95a8a926b_professionalgrowth-careermilestones-cybersecurity-activity-7266300560952164353-SmKd?utm_source=share&utm_medium=member_android

Читать полностью…

Bug bounty chat

BeginHacks" rel="nofollow">https://www.youtube.com/@BeginHacks

Читать полностью…

Bug bounty chat

Mastering Privilege escalation
[ Bigginers ]

Читать полностью…

Bug bounty chat

Веду поиск людей, заинтересованных в дополнительном доходе на удаленке. Частичная занятость, от 18 лет.
Кoму интереснo - стaвьте + в личные сoобщения.

Читать полностью…

Bug bounty chat

Go for aggressive scan

Читать полностью…

Bug bounty chat

I have found port 80 open can I exploit it

Читать полностью…

Bug bounty chat

What certification you hai?

Читать полностью…

Bug bounty chat

Cehv12 is a very bad course not alot of companies are looking for ethical hacking its not important anymore

Читать полностью…

Bug bounty chat

I am new to bug bounty. What do you advise me to learn without learning programming

Читать полностью…

Bug bounty chat

I have a question, I got a subdomain when you give a parameter called runcmd a value like ls it returns a 500 internal server error Read,is there anyway to bypass it

Читать полностью…

Bug bounty chat

A veces suelen tardar

Читать полностью…

Bug bounty chat

i hav the complete information which i don't want to share here , i already report to hackerone disclosure assistance but no response as of yet .. anything i could do ?? please help

Читать полностью…

Bug bounty chat

Youre the best men👍🫡

Читать полностью…

Bug bounty chat

can i learn hacking for 2 or 3 months and then make money? because I come from a poor family, money is very important to me😢

Читать полностью…

Bug bounty chat

Hi guys live hunting

Читать полностью…

Bug bounty chat

Bug Bounty Tips!!! 😎😎😎👌👌👌👌

SSRF on Steroids 🔥🔥☄️☄️☄️☄️☄️

Methodology

Step 1: Subdomain Enumeration

•DNS Dumpster
•Sublist3r
•Amass
•Google Dorking
•Certificate Transparency Logs
•subdomainer

Step 2: Find Live Domains

cat all-domains.txt | httpx > all-live.txt

Step 3: Identify All URLs

cat all-live.txt | gauplus -subs -b png,jpg,gif,jpeg,swf,woff,gif,svg -o allUrls.txt

Step 4: Injection Burp Collaborator URL in Parameters

cat /home/casperino/tools/nuclei/httpx.txt | grep "=" | ./qsreplace 40ga7gynfy6pcg06ov.oastify.com > ssrf.txt

Step 5: Test for SSRF Vulnerabilities

cat ssrf.txt | httpx -fr

Step 6: How to check which URL is vulnerable

split -l 10 ssrf.txt output_file_

Читать полностью…

Bug bounty chat

Soc Analyst
Splunk Admin
Ibm Qradar Admin

Videos docs and interview questions
Available

Читать полностью…

Bug bounty chat

https://www.linkedin.com/posts/abdullah-parvez-95a8a926b_cybersecurity-ethicalhacking-linux-activity-7265926307610320896-rNEv?utm_source=social_share_video_v2&utm_medium=android_app&utm_campaign=share_via

Читать полностью…

Bug bounty chat

Or you can find VNC's that have no authentication on shodan and you can compromise

Читать полностью…

Bug bounty chat

No bro every site has port 80 and 443 open

Читать полностью…

Bug bounty chat

Guys, how do you decide what subdomains to attack? Let's say your target is indrive and that has about 1000+ subdomains. How Do you decide which ones to test, and which bugs for specific subdomain.

Читать полностью…

Bug bounty chat

So what is important

Читать полностью…

Bug bounty chat

https://www.youtube.com/live/gh70m0epg3Y?si=7sBqeWGbVJEYE0SP

Читать полностью…

Bug bounty chat

hello guys, i just registered an aws s3 bucket but i cant find the vuln region hence the takeover is incomplete, what can i do here

Читать полностью…

Bug bounty chat

I have one question, i found that one subdomain is using CL.TE header in HTTP1/1 , it is sure that is vurnable to http smuggling?

Читать полностью…
Subscribe to a channel