martes, 25 de agosto de 2020

How Do I Get Started With Bug Bounty ?

How do I get started with bug bounty hunting? How do I improve my skills?



These are some simple steps that every bug bounty hunter can use to get started and improve their skills:

Learn to make it; then break it!
A major chunk of the hacker's mindset consists of wanting to learn more. In order to really exploit issues and discover further potential vulnerabilities, hackers are encouraged to learn to build what they are targeting. By doing this, there is a greater likelihood that hacker will understand the component being targeted and where most issues appear. For example, when people ask me how to take over a sub-domain, I make sure they understand the Domain Name System (DNS) first and let them set up their own website to play around attempting to "claim" that domain.

Read books. Lots of books.
One way to get better is by reading fellow hunters' and hackers' write-ups. Follow /r/netsec and Twitter for fantastic write-ups ranging from a variety of security-related topics that will not only motivate you but help you improve. For a list of good books to read, please refer to "What books should I read?".

Join discussions and ask questions.
As you may be aware, the information security community is full of interesting discussions ranging from breaches to surveillance, and further. The bug bounty community consists of hunters, security analysts, and platform staff helping one and another get better at what they do. There are two very popular bug bounty forums: Bug Bounty Forum and Bug Bounty World.

Participate in open source projects; learn to code.
Go to https://github.com/explore or https://gitlab.com/explore/projects and pick a project to contribute to. By doing so you will improve your general coding and communication skills. On top of that, read https://learnpythonthehardway.org/ and https://linuxjourney.com/.

Help others. If you can teach it, you have mastered it.
Once you discover something new and believe others would benefit from learning about your discovery, publish a write-up about it. Not only will you help others, you will learn to really master the topic because you can actually explain it properly.

Smile when you get feedback and use it to your advantage.
The bug bounty community is full of people wanting to help others so do not be surprised if someone gives you some constructive feedback about your work. Learn from your mistakes and in doing so use it to your advantage. I have a little physical notebook where I keep track of the little things that I learnt during the day and the feedback that people gave me.


Learn to approach a target.
The first step when approaching a target is always going to be reconnaissance — preliminary gathering of information about the target. If the target is a web application, start by browsing around like a normal user and get to know the website's purpose. Then you can start enumerating endpoints such as sub-domains, ports and web paths.

A woodsman was once asked, "What would you do if you had just five minutes to chop down a tree?" He answered, "I would spend the first two and a half minutes sharpening my axe."
As you progress, you will start to notice patterns and find yourself refining your hunting methodology. You will probably also start automating a lot of the repetitive tasks.

Related word


  1. Nsa Hacker Tools
  2. How To Install Pentest Tools In Ubuntu
  3. Pentest Tools Android
  4. Nsa Hacker Tools
  5. Hacking Tools For Windows
  6. Hacking Tools Name
  7. New Hack Tools
  8. Tools 4 Hack
  9. Hacking Tools Kit
  10. Hacking Apps
  11. Nsa Hack Tools
  12. Hacking Tools Mac
  13. Hacking Tools Kit
  14. Pentest Tools Website Vulnerability
  15. New Hack Tools
  16. Bluetooth Hacking Tools Kali
  17. Hack And Tools
  18. Physical Pentest Tools
  19. Hacking Tools Download
  20. Hack Tools
  21. Pentest Tools For Ubuntu
  22. Hacker Tools Linux
  23. Hack And Tools
  24. Hackrf Tools
  25. Hak5 Tools
  26. Hacks And Tools
  27. Tools Used For Hacking
  28. Pentest Tools Download
  29. Hackrf Tools
  30. Pentest Automation Tools
  31. Hackrf Tools
  32. Bluetooth Hacking Tools Kali
  33. Hack And Tools
  34. Hacker Tools For Pc
  35. Hack Website Online Tool
  36. Pentest Tools For Android
  37. Pentest Tools Online
  38. Hack Tools For Mac
  39. Hacker Tools Mac
  40. Hack Tool Apk No Root
  41. Tools Used For Hacking
  42. Termux Hacking Tools 2019
  43. Termux Hacking Tools 2019
  44. Pentest Tools For Windows
  45. Free Pentest Tools For Windows
  46. Pentest Automation Tools
  47. Pentest Reporting Tools
  48. Hacking App
  49. Pentest Tools Online
  50. Kik Hack Tools
  51. Hacking Tools Windows
  52. Computer Hacker
  53. Pentest Tools Free
  54. Hacking Tools Download
  55. Hacking Apps
  56. Pentest Tools Alternative
  57. Hack Apps
  58. Pentest Tools For Android
  59. Hack Tools Pc
  60. Pentest Tools Framework
  61. Black Hat Hacker Tools
  62. Hacking Tools Name
  63. Hacking Tools Usb
  64. Usb Pentest Tools
  65. Hacking Tools For Windows Free Download
  66. Hacking Tools Mac
  67. Pentest Tools Url Fuzzer
  68. Pentest Tools Android
  69. Hacker Tools Linux
  70. Hack And Tools
  71. Pentest Tools Online
  72. Hacking Tools For Windows
  73. Hackers Toolbox
  74. Hack Tool Apk
  75. Wifi Hacker Tools For Windows
  76. Hacking Tools 2019
  77. Free Pentest Tools For Windows
  78. New Hack Tools
  79. Hack App
  80. Hacker Tools For Ios
  81. Hack Website Online Tool
  82. Hack Tools For Ubuntu
  83. Usb Pentest Tools
  84. Hacker Search Tools
  85. New Hacker Tools
  86. Hacker Tools Windows
  87. Hacker Tools
  88. Hack App
  89. Pentest Tools Url Fuzzer
  90. Hacker
  91. Pentest Tools Linux
  92. Physical Pentest Tools
  93. How To Install Pentest Tools In Ubuntu
  94. What Is Hacking Tools
  95. Hacking Tools 2020
  96. Hacker Tools Apk
  97. Hacker Tools For Ios
  98. Hacker Tools For Windows
  99. Pentest Tools Linux
  100. Pentest Tools Subdomain
  101. Hacking Tools
  102. Pentest Tools
  103. Termux Hacking Tools 2019
  104. Pentest Tools For Android
  105. Underground Hacker Sites
  106. Hacker Tools For Ios
  107. Hacking Tools For Pc
  108. Hacking Tools Kit
  109. Pentest Tools Alternative
  110. Pentest Tools Review
  111. Hacking Tools For Mac
  112. New Hack Tools
  113. Pentest Tools Find Subdomains
  114. Best Hacking Tools 2019
  115. Pentest Tools Tcp Port Scanner
  116. Hacking Tools And Software
  117. Nsa Hacker Tools
  118. Pentest Tools Find Subdomains
  119. Pentest Tools For Android
  120. Hack Tools
  121. Hacker Tools Linux
  122. Pentest Tools Android
  123. Pentest Tools Free
  124. Hacker Tools Apk
  125. Hacker Tool Kit
  126. Hacking Tools 2019
  127. Hack App
  128. Hackers Toolbox
  129. Hacking Tools
  130. Hacker Security Tools
  131. Game Hacking
  132. Hacking Tools Windows
  133. What Is Hacking Tools
  134. Termux Hacking Tools 2019
  135. Nsa Hack Tools Download
  136. Hacker Tools Mac
  137. Hacking App
  138. Hack Tools Github
  139. Kik Hack Tools
  140. Hacker Tools For Pc
  141. How To Make Hacking Tools
  142. Hack Tools For Mac
  143. Hacker Tools For Mac
  144. Install Pentest Tools Ubuntu
  145. Hack Tools For Games
  146. Hacker Tools Mac
  147. Hacker Tools Software
  148. Hack Tool Apk No Root
  149. Hack Tools
  150. Pentest Tools Github
  151. Hacking Tools Free Download
  152. Hack Tools Online
  153. Nsa Hack Tools Download
  154. World No 1 Hacker Software
  155. Best Pentesting Tools 2018
  156. Pentest Tools Port Scanner
  157. Hacking Tools Pc
  158. Hack Tools
  159. Beginner Hacker Tools
  160. Black Hat Hacker Tools
  161. Free Pentest Tools For Windows
  162. How To Hack
  163. Top Pentest Tools
  164. Hack Tool Apk
  165. Beginner Hacker Tools
  166. Blackhat Hacker Tools
  167. Hacking Tools Free Download

No hay comentarios.: