3269
Talk and help about bugbounty
Preferably someone that knows a bit of red teaming,but if you can learn the basics in just some weeks still dm
Читать полностью…
You don't have to figure it out at once just keep learning
I took different networking courses before I understand because I'm from non IT background
Check if you can combine with phishing, csfr or oauth
Читать полностью…
If anyone else can see your profile then it will be stored xss
Читать полностью…
Self xss, you have to find a way to chain it
Читать полностью…
I dint know much about it but can i join on learning basis
Читать полностью…
If you were highly skilled you would submit 2 bugs a year and that would be enough tbh
Читать полностью…
Ommit one because one is reserved before the next class address
Читать полностью…
I am not good at maths
Classification of ipaddress among class A to E I don't understand
It's quite confusing topic
If a ip address is seen
We should be able to tell, Is it public or private ip address
I have open redirect. What do you guys recommend for higher impact?
I tried xss, and cookie grabbing, not working.
I think I'll submit as a low impact.
I can share the bounty if someone can help.
I think it's a self xss, how can I chain it? Do you have any tips?
Читать полностью…
Yes, if JavaScript executes in the display name, it is definitely an XSS vulnerability. To test further, use different payloads and see if the JavaScript runs when the name appears on the website
Читать полностью…
Hello guys, I have a question. I’m doing a web pentest on a website. When I logged in, I could change my display name and found a way to execute JavaScript in this input field. Is this considered a XSS vulnerability? Is there any way I can test this further? Any help would be appreciated. Thanks
Читать полностью…
Hey so I have a question. I found a potential cors vulnerability. How do I test if it shares any valuable data. I used burp and the page allowed me to give an origin with an http://.google.com.
Читать полностью…
Apple had a bug bounty
I m making a team
Intrested peoples ?!
Everyone can ban a horse racing channel, do it and then I will give you pay
Читать полностью…
Highly skilled red teamer here.
I'm looking to collaborate with skilled and serious bounty hunters.
I submit at least 5 bugs/day with at least 2 valid.
If you're confident with your skills, feel free to msg me.