02:13 HTTP, TCP/IP, Linux, Bash scripting 02:30 Web apps, Networking, HTML, PHP 02:50 Burp Suite, Google 05:08 owasp
@mr.shanegao3 жыл бұрын
thx
@xd_preet3 жыл бұрын
Father of cj
@atmane0014 жыл бұрын
Super useful resourxrs; 1.Twitter, gold mine for bug bounty. Hust follow the main players. 2.Start reading bug bounty reports, as many as you can and test. 3.Readn read ... many free resources out there. Big G is your friend in this case. 4.YT of course, follow channels that talk about bug bounty, cybersec and even dev. 5.Do some coding projects (c, c++, javasxript, python). It will be useful. Check github for ideas. 6.Have fun 😁😁
@no1sploit5294 жыл бұрын
Your video motivated me, I consider all of your words. This is heart touching. Thanks for such a great information.
@dccybersec4 жыл бұрын
Thanks for the nice words and for watching :)
@no1sploit5294 жыл бұрын
@@dccybersec welcome sir. Keep helping us 💓
@tirtheshpawar96144 жыл бұрын
JUST THE PRACTICAL GUIDANCE NEEDED IN AN ERA OF FLOODING INFORMATION... KEEP DOING THE GOOD WORK DC CYBERSEC!!!!
@dccybersec4 жыл бұрын
thanks man!
@shadowbandit56894 жыл бұрын
Thanks for the information mate. Very helpful me and mates currently studying Cyber Security and are looking into diving into some bug bountys.
@devcreed81754 жыл бұрын
For all those who are here to get information about how to get started, here are few videos which might help you out: kzbin.info/www/bejne/baquhmOZiK2oa6M kzbin.info/www/bejne/p57IZaV3eZegoq8 kzbin.info/www/bejne/eYacepScmJJ8ndU kzbin.info/www/bejne/rIG6o6WNoculjrM kzbin.info/www/bejne/oZ-Tm3aijLiXepo An unhelpful suggestion from me: The methodology I follow is, master a technology and then exploit it. Without mastering (or at least understanding) a technology, you can't start finding bugs in it. There are a tons of things going on behind the website you open or this video you are watching like a server hardware residing in a data center somewhere in this world with a hypervisor installed on it and a VM instance with a web hosting application, hosting this website behind a loadbalancer which is behind a dedicated physical firewall which might be behind some proxy server which might be behind another firewall. This was only the hardware part, many such things are deployed on the software-side too! So, start it with focus of learning it and then master it and then -_- Sit back home and read this comment again! Goodluck for your journey!
@DamienBiffinc0ldm3th0d4 жыл бұрын
THANK YOU, i cannot say this enough THANK YOU, i needed a definite go here learn this start there.
@dccybersec4 жыл бұрын
😊😊
@hakunamatras4 жыл бұрын
Great video! I'm a student in Internet of Things with interests in cybersecurity and pen testing also, due to my study i don't have a lot of time to search the perfect resource on where to start, i usually get home, make my homework and at around 1am i can start learning. thanks for helping me out on that haha Could you make this a serie maybe? How to get started. How I did my first bounty Where are the keypoints the check How to write a good report Things not to do while bug hunting Roadmap to pen testing Again, Great channel, keep it up ^^ Greetz from Belgium!
@dccybersec4 жыл бұрын
You literally named almost every episode of the bug bounty series that i've got in the works hahaha. Thanks for watching man, really appreciate it!
@hakunamatras4 жыл бұрын
@@dccybersec Don't thank me, you're doing the work! i'd love to help you with finding sources or just philosophize about bug hunting, any way i can reach out to you?
@dccybersec4 жыл бұрын
@@hakunamatras Discord or Twitter (links in description). Probably discord is best, i'm pretty active in my server :)
@wtfdoiputhere3 жыл бұрын
Im gonna start with this bcz it seems easier to me than some magic assembly voodoo shit and i have great knowledge in linux, js and networking so im ready
@psychoticgamer68534 жыл бұрын
Bali mask is background 😱 This boi can Rob a bank🔥
@jonathanyturralde4 жыл бұрын
This was a great video. Thanks for the content. Awesome stuff and very helpful for a newbie like myself.
@dccybersec4 жыл бұрын
Glad it helped out :)
@RN-kl4kp4 жыл бұрын
Yes..! Thank you very much... for this... just a request when you find get a bug bounty 💵💵💵 which we hope soon ? Can you please share with us?? The process??
@dccybersec4 жыл бұрын
Yep will do mate. I’ll be documenting my whole process from beginning to bounty!
@harihacke94544 жыл бұрын
@@dccybersec where mate
@fourofour95693 жыл бұрын
Good stuff! It really got my interest in bug bounties.
@mahir_saif2 жыл бұрын
This video was so damn intense. Thanks a lot.
@Plutosantorini4 жыл бұрын
Bro dont forget about cyber mentor man that guy is a hero
@dccybersec4 жыл бұрын
For sure! He’s awesome 😎
@Mauricio_Ferrari4 жыл бұрын
Stok has been great to watch, already watched some of his videos. Great video by the way and thanks for recommendations.
@dccybersec4 жыл бұрын
he's an absolute legend. thanks for watching!
@prafullss4 жыл бұрын
Your all videos are really awesome. I like every video. Post video more . thank you bro. 😊
@dccybersec4 жыл бұрын
Thanks mate! That’s very kind of you
@prafullss4 жыл бұрын
Your kindness. 🤗😊
@vishnudileesh12434 жыл бұрын
Looking forward to the future video in which u tell your first bug finding story
@dccybersec4 жыл бұрын
I can’t wait!
@youarenotspecial174 жыл бұрын
nice video. btw I subscribe your channel cause you look like a really nice and honest guy!
@dccybersec4 жыл бұрын
lol thanks :D
@ThushyCyber2 жыл бұрын
Thanks 😊
@dccybersec2 жыл бұрын
No problem 😊
@JK-pb3vj4 жыл бұрын
Loving the content mate - great advice! Cheers from BNE, Aus 🍻
@dccybersec4 жыл бұрын
Thanks mate! I should do a local Brisbane meetup sometime
@JK-pb3vj4 жыл бұрын
Keen as, let’s put something together.. Where you at @codingo_ !
@Jawdey4 жыл бұрын
Hey how good is brisbane!
@alexramsey10064 жыл бұрын
Very nice presentation... Thank you.
@dccybersec4 жыл бұрын
Glad you liked it!
@hugoalexandregoncalvespica1244 жыл бұрын
7:26 💪
@aritra14144 жыл бұрын
Definitely helpful. Thanks man!
@kaotechtalk23954 жыл бұрын
This video was great! Thankyou so much for all of the info! Got a sub from me
@dccybersec4 жыл бұрын
Thanks for the sub!
@realcarttons21774 жыл бұрын
please do clear my confusion ,do we need to stay ananmous during bug bounyt
@darkhack3r4174 жыл бұрын
New subscriber here also this is the first video i watch in your channel xD
@dccybersec4 жыл бұрын
woohoo! welcome! thanks for watching :)
@kylewattssurfing32664 жыл бұрын
Thank you thank you thank you!
@dccybersec4 жыл бұрын
You’re welcome :)
@maxitaxi73404 жыл бұрын
I dont understand something. Some hackers are reading the code and they see instantly where a voulnabilty could be. But if i try to read webside code i dont understand anything. So i always go through the webside,and im testing every parameter. But how can i learn to find bugs by reading code?
@skiddy52944 жыл бұрын
I think that comes down to experience.. I could be absolutely wrong because I'm just beginning as well. I think over time, you learn what will/wont work in that language.
@kylewattssurfing32664 жыл бұрын
Awesome thank you
@dccybersec4 жыл бұрын
thanks for watching mate!
@frostyboi69893 жыл бұрын
Is doing a bug bounty like doing a pen test you break into the company and tell them the bug ?
@dccybersec3 жыл бұрын
More or less, yes
@abiworldseccentric98784 жыл бұрын
Some times in The Hacker one site bug bounty section whom want to find the bugs they ask me to do find the bugs but they have one demand that shouldn't use Burpsuite and such a readymade tools so how can I performe..? Please can you suggest me
@manojbajgain76604 жыл бұрын
Really loved your videos #Can you discuss about Class 0 sms
@dccybersec4 жыл бұрын
It’s in the list man, you don’t need to keep asking lol
@manojbajgain76604 жыл бұрын
@@dccybersec you didn't response so I keep on making query😝😝
@francis2k4884 жыл бұрын
Thanks for this video. I am still learning and believe it will all sync soon. I got the OWASP Testing Guide V4
@hackedemy93244 жыл бұрын
Are you Nigerian? Goodluck on your journey brother!
@francis2k4884 жыл бұрын
@@hackedemy9324 yeah but live in Australia. Are you? Where do you live?
@hackedemy93244 жыл бұрын
@@francis2k488 You're really lucky! I'm in Nigeria at the moment but hopefully, I'll move out soon.
@francis2k4884 жыл бұрын
@@hackedemy9324 are you a hacker? Why did you say I am lucky. With skills we can be lucky anywhere bro. You can try migration pathway.
@hackedemy93244 жыл бұрын
@@francis2k488 Yes I am. I'm self-studying cybersec online and studying Computer Engineering in the uni. Planning to leave Nigeria and study Computer Science or Cybersec elsewhere bc this isn't helping me. I'll try the migration pathway, saving towards it currently.
@rooney.464 жыл бұрын
Love ya, keep going ❤️
@dccybersec4 жыл бұрын
Thanks mate. Will do!
@rastinghasemi6344 жыл бұрын
Tanx
@yashwanthd19984 жыл бұрын
What i dont understand is people always talk about xss injection.. if the website itself doesn't take any user input or input is sanitised which is everywhere these days..xss injection seems very weak and impossible.could u explain
@MyNameIsTX4 жыл бұрын
Soo essentially when you are going to attempt a bug bounty ( I am a completely clueless btw I have tried it and I don't know anything) do you just have to try every single exploit or like try all the possible problems? I do not exactly understand how it works. Also, I have no programming knowledge I have tried to self teach myself it and I am currently in college (community college) and hoping to transfer out to study IT but I want to branch out into cybersecurity. Basically, I do not know how to say what I want to say but, I think it is the owasp top 10 or something like that, do we try to find all those vulnerabilities in the program or website or is it something more specific.
@36cowboysintotalatramranch4 жыл бұрын
Yeah, basically you can try everything possible. Each app is a new challenge, with different bugs and defenses to evade, and then you report on what worked and on what didn’t. The job of a pentester is to evaluate the client’s systems, so it’s also good to tell them where you weren’t able to get anywhere because they did things right!
@ocelotrevolver41253 жыл бұрын
Can I make a living from doing bug bounties, or perhaps doing security evaluations for businesses demonstrating network security flaws to business owners and how to secure their systems and how to harden them. I have a good understanding of cybersecurity with years of experience using Linux I'm just not sure how I can transfer these skills I've learned over the years and turn this into a freelance income, any advice?
@faruky91974 жыл бұрын
First of all English is not my native language. I really want to do bug bounty but not too many resources in my language in bug bounty. Because of this, I cannot learn by reading documents or watching videos. That's why I need to learn software languages so that I can understand its logic. What should I do?
@LotsOVideosMan4 жыл бұрын
What is song called at 0:32?
@malikimranawan37624 жыл бұрын
if a Subdomain give us error 404 .. can that Takeover ?
@yousefkammouneh65594 жыл бұрын
Just found my first bug
@dccybersec4 жыл бұрын
Woohoo!
@wackyskullgaming67114 жыл бұрын
This is very informative
@dccybersec4 жыл бұрын
Thanks mate
@koushikram40363 жыл бұрын
please answer this do I need burb suite pro for my first bug ???
@dccybersec3 жыл бұрын
Nope. You can use the free one
@koushikram40363 жыл бұрын
@@dccybersec thanks for your replay
@abhichauhan3503 жыл бұрын
I want to learn bug bounty So tell me what topic should I learn
@harreve36293 жыл бұрын
Love bro..
@dccybersec3 жыл бұрын
love you too mate!
@usama_sadiq3 жыл бұрын
Mera ye sawaal hai ke agar hum kise company ke ek se ziada bug dhoond lein tu hum us company ko saare bugs ke liye sirf ek report likhen ya har bug ke liye alag alag report likhen
@dccybersec3 жыл бұрын
I tried translating this from Hindi and still couldn't really understand, sorry :( Can you reply in english please so I can help out?
@inspirationeveryday11754 жыл бұрын
Hello Sir Do you recomended KALI LINUX for BugBounty or Windows and MacOs is Good ? THANK you ⭐🔥
@dccybersec4 жыл бұрын
Honestly, whatever works for you. Kali might be easier as it has all the tools built in already but honestly, you can use any machine
@alonsocorrea12564 жыл бұрын
Having the OSCP helps to get into bug bounty??
@dccybersec4 жыл бұрын
for sure, but not necessarily needed
@dougthebugwrx4 жыл бұрын
@@dccybersec having done 35 oscp lab boxes so far , i say no . oscp web app labs are very average . you will learn more from portswigger web academy. also use owasp zap , its free
@jhadeeksollesta4974 жыл бұрын
Broo thank you so so much im only 12 and im only 12 and i dont know really if I can do this but thxxx
@taylors47334 жыл бұрын
The earlier the better!🙃 Go for it.
@davidg94694 жыл бұрын
Did you find many bugs ?
@misterbrompton24004 жыл бұрын
You didn't link OWASP
@kylewattssurfing32664 жыл бұрын
Awesome cool...
@dccybersec4 жыл бұрын
Thanks ✌️
@jinxscript2 жыл бұрын
it's interesting 🤔
@dccybersec2 жыл бұрын
Thanks man!
@QuranicMoments3 жыл бұрын
Lot of thanks sir. 🔥🔥 سبحان اللّه 🔥🔥
@dccybersec3 жыл бұрын
My pleasure. Thanks for watching!
@sunilrai55063 жыл бұрын
I am going to start bug bounty in hacker1 or bug crowd should I take permission or how to get permission from a web application, please help me anyone who all did bug bounty someone told me we have to take permission to bug hunting otherwise without permission it's will be a cybercrime plz someone explain😢😢😢😢
@dccybersec3 жыл бұрын
As long as you stay within the scope of what is defined by hacker1 or bugcrowd, then you're relatively safe. Just make sure you understand what the scope is and how to stay inline with that
@sunilrai55063 жыл бұрын
@@dccybersec by the way thanks for your diamond advice sir (this advice is like a diamond for me can I follow you on tweeter sir)
@sunilrai55063 жыл бұрын
one more last like go to the hacker1 sing up and according their rule pick a program start bug hunting if they told us not to in any subdomain then not to do in any subdomain am I right?
@gurjeetdasari19974 жыл бұрын
Please reply with the name of guides u prefer us to follow as I could not get what u said in the video
@dccybersec4 жыл бұрын
They are linked in the description
@SecurityTalent2 жыл бұрын
great
@dccybersec2 жыл бұрын
thanks!
@nikkucreations78424 жыл бұрын
Hii dc iam from india your video is more motivational
@sammygun844 жыл бұрын
Where all links from video?where link on guide?
@dccybersec4 жыл бұрын
KZbin removed all my video descriptions a while back and replaced it with the default
@epic58553 жыл бұрын
EPIC
@jasoe_playz19264 жыл бұрын
Programming Language is important.
@danielsuarezmartinez19674 жыл бұрын
how much time pass from 0 knowledge to your first bug??
@dccybersec4 жыл бұрын
I'll let you know when I get my first bug haha
@imuser0074 жыл бұрын
U missed nullbyte channel
@tirilmariepedersen69564 жыл бұрын
Who are you looking at? :p
@lagimmediafiles64784 жыл бұрын
Whats up Man?
@dccybersec4 жыл бұрын
nm mate, how's it going?
@lagimmediafiles64784 жыл бұрын
@@dccybersec im good i will start on My IT Job your channel is a big help
@saddamhussain1894 жыл бұрын
Hi
@ShashiSingh-ck7mu4 жыл бұрын
How many money can we make by bug bounty hacking.
@dccybersec4 жыл бұрын
It depends which bugs you find for which company
@ShashiSingh-ck7mu4 жыл бұрын
@@dccybersec like I'm 17 years old and going to graduate from school and I know c++ and python will that help? And as you mentioned in your video about tutorials on KZbin will that help me or courses on udemy or courses on hacker one will help I'm little confused which course to take can you please help me out because I also want to become a hacker like Santiago Lopez and Thomas Thank you.
@b3ast4074 жыл бұрын
@@ShashiSingh-ck7mu Yes read hackerone hacktivity,medium blogs, do labs like owaspbwa it definitely helps, @nahamsec's KZbin channel is also very nice
@rithvikgujjula14004 жыл бұрын
LEt's go first one here and first comment again
@dccybersec4 жыл бұрын
Killin it mate
@kunal99991003 жыл бұрын
Can I get one of your soft toys?
@dccybersec3 жыл бұрын
Sure. Which one do you want
@TheFunnyPOPS4 жыл бұрын
I won’t recommend it bug bounties has too much competition now all the pros find bugs before you.
@dccybersec4 жыл бұрын
They just take the quick and easy payouts first. As far as building experience though it’s pretty good!
@richardjohnson97654 жыл бұрын
Watch hackersploit
@dccybersec4 жыл бұрын
Definitely! he's awesome
@mr.shanegao3 жыл бұрын
02:13 HTTP, TCP/IP, Linux, Bash scripting 02:30 Web apps, Networking, HTML, PHP 02:50 Burp Suite, Google 05:08 owasp