Great video, Katie! Loved it as always. My favourite bug bounty tools are burp suite, all tomnomnom's tools, amass and the ones I developed on my own! (LazyFuzzZ, Wordlist Weaver, Fu-JS) #bbhammer
@gf327683 жыл бұрын
Awesome video, as always! Favourite tool - Burp Suite - even if the only features it had were the proxy history and Repeater, it'd still be amazing. ##bbhammer
@Vinayak123-q8p2 жыл бұрын
amazing, this could be probably one of the biggest information that i have ever been given
@chitraa873 жыл бұрын
Thanks for doing amazing video katie. My fav bug bounty tool is burp ofcourse. I'm looking forward more automation videos like this..#bbhammer
@link-ed3 жыл бұрын
Thanks for the video! The tool that I use the most is fuff, cause of it's speed and simplicity. Burp is another indispensable tool as well! #bbhammer
@arrheniusangipaelongan86933 жыл бұрын
Thanks for all your videos Katie!❤ I got my first bug from your IDOR video. My favorite tool is burp! #bbhammer
@manmohansingh41223 жыл бұрын
Bounty ???
@rami17853 жыл бұрын
Thanks for all your videos Katie , My favorite tool is burp #bbhammer .
@wingwing26832 жыл бұрын
Thanks so much sharing!
@stablewater Жыл бұрын
Thanks for this great knowledge. I am currently learning IDOR and I've been able to use autorize and I got "enforced" in some areas. What next am I to do next. How do I exploit this for bug bounty?
@sangeethaa51013 жыл бұрын
I want more videos explaining bugs with dem websites not just presentations. Thank You, Katie. #bountypls #bbhammer
@brucezhang49673 жыл бұрын
Thanks Kate! I want to know more about SSRF and businesss logic.#bountypls And my favourite bug bounty tool is absolutely BurpSuite!!! #bbhammer
@sekmekci2 жыл бұрын
Thanks for the video. Information part is starting at 3:49
@sudokom3 жыл бұрын
My favourite bugbounty tools are FFuF, Dirsearch, and Burpsuite with this extentions such as autorize #bbhammer
@sudokom3 жыл бұрын
... And also obsidian #bbhammer
@CyberTron083 жыл бұрын
Thanks for doing so much for the community ❤️ It'll be great to have more videos about DOM based vulnerabilities #bountypls
@saite25602 жыл бұрын
nice video i've watched quite a few of em. clear well rehearsed script.. this video actually tries to show us something. well rounded video. i wish more of your videos showed us how to actually do this stuff like this video. you do great on the speaking side of teaching tho, need more hands on tho.
@maapi7 ай бұрын
I'm having an issue with autorize picking up requests that should be out of scope. Anyone else have this issue? This leads to a lot of extra requests to parse through, which really slows me down
@amandabarbosasobrinho58783 жыл бұрын
Hey Katie, as always, awesome video! My favorite bug bounty tool is Burp, for sure! #bbhammer
@mohammadisbah1458 Жыл бұрын
@Inderderphd Have you find idor vulnerability which leads to privilege escalation? Could you please tell me the scenario.
@InsiderPhD Жыл бұрын
Usually it's permission related - create mutliple accounts with different permission levels, and try and do an admin action as a regular user
@singularityfinale76803 жыл бұрын
You videos are both no bs info and free which is great for broke student like me. Well my favorite tool is Burpsuite #bbhammer And I think I will give Autorize a try.
@webapplicationsecurity18533 жыл бұрын
Thanks for the video, have been using this tool for a while now. This is my favourite tool: Autorize allows to check most of the access Logic tests. #bbhammer
@NafeedAI19 күн бұрын
what is the company says do it without using cookies or tokens of other account?
@InsiderPhD7 күн бұрын
Account 1 is your victim account 2 is your attacker, you can use the attackers cookies to affect the victim, you don’t need account 1s/victims cookies
@TheConstantLearnerGuy3 жыл бұрын
Started learning following your recon videos. My go to tool for now is Burpsuite community edition. #bbhammer
@gk_eth3 жыл бұрын
Mostly there r auth bearer token for APIs which also needs to be add in cookies section?
@meletismichael24953 жыл бұрын
You are precious for the community! pls go more in depth on chaining vulnerabilities! #bountypls
@Death_User666 Жыл бұрын
You are my favorite bug bounty channel
@syedbukhari47613 жыл бұрын
Great video Katie, my favourite tool is Amass & Wireshark; would love to see more videos on Business logic flaws & XXE flaws. #bountypls
@svrajput14 Жыл бұрын
Really nice tip on how to use tool effectively !!
@ndmath3 жыл бұрын
Thank you Katie. I'd love to know more about Burp. #bountypls
@ksr6083 жыл бұрын
Thank you for all your videos! My favourite tool is amass and burpsuite. #bbhammer. It'll be good to see more videos on subdomain takeover with an example. #bountypls
@vikasrushi37143 жыл бұрын
Thanks :) my favourite bug bounty tool are Amass and FFUF #bbhammer
@vanquisherstraveltube3 жыл бұрын
You are really a great teacher. I am following your videos and learning a lot. Thank you so much! *Burp* is my favorite tool #bbhammer
@roxneil19742 жыл бұрын
katie, i'm new to bug hunter, i'm still practicing about the web security system, i have joined in ingriti but i don't know what i can and can't do when looking for bugs, can you give a little direction and tips on how to work in intigriti please,,
@DieTeewurst3 жыл бұрын
Thank you for your great Videos! My favorite Bug bount tool is burp for sure! So much functionality in one tool! #bbhammer
@0xff13373 жыл бұрын
why you're so late katie. i was waiting for this video for so long
@sadabesher28862 жыл бұрын
Burp and ffuf is my favorite tool
@amitabhgupta213 жыл бұрын
Started following you Katie and I am blown by the content u and other fellow u tubers are providing by the way my favourite BB tools are - Burp Pro,Rustscan,amass and nuclei #Bbhammer
@ainter2163 жыл бұрын
Thank you very much for the video! My favourite toos is Burp Suite, it is so powerful and you can do so many things. #bbhammer
@mohammedsaneem41793 жыл бұрын
Great video as always. Would love to see videos based on chaining of bugs #bountypls
@VincentOldMark3 жыл бұрын
My favourite tool is of course burp suite #bbhammer You are great Katie!
@Snoopydogsz3 жыл бұрын
My favourite bug bounty tool is ffuf combined with burp. I can bypass the speed limit of Intruder during fuzzing using -replay-proxy in ffuf which gives me the benifit of higher fuzzing speeds of ffuf and all the packets are captured in burp proxy too due to -replay-proxy flag set in ffuf. #bbhammer
@gauravdeore94773 жыл бұрын
#bbhammer According to me burpsuite repeater is the best tool for hacking. We can perform any attack with it.
@RahulKumar-vy4lu3 жыл бұрын
Great video as always. I would love to have more videos about XSS & chaining of bugs. #bountypls
@abhishek-praveen3 жыл бұрын
I would love to see more videos on recon methadology for beginners . #bountypls
@jarvis90923 жыл бұрын
Please never stop creating content like these😍..It would be helpfull if you would increase your volume as i felt the audio is lower than other youtube videos..My favourite tool is BurpSuite #bbhammer
@saminbinhumayun858 Жыл бұрын
do we get Cookies from the admin account or the low-privileged account?
@InsiderPhD Жыл бұрын
Low privileged account always! Your low privileged is always your attacker
@iamkaustubh3 жыл бұрын
Wowww Thanks katie 🔥🔥🔥🔥it really encourages people more thanks for video
@asantoshkumarachary2692 Жыл бұрын
Thanks for this video Katie
@champagnepete33863 жыл бұрын
Great video, good resource!!
@sien13373 жыл бұрын
my favorite bb tool is Burp, you can just do so much with it! #bbhammer
@SergeantDaynes3 жыл бұрын
Awesome video as usual. As for the types of bugs/hacking I want to learn about…SSRFs, broken access controls, business logic, and APIs! #bountypls
@andymarty803 жыл бұрын
I'd like to see videos on Anti-CSRF bypass, 2FA/MFA bypass or prediction.
@papajohn28213 жыл бұрын
Mobile application security is what I am practicing for a month now. And videos on that topic will be great to learn from. #bountypls
@deepeshrane84123 жыл бұрын
Awesome video, I love to use Amass and burp suite!! #bbhammer
@IrfanAli-vp5mh3 жыл бұрын
Next video idea suggestion: Burp autorepeater
@ronny_xavier3 жыл бұрын
Thanks as always Katie. My fav tool is Burp definitely. #bbhammer
@DevilAlpacca3 жыл бұрын
Awesome, will definitely use the burp addon. Fav tool #bbhammer #bountypls
@gogreensongesters18003 жыл бұрын
Thank you Katie for this amazing video. My favourite bug bounty tool is Burpsuite. #bbhammer
@morphsec3 жыл бұрын
Subdomain takeovers would be nice, saw a lot of good reports but never seemed to fully understand them. #bountypls Burp and Amass is the bread and butter for me. #bbhammer
@th3r5n3 жыл бұрын
I like to see more vedios on business logic bugs , like taking a public program and understanding the business logic of the functionalities.#bbhammer #bountypls
Your video is really awesome :) Always love for Burp Suite tool for damn sure !! #bbhammer
@TechRideGamer3 жыл бұрын
Thanks for this one its more than awesome. By favourite tool is Amass, fuff and in extensions autorepeater & Param Miner this are lit. #bbhammer
@tomj18833 жыл бұрын
Thanks for the videos!!! My favorite tool is burp for sure #bbhammer
@Silly_lilly9263 жыл бұрын
Thanks Kate ❤️ for this giveaway I'm so inspired by you and Aditi Singh and my favourite tool is FFUF love data exposed ❤️ #bbhammer
@kbsavage773 жыл бұрын
Welcome back! I'd love to learn more about SSRF #bountypls
@TheConstantLearnerGuy3 жыл бұрын
Thank you for the video
@gonzalogermano23123 жыл бұрын
Thanks Katie my favorite tools is burpsuite #bbhammer
@aechapark42992 жыл бұрын
Is it ok to use burp suite community edition in real bug bounty hunting? I can't afford to buy professional one. ;)
@kovanbakr3 жыл бұрын
thankyou, My favourite bug bounty tool is Burpsuite. #bbhammer
@Diddy813 жыл бұрын
My favorite BugBounty tool has to be Burp Suite #bbhammer
@pr0xy_3 жыл бұрын
my favorite bug bounty tools are amass and burp suite. #bbhammer
@don-ce8ig3 жыл бұрын
Thanks for making content! My favourite bug bounty tool is burpsuite #bbhammer
@kavishshah19883 жыл бұрын
Have only used Burp suite till now so I guess that's my favourite tool as of yet #bbhammer
@shameeluddin35632 жыл бұрын
Just found your channel searching for cybersec stuff. My favorite tool so far is burp. #bbhammer
@eraedith6963 жыл бұрын
Fav tool is Burpsuite because it has some automation and also manual testing which is good and it's also beginner friendly tool and many more to learn.... Thank you❤ #bbhammer
@tXambe3 жыл бұрын
Thanks very much for your videos and my favourite tool is burpsuite #bbhammer
@yaroslav871711 ай бұрын
Firstly you said katie katie is a victim's account, and then you said it is the attacker's account...
@faique29953 жыл бұрын
Thank you for holding my hands and taking me to this level in cyber security, Be healthy and happy😁 #bountypls
@ambsambs29733 жыл бұрын
It'll be good if we get videos on web cache related vulnerabilities also once again thanks for making good contents for the community! #bountypls
@italoamaya82303 жыл бұрын
thank you so much
@jovensqueprosperam3 жыл бұрын
Thanks for this channel
@matthewhowes62702 жыл бұрын
Burp,Ffuf, Nuclei, Aquatone and Nmap #betterlatethannever #bbhammer
@LeonVQZ3 жыл бұрын
I would like to know more about CSRF, I haven't been able to understand the impact or what it can lead to if the application is vulnerable to CSRF #bountypls
@pushpinderkaur65703 жыл бұрын
Thank you for this video. I would love to know more about cloud security esp AWS. #bountypls
@adamkimbro3 жыл бұрын
#bbhammer My favorite tool burp. Thanks for your videos!!!
@shamim_123 жыл бұрын
Well my favorites are FFUF and Dirsearch #bbhammer
@sandiyochristan2 жыл бұрын
Thanks Kate ❤ for this giveaway I'm so inspired by you #bountypls #bbhammer
@0xrohit543 жыл бұрын
I would like to know about GraphQL injection #bountypls
@tajsec3 жыл бұрын
my favorite tool is burp suite, nmap :)) thanks for great contents #bbhammer
@tommydave29083 жыл бұрын
I'd like to learn more about SSRFs, and maybe web cache poisoning, sounds cool. #bountypls
@sudarshsaraswathula14013 жыл бұрын
Thanks a lot for the vid. My favourite tool is ffuf #bbhammer
@fatihburaktoprak7692 жыл бұрын
My favorite is always Burp Suite! #bbhammer
@user-ov2ll4vc7j3 жыл бұрын
Katie thanks for the video. I would like to learn more about hacking APIs. #bbhammer
@mrpvr3 жыл бұрын
I wanted to know more about XXE and SSRF Bugs #bountypls #bbhammer
@vivekkashyap72933 жыл бұрын
My comment is keep deleting automatically??😭😭? Why #bbhammer stored css that was awesome moment and in September 2021 i got another credentials in API url by your api playlist Then in December 2021 i got IDOR by autorize 😅❤️❤️ (also i would like to see more idor,api etc videos some real live testing on idor,api also videos on career making in hacking how to easily get in bugcrowd,hackerone, integrity etc ) but similarly in all of these is they are not high bounties I'm trying to get good skills , so much thank you for this give away hanks to you and all bug Bounty mentors for sharing their skills with youngsters #bbhammer 😅
@Malware013 жыл бұрын
Hey, my favourite bb tools are burpsuite, sql map #bbhammer
@bonenaing3332 жыл бұрын
Thanks for sharing. Burpsuite of course i am just the beginner #bbhammer
@mooreprr80672 жыл бұрын
Favorite tools are Burp, Amass, All of Tomnomnom's Tools ,Cariddi #bbhammer
@edoardottt3 жыл бұрын
Burpsuite, nuclei, Cariddi, Gau, gxss, ffuf and google dorks #bbhammer