This was one of the most informative videos on bug bounties that I have seen, please upload more content like this
@johnsnow10624 жыл бұрын
Best Wishes for the future farah. Good presentation . Hoping to watch more quality vids in the future.
@historichacker20134 жыл бұрын
i generally dont comment but i have to say your videos very well explained ! awesome keep up the good work
@simranpreetsingh55024 жыл бұрын
Amazing content , looking forward to learning more of it ! :)
@carlosmonterrosa46174 жыл бұрын
Very Good video. Really appreciate your willingness to share. Keep it up!
@afifmalghani7554 жыл бұрын
Both your videos are extremely beginner friendly. It's very difficult to find such content. Thank you for this. Would love to see more.
@0xsunil4 жыл бұрын
Much appreciated the effort in editing! Eagerly waiting for part 2!
@therollingambit52224 жыл бұрын
Loving the concept behind your videos. Please keep uploading haha. Cheers frm singapore!
@technicalilm89994 жыл бұрын
What makes this video different from others is that you use more recent real world examples. Very informative.
@TheWrkCo4 жыл бұрын
Very informative and easy to understand... Looking forward to more of these videos.. Keep up the good work and Thank You for these tips..
@umessr84564 жыл бұрын
It's clear that your are putting in alot of work in this video's. Keep up 👍
@kamar13804 жыл бұрын
Thnks for this awesome video. I can't wait for your next video....👍
@Hharshit013 жыл бұрын
Thanks. It's so easy to understand
@M10GAMING-j8y4 жыл бұрын
I have checked all of your videos and all are best thankyou
@M10GAMING-j8y4 жыл бұрын
hey can u make a video on tomnomnom tools and also on @1ndian133t gf-pattern tool please
@johnhammond28134 жыл бұрын
Thank you. The video was so informative and your way of explanation is too good, please do part2 on ecommerce testing and also keep posting these kind of videos. And also if possible explain how to start with hackerone or bugcrowd bounty programs with the process which will be helpful for beginners.
@utkarshagrawal60604 жыл бұрын
Very informative. Good work.
@TheOriginalAryan4 жыл бұрын
A very well articulated video covering the basics and theory. would love more videos covering each point in greater detail. Also, if you can share your background and how you got into bug bounty/infosec other than what you have already covered in your first video, it would inspire other people. Keep up this excellent initiative
@ishanshojha4 жыл бұрын
The tip about changing currency also applies on value of money . Paypal doesn't check that too.
@AlphaCybersecurity4 жыл бұрын
Very informative. Well Done! Thank You
@hacxpro62064 жыл бұрын
Amazing video. Lots of love. Hoping to see more good contents like this.
@cjhackerz4 жыл бұрын
Awesome video, something like series on owasp top 10 vulnerabilities will help lots of new people in infosec.
@FarahHawa4 жыл бұрын
Great idea!
@RX_100.04 жыл бұрын
awsome content, waiting for part-2 mam
@yukeshkumar95364 жыл бұрын
Love this video and you !
@inderjeetsingh13404 жыл бұрын
Plss make second part... and make similar videos on how you attack today's sites
@malwarecopter44404 жыл бұрын
Nice farah try uploading basic tutorials on bug hunting like finding the idor's in wild, basic xss and so on 👍👍👍
@FarahHawa4 жыл бұрын
Thank you! There are TONS of videos and blogs on those topics. You might want to check out Nahamsec or Stok's channel, you'll find a lot of those.
@BasedCrusades4 жыл бұрын
@@FarahHawa STOK is fantastic! May I also recommend Hackersploit as well? I play at least one to two videos of HSploit a day during my one hour drive to work.
@itsactuallyaditya4 жыл бұрын
great video so much informative , Are you from India?
@harshalchaudhari73014 жыл бұрын
Amazing as last one! Please do the part-II
@akshanshshriwatri80604 жыл бұрын
Content 💯 . Thankyou soo much for this 💕
@ruheenaqureshi53393 жыл бұрын
Keep going amazing videos, 👍
@hiteshpant98684 жыл бұрын
🙏Please tell a practical roadmap for beginners in next video with resources... Thank you. 😊
@slbpriank914 жыл бұрын
Good video! Keep up the good work!
@himanshushah94714 жыл бұрын
Please make video on beginner guide to Cybersecurity/ethical hacking how to start career In cybersecurity like books, courses,programming languages,Top Certification, all stuff, etc. Specially for students/fresh Graduate in CS and IT
@margaritahernandez4354 жыл бұрын
Or like me who will love to learn it
@markgacoka97044 жыл бұрын
Heyyy, I don't think CardiB has a balance of $0 lol. (3:45) I like your videos btw. Really well explained!
@sumitkumarsingh354 жыл бұрын
Farah do make a video on how to get started with cybersecurity career . From learning to getting a job. Atleast how to start learning. I am so much confused. Help me !
@masti2point03 жыл бұрын
Thanku mam for helping me in such a manner😇😊
@Manojkumar__3 жыл бұрын
Why u not continue this type of videos
@mjant30694 жыл бұрын
im your #1 Fan 😊
@saibaba76494 жыл бұрын
Thank you so much sister pls keep making more such videos :D
@rahulprajapat14604 жыл бұрын
very much good. but code lines are not visible very clear.. .🔥🔥🔥
@adeshranjan80674 жыл бұрын
You video was very informative as expected from the first one... Pls make part 2 of this video... ❤️❤️
@akshaydeodare61494 жыл бұрын
This just upped my energy🦾! thanks
@yougaincomputers10804 жыл бұрын
Great content, are you using free version of burpsuite?
@KrakoonGaming4 жыл бұрын
for bug bounty what os you are using right now? is it kali linux? you use kali as primary os or on vm and last question what you recommend for using kali as primary os or on vm
@smitsawant70634 жыл бұрын
Mam just a small request to you! Like in this video u intercepted the request with burpsuite for price validation bug, please in your next videos do include such hands on .. and also with other tools. Keep posting such bug bounty videos..
@ashishf64 жыл бұрын
If there is a full checklist for the same. Please share.
@allandiego14464 жыл бұрын
I think so haven't to that vulnerability is better u send id product and with php you send request to paypal.
@Status_Zones.4 жыл бұрын
I became a world famous fan.......for this content.
@saudia6464 жыл бұрын
Need second part, love u sis...
@hackerspider14 жыл бұрын
Congo on 2k subscriber with two videos.
@FarahHawa4 жыл бұрын
Thank you so much!
@KrakoonGaming4 жыл бұрын
i sub to your channel and also liked the video. your content is very nice
@jonnydeep33424 жыл бұрын
plz make video on your bug hunter's journey
@vamsikolati4 жыл бұрын
Nice work keep doing it please
@gokulap22514 жыл бұрын
We need a video series on this topic
@deeshantdhakate39584 жыл бұрын
It's legal to change the currency manipulation??
@CristiVladZ4 жыл бұрын
good job! What do you have on graphql?
@zeuscybersec6594 жыл бұрын
My brother Cristi is in love🤣
@trishnoor37634 жыл бұрын
Hey very informative video..... and at what age did you started hacking and how much time it took you till you first bug bounty??
@s.h.i.e.l.d58934 жыл бұрын
What about path traversal attack? it's pretty 1337 attack . nice video though.
@0xx0394 жыл бұрын
#justatip try creating video's with slides like @katie does in her youtube channel by doing like that you won't miss anything you wanna say and it would be also good instead you filling the screen we can see info's on screen and maybe your cam on bottom left corner. And this is gud too nice work :)
@vrushabhdoshi56644 жыл бұрын
Please make detail video on IDOR.. with example of your PoCs.
@nightwatch47054 жыл бұрын
That was a very informative video. How did you learn all this? Or where did you start? And any idea where to dig deeper for such information. Waiting for part 2.🤟
@FarahHawa4 жыл бұрын
I have another video on where I learnt this and how I started!
@nightwatch47054 жыл бұрын
@@FarahHawa I saw that as well. Great video. But I should have clarified that I wanted to how you learnt about these test cases of attacking an e-commerce website. Is it there in the books and resources you mentioned?
@FarahHawa4 жыл бұрын
night watch I read white papers and reports on hackerone
@nightwatch47054 жыл бұрын
@@FarahHawa please keep up your good work. Will watch out for more videos from you. Thank you.
@robertfling61734 жыл бұрын
Great job!
@the_uwd4 жыл бұрын
Please tell the accessaries and device need for a beginner 👍
@arbabshehzad64434 жыл бұрын
I Don't know how but I think I can learn better with you, I've been doing so many paid courses and no one teaches or tells to openly. I Hope this comment will be valuable for you.
@sreyanshmahapatra87304 жыл бұрын
Can you make some more examples on IDOR (paid access thing ) and even on advance xss .
@Spiderman4324 жыл бұрын
really love your work ❤
@savirsuda4 жыл бұрын
Please make a second part
@faysalahmed72514 жыл бұрын
What about practical example?
@emmanuelafolabi68474 жыл бұрын
Thanks for the amazing content, I have always being curious about how race condition is exploited. What tool(s) have you used to successfully exploit race condition?
@FarahHawa4 жыл бұрын
Burp turbo intruder should work!
@emmanuelafolabi68474 жыл бұрын
@@FarahHawa Okay thanks
@vishalmishra19374 жыл бұрын
what was ur first bug bounty amt and for which org?
@azeemahmedkalesha64594 жыл бұрын
Hi Farah, can you please let me know the hardware specs required to get started into bug bounty?
@FarahHawa4 жыл бұрын
Nothing fancy, just need a laptop, burp suite and a good internet connection. Any laptop will do but if you want do some heavy stuff and use a lot of VMs then I'd suggest Macbook Pro
@azeemahmedkalesha64594 жыл бұрын
@@FarahHawa somewhere in a decent budget range, any specific suggestion? Example the cpu or GPU capabilities... As we will also have to do some extensive brute forcing, it may require some good computational power, that's the sole reason for the question.. I'm looking to buy a laptop anytime soon, so need some suggestions from professionals like you, in a decent budget range.
@FarahHawa4 жыл бұрын
@@azeemahmedkalesha6459 I don't use brute forcing too much but my HP Pavilion has decent computational power so maybe try that. Also, I'm a beginner too so right now even I'm saving up to buy a better laptop bcz honestly Macbook is the best for the kind of heavy stuff required.
@azeemahmedkalesha64594 жыл бұрын
@@FarahHawa Jazakallahu Khair ✌️
@boneytech39654 жыл бұрын
Helpfull video thanks
@cyrexplays50314 жыл бұрын
2nd part baby😍😍
@AkashVaani7864 жыл бұрын
I've used that thumbnail, it's from Canva😁🤘🏼
@000t94 жыл бұрын
Dear Farah Hawa! Can you take a video about how to test websites without no input? I am searching how to do that... :)
@kartikaymusic.4 жыл бұрын
OK, I have been learning from past 2 months actually 6 months but 4 wasted cuz of studies( man i wanna leave this country) I have read dozens of articles, done everything, please tell me how do you approach a site, make a video in which it shows how to approach a site, that would be of great help, thanks !
@FarahHawa4 жыл бұрын
There’s no single way to approach a site, it depends on too many factors. For an e-commerce site- you can use these methods to approach. But for eg. approaching a mail service app or banking app would be very different
@malikimranawan37624 жыл бұрын
hey great am also a bug bounty hunter .. try to make video on RCE and SSRF
@shreyabanerjee16844 жыл бұрын
Hey Farah can u please tell me that is it legal to find bugs on any random website?and if so then how..like should we have to take permission for attacks from the admin of the website?
@FarahHawa4 жыл бұрын
It is illegal if the website doesn’t have a bug bounty policy. You should hunt on programs which have bug bounty/responsible disclosure programs
@shreyabanerjee16844 жыл бұрын
@@FarahHawa will you please make a video on how to intercept website in burpsuite legally which will not cause any problem . And how can we use burpsuite for finding bugs in bugcrowd !
@FarahHawa4 жыл бұрын
Shreya Banerjee using burp suite is legal! You just can’t attack websites that haven’t allowed you to. There’s a link in the description of this video which will show you how to use burpsuite!
@quotesmotivation13842 жыл бұрын
Mam please add subtitles if possible ,... Plz
@surajagarwal35614 жыл бұрын
Plz upload tutorials from very scratch in other series for idiots like me .... Who are totally new in this field plz plz
@mubinamn4 жыл бұрын
You rock FARAH
@FarahHawa4 жыл бұрын
@usernotfound67293 жыл бұрын
This will not work in major websited
@tejaswagh57434 жыл бұрын
hi, what os are used to find bugs with tool you are perfer...
@jarviselite25424 жыл бұрын
Thanks for this video
@adarshs23884 жыл бұрын
Nice video...👌👌
@BAPSOFFICIAL4 жыл бұрын
why you are not reply in twitter?
@MrWalxiLegendx4 жыл бұрын
really cool vid :)
@bhaweshsharma48944 жыл бұрын
I want to be a part
@satyamsaptal93054 жыл бұрын
Great content ☺️
@factofficial43994 жыл бұрын
plz make a video on burpsuite😊
@alifaizan84584 жыл бұрын
Is it idos???
@Chiragsanikam.4 жыл бұрын
Was waiting for this one!
@ashutoshsoni23594 жыл бұрын
Please tell me how can I participate in a program after going in the directory in hackerone . Please help me with that.
@shreyashhire75274 жыл бұрын
Do you hack on hackerone ? Nice video 😄
@FarahHawa4 жыл бұрын
Nope
@dorianvoka55914 жыл бұрын
Helpful indeed
@user-yh9zp4 жыл бұрын
What is u r age and what age u start hacking ?
@JasonGomes1402944 жыл бұрын
is price manipulation and parameter tampering the same ????. Coz i tried it once on one of the e-commerce websites. just for starters (Pun intended) i ordered for a macaroon by entering the lowest amount i could think of. after 20 minutes their customer support later calls up saying that the shop has been closed down and cut the call. LOL .. All in all it was fun 🤣🤣🤣🤣🤣🤣🤣 Also guys dont try this without legal permission from the target. (I know i was stupid enough to this without permission)
@vishnuchandra50424 жыл бұрын
show live demo in websites or any virtual machines