Bug Bounty
10.4K subscribers
369 photos
3 videos
46 files
426 links
Bugbounty Resources • Tips • Security Zines • Writeups • Vulnerability Update • Notes • Mindmaps • Cheatsheets • Checklists • Article / Blogs • PDFs • ebooks •
Download Telegram
This session will going to be Hindi only
😢11🤡7
The Bug Bounty Chat Room Telegram Group aims to create a supportive community where hackers can connect with like-minded individuals, socialize, and share their knowledge and experiences related to information security. Members are encouraged to engage in discussions about various aspects of bug bounties, such as techniques, tools, methodologies, and success stories.

The group serves as a platform for members to exchange valuable resources, including informative articles, tutorials, and helpful links pertaining to information security. However, it is essential to ensure that shared content is legitimate and free from any malicious or harmful elements.

Here is the Group Link :
https://xn--r1a.website/bugbountychats
🔥4👍3
API Penetration Testing Series - Part 6

Common API Vulnerabilities

Covered - Info Disclosure, BOLA, Broken Authentication, Excessive Data Exposure, BFLA, Mass Assignment, Security Misconfig, Injection and etc

My Notion Notes 🔗 : https://aacle.notion.site/Common-API-Vulnerabilities-cc18fc96ec99458aacbead44f4b4b384?pvs=4
🔥13👍41🤩1
Ultimate 401 and 403 bypass methods

🌴🌱🍃🍂

https://www.vidocsecurity.com/blog/401-and-403-bypass-how-to-do-it-right/
20🔥3👍1
Amazing List of All DAMN Vulnerable Labs Wher you can improve your Pentesting Skills

Categorized for different different cybersec fields

Check This out : https://twseptian.github.io/penetration%20testing/pentest/Vulnerable-Resource/
26
33🔥4
Sticky notes for pen-testing, bug bounty, and CTFs.

https://exploit-notes.hdks.org
18👍6🔥2
8
If you want to learn about Machine Learning and Artificial Intelligence you can check this account on thread.
To find information disclosure vulnerabilities change the headers

- Change the Accept header to:

- Also trying sending null byte like

GET /%00

If error handling is not done properly, reveals server version information, stack and route information

#bugbounty #bugbountytip
👍11🔥52
Tips for finding hardcoded credentials

Whenever you are searching for hardcoded credentails, don't forget to read "jquery.js" files as well. Sometime you might find 3rd party hardcoded credentials

#bugbountytips #hacking #infosec
👍12
I requested to All hindus to please Listen & share this Song with your contacts
17🤡12👍2