"You can go back when you become more experienced" this advice great same thing happened to me last week :) thank you
@DelowarHossain5 жыл бұрын
Better than any other methodology out there, for a beginner. It's good to know people do hack, without using tons of recon tools. RESPECT
@timo54734 жыл бұрын
I love it how you combine an academic approach with well designed slides and case studies on the one hand and practical advices on the other hand. Your tutorials are more helpful than any book, or any other tutorial I have watched about these topic. Thank you so much!
@InsiderPhD4 жыл бұрын
You're very welcome! I'm glad you enjoy the semi-lecture style approach!
@johndecosta82665 жыл бұрын
Thank you for taking the time to break down and explain the steps to bug bounty hunting for the beginner. Great job. Please, without burning yourself out, keep creating this amazing content.
@ImranKhan-tc8jz4 жыл бұрын
THANK YOU SO MUCH FOR MAKING THIS. THERE IS NO OTHER VIDEO SERIES OR EVEN A SINGLE VIDEO LIKE YOURS ON THE KZbin. I AM JUST GETTING STARTED AND HAVE LEARNED ALOT.
@InsiderPhD4 жыл бұрын
THANK YOU FOR ENJOYING MY CONTENT I'M GLAD YOU'RE FINDING IT USEFUL FEEL FREE TO ASK ME ANY QUESTIONS YOU HAVE
@ImranKhan-tc8jz4 жыл бұрын
@@InsiderPhD Yes I'll surely ask. Thankyou.
@danielhemmati5 жыл бұрын
I love it when you said it is okay to give up, and that's true. thanks
@tyresewhyte93642 жыл бұрын
Omg thank you so much for dropping this video ik it’s been two years ago but thank I been struggling to figure out what to do and you just made my Journey a little better thank you so much 😊
@0x1h0b4 жыл бұрын
after watching this i believe this video was just made for me.... trust me i have solved many labs but still get confused when approaching a target.... Thank you very much @InsiderPhD
@PedroPerez-ii4dx4 жыл бұрын
This is one of the most usefull videos about bughunting recon. I always get stucked after/while doing recon, because I dont know what to do with all the data. I guess I've found a lot of answers on this video. All the hackers have diferents points of view, but I think all agree on the "intuituion" , which i think is quite of hard of understand/develop.
@InsiderPhD4 жыл бұрын
Intuition is for sure the most difficult bug bounty skill to learn, it just takes time though, eventually you'll be a pro. At the start it can help to look for things that are out of place, eg 1 PUT req when the others are POST/GET or subdomain with an older looking website, or an API than returns back a ton of info...
@fakermankumar13273 жыл бұрын
you just cleared so much of doubts and insecurities thanks
@firstname83255 жыл бұрын
Wow!! These series are exactly the ones I've been wanting to look for a quite some time. How com youtube didn't recommend me this? I searched a lot of videos about recon (some of them are very good, like from NahamSec, JHadix), and i think this video is awesome too. Thanks for making these kind of videos. Can i request smthing? Other than recon/ finding my own methodology to approach targets, I've been struggling on the logic of finding vuln, i don't know what to look for (sinxe there are so many vulns to get startes with), and I don't know the logic between advanced things like filters, etc. THANKS SO MUCH
@InsiderPhD5 жыл бұрын
Yes! For sure I will have a few more videos with technical content coming in January, focusing on the technical side, especially on how to approach things like APIs or chaining vulnerabilities together. I think both sides are really important though, choosing a target that works for you is a game changer when finding bugs
@actual_0xatul5 жыл бұрын
Came for some recon, stayed for the accent!!
@InsiderPhD5 жыл бұрын
Lmao, thank you
@babaloveyou114 жыл бұрын
InsiderPhD can you share this powerpoint file?my English is not good.
@danielmcpherson90623 жыл бұрын
@@babaloveyou11 From a native English speaker, what you just put there was perfect English!
@newlife57754 жыл бұрын
Enjoyed it thoroughly. Thanks for your work.
@khageshsharma10143 жыл бұрын
This is an awesome video. I learnt a lot. Thank you very much! One small complaint that I have is voice in your videos is bit low.
@fabiosanchez95955 жыл бұрын
Thanks for the video, I have experience as a developer and I would like to try. Your video gave me a clearer idea of how to start.
@InsiderPhD5 жыл бұрын
Definitely have a go, being a developer gives you a huge advantage! Especially when it comes to bugs like IDORs/business logic. It’s a rush like no other!
@PTD20235 жыл бұрын
Excellent videos -looking forward to more content
@2424aditya5 жыл бұрын
Thanks A Lot...I Have Been In A Search Of This Kind Of Video..This Helped A Lot..
@Death_User666 Жыл бұрын
YOU ARE A LEGEND
@omprakash-uu2ly5 жыл бұрын
thanks or another great vedio // always waiting for your upload
@theedmbrewery62345 жыл бұрын
You are awesome my friend. I am trying to be something useful myself, but seems like an entire class of vulnerabilities have gone obsolete. Many programs do not pay for low impact or information bugs. Also the big guys sweep away the big ones really quick. How do you stay inspired?
@InsiderPhD5 жыл бұрын
Well, don't assume that they have, even really good hackers miss things. During the last live hacking event where you have big name hackers like DISTURBANCE, I was still able to find bugs that weren't dupes! The best hackers often can't see the forest through the trees, they're looking for the RCEs, the bug chains, the SQL injection points. When bugs like IDORs + Business Logic aren't as high impact and can be time-consuming to look for. When it comes to impact focus on bugs that are legitimate security concerns, they will pay out :).
@secdive51234 жыл бұрын
@@InsiderPhD Thats a dope-ass piece of advice. Love it.
@maven60933 жыл бұрын
She described my background immaculately at 3:00
@AnjilNiraula5 жыл бұрын
You're awesome. Thanks for these series of video
@zevenbite45534 жыл бұрын
I really appreciate what you do, I love you.
@openentmizantropia49225 жыл бұрын
Thank you very much for share your knowledge❤️
@derelictmanchester87454 жыл бұрын
Excellent course...very concise...thank you**
@medicineman7894 Жыл бұрын
You are a legend
@revwrapz82792 жыл бұрын
Awesome videos thank you, not sure how much of this is still relevant now but crashed coursed myself into, burp, zap,nmap,linux, cmdprompt, python and good knows what else.......now on try hack me and hack the box heading into bug bounty hunting, no idea what im doing atm just know how to use a ton of stuff, but these videos have really given me some amazing food for thought, thank you so much how you put these across is perfect :) :) :) but it is all still massivly over whelming....all of it hahaha
@evasmith91494 жыл бұрын
Thanks it is very useful 😊
@shubham_srt5 жыл бұрын
love your videos!! keep uploading good stuff
@oxovi5 жыл бұрын
Thank u so much Awesome talk ❤
@Dhruv-te6dy5 жыл бұрын
Hay Dear Thanks for upload this , Please create a video about RCE (Basic TO Advanced ) with live demo , if possible for you once again Thank you .
@nilanjenator4 жыл бұрын
What is the HackerOne GraphQL reference?
@terminator_3634 жыл бұрын
Please reply! I know about each and every bug and read 2-3 books. I haven’t solved labs. I want to start my journey with real world bug hunting. Will be able to find bugs?🥺
@kiragranwyl41944 жыл бұрын
Hi there, newb here first time hunting and only knew idor, i would like to ask. do i have to find this kind of bug on multiple programs or should i focus on just one.
@mamadikaba13075 жыл бұрын
thks for your hard work to help newies to get in BB.. when will the part2 be release.?
@InsiderPhD5 жыл бұрын
Next week :)
@ark3r7455 жыл бұрын
Thanks alot !
@StefanRows4 жыл бұрын
Hey Katie :) Got a good resource that covers exploiting XSS? Never actually tried that. Thanks for the great vid! Ceo.
@InsiderPhD4 жыл бұрын
I’ve made a few videos on XSS I recommend those of course but PortSwigger has a fantastic XSS guide portswigger.net/web-security/cross-site-scripting
@televizyoncum61085 жыл бұрын
Thank you very much❤️Greetings from Turkey❤️
@InsiderPhD5 жыл бұрын
Televizyoncum you’re very welcome! Greetings from a very grey, cold England 🥶👋👋
@yogteacherdilipmotkar88015 жыл бұрын
Plz can u suggest any tool for endpoints of api
@InsiderPhD5 жыл бұрын
The best tool imo is Burp intruder with some good lists for API endpoints I recommend FuzzDB discovery lists and PayloadAllTheThings GraphQL
@faique29954 жыл бұрын
what if I find a bug in out of scope
@InsiderPhD4 жыл бұрын
Try not to go out of scope, but you can report it, likely you won't get a bounty unless you can pivot to an inscope domain!
@goooooo91975 жыл бұрын
Plz do one video on api and endpoints
@InsiderPhD5 жыл бұрын
Already planned will come out in January!
@goooooo91975 жыл бұрын
@@InsiderPhD ok but plz upload at least 2 video a week it is a request
@InsiderPhD5 жыл бұрын
Sorry I have a full time job which limits my time and I don’t make any money off of these videos which limits my resources. I can only do a few videos when my time and resources allow :)
@weniweedeewiki.62372 жыл бұрын
I have said it before and i wil say it again your kung fu is dope............🕺
@weniweedeewiki.62372 жыл бұрын
After 4 hours of sleep I am back again........
@shubhamtripathi99022 жыл бұрын
Make a live video from getting domain from hackerone to recon and enumerate finally submitting with reports. Once you upload please let me know while I will be in touch with your channel.
@ArunKumar-sg6jf4 жыл бұрын
learning basic programming knowledge is enough or not for bug hunter
@InsiderPhD4 жыл бұрын
You don't need to be a programmer to be successful with bug bounties, but I do think it's kinda like a cheat code. If you know how applications are built you can understand how they break. On the other hand coming in without any programming knowledge can also mean you think outside of the box. STÖK is an amazing hacker, and he has no prior knowledge for example!
@HackChey5 жыл бұрын
canwe get your social profile like twitter or linkedin to follow
@InsiderPhD5 жыл бұрын
Social Media links :) Twitter twitter.com/insiderphd/ HackerOne hackerone.com/insiderphd I don’t use any other social media
@Hackerone14442 ай бұрын
bouhl off wou ttar !
@v3n0mh4ckng94 жыл бұрын
British accent is so sexy :p
@hermajaystey Жыл бұрын
You’re the only person I can fully understand! 🫶🏻 thank you! You make me want to start searching for bugs today. But I’m not ready 🤣