Live Bug Bounty Hunting | Client-Side Injection Testing on Starbucks Japan (Plus Q&A)

  Рет қаралды 16,354

rs0n_live

rs0n_live

Күн бұрын

Пікірлер: 38
@bradnaylor35
@bradnaylor35 10 ай бұрын
It's interesting to watch a bug bounty hunter's thought process when performing initial sitemapping/recon and then exploring common injection points. Thanks for the video!
@cacurazi
@cacurazi 10 ай бұрын
Yup… seeing someone taking notes before doing the “hacking” stuff I know they are knowledgeable and good things are going to happen. Subscribed!
@sw33d-jd1xm
@sw33d-jd1xm 10 ай бұрын
Awesome video! It's incredibly beneficial for beginners like us. Thanks a lot!
@kittoh_
@kittoh_ 10 ай бұрын
Please don't stop doing this stuff! They're gold!
@georgekiwarkis8264
@georgekiwarkis8264 4 ай бұрын
i recently discovered this channel and i would like to say that as a knew person to cybersecurity you motivate me and give me alot of knew information to keep going
@АнтонСоломатин-е7б
@АнтонСоломатин-е7б 10 ай бұрын
how to choose the right subdomain after reconnaissance to start testing correctly? I often receive hundreds of subdomains and do visual reconnaissance, but often I don’t understand where to start. It would be very interesting to see a video on this topic, since many hunters miss this in their creativity on KZbin
@HackAll-ue3sr
@HackAll-ue3sr 10 ай бұрын
I love you sir you are making our minds to open on a level of urs ❤❤❤
@BrandonWu-z3p
@BrandonWu-z3p 10 ай бұрын
Underrated stream
@walterwhite-du4rn
@walterwhite-du4rn 10 ай бұрын
You are gem for me..I learned a lot of burp suite using techniques from you.Thank you❤
@1a4s4l7
@1a4s4l7 10 ай бұрын
24:35 - 3 approaches 30:24 - insertion points
@bakeery
@bakeery 10 ай бұрын
Thank you for keeping your words :)
@CorpseGod_gg
@CorpseGod_gg 10 ай бұрын
Love this stream 😊
@marcovanangeren
@marcovanangeren 13 күн бұрын
Hey ars0n, thanks for your videos. I was wondering: if you are a beginning hunter, where would you recommend starting? I have checked programs on H1 but most of those seem to be completely saturated (which is only logical as they are public programs). I want to get better by practice, but I feel like many of these public bounties only have the very hard to find stuff remaining, making it impossible for me to work my way up one step at a time because there is no bottom steps. Can you tell me what would be a good place to start out? Or how to get into some less crowded projects? I understand I won't be finding critial business logic issues in applications such as Hilton. Nor will I find anything, most likely. So where to start :)
@master-manhood
@master-manhood 10 ай бұрын
Hi R-s0n, If you could provide the timestamp in your KZbin video, it would be great, bcoz if often come back again and search for a particular piece. If you can would be much appreciated.
@z1ro_zb
@z1ro_zb 10 ай бұрын
Thanks for the content!
@N0th1ng_to_s33
@N0th1ng_to_s33 8 ай бұрын
great source Thanks
@cinematicRecapss
@cinematicRecapss 10 ай бұрын
Make a video for a beginners like in which bug do we must focus on and your methodologies and show us the first bug you search for in a web app pls
@steiner254
@steiner254 9 ай бұрын
Superb Cool
@aliuzun8885
@aliuzun8885 9 ай бұрын
Ty
@theomidtabei
@theomidtabei Ай бұрын
💙💙💙
@YettouYettou-uj9du
@YettouYettou-uj9du 10 ай бұрын
I see xss-protection:1 And amazon cloudfront How do you deal with thes ? Spesialy the second one because will block every single payload injectiin
@brs2379
@brs2379 10 ай бұрын
Any ideas on how to escalate CSS injection on a site where script tags and all event handlers are blocked by WAF?
@brendan8665
@brendan8665 10 ай бұрын
Do you pay for proton vpn premium? I wonder if I need that instead
@BugbountyPOCs41
@BugbountyPOCs41 10 ай бұрын
what are your laptop specs?
@Booom1444-_-
@Booom1444-_- 10 ай бұрын
Please create KZbin video content for learning from beginners to advanced levels.
@HAzorTeam
@HAzorTeam 10 ай бұрын
Roadmap 2024 Bug Bounty Hunting and plataform earn money thanks
@eyephpmyadmin6988
@eyephpmyadmin6988 10 ай бұрын
No one wants the beginners videos theirs millions out their we need the most advanced of the advanced. Trust me youll bottleneck with all the beginner stuff. I rarely see any advanced stuff
@SumitYadav-lr5vy
@SumitYadav-lr5vy 9 ай бұрын
​@@HAzorTeamwhat do you mean?
@b4arabe132
@b4arabe132 8 ай бұрын
love u man
@anurag.30302
@anurag.30302 10 ай бұрын
why the hell you don't use chrome that will help in language translation on that page itself
@hacklikeAgbaby
@hacklikeAgbaby 10 ай бұрын
Sorry how can I join your discord server 😞
@-Engineering01-
@-Engineering01- 10 ай бұрын
Seems being a security professional means using built-in software to find vulnerabilities. I didn't thought that way, i used to thought security professionals were so good at coding. But seems most of them are totally garbage at that(i don't mean you), so i left pursuing it and went to software engineering. I would rather to develop burp suite itself, rather than doing bug hunting using it.
@rabin2439
@rabin2439 5 ай бұрын
Bro come backkkkkkkkkkkkkkkkk
@uttarkhandcooltech1237
@uttarkhandcooltech1237 10 ай бұрын
thanks sir
@theairsharma
@theairsharma 10 ай бұрын
2nd,runner up
@orbitxyz7867
@orbitxyz7867 10 ай бұрын
2nd
@aashutoshlodhi1029
@aashutoshlodhi1029 10 ай бұрын
1st
@VlxyAtumac
@VlxyAtumac 10 ай бұрын
Thank you , I love you
ТЮРЕМЩИК В БОКСЕ! #shorts
00:58
HARD_MMA
Рет қаралды 2,6 МЛН
Ice Cream or Surprise Trip Around the World?
00:31
Hungry FAM
Рет қаралды 22 МЛН
Hoodie gets wicked makeover! 😲
00:47
Justin Flom
Рет қаралды 137 МЛН
coco在求救? #小丑 #天使 #shorts
00:29
好人小丑
Рет қаралды 18 МЛН
BSidesBUD2022: Bug Bounty Recon The Right Way
25:00
BSides Budapest IT Security Conference
Рет қаралды 11 М.
How much money I made in my 1st year of bug bounty? Bounty vlog #4
17:02
Bug Bounty Reports Explained
Рет қаралды 164 М.
Hacking WordPress Sites for up to $10,000!
12:11
NahamSec
Рет қаралды 40 М.
[Part III] Bug Bounty Hunting for IDORs & Access Controls
4:08:37
3 Real API Bugs I got a bounty for
17:43
InsiderPhD
Рет қаралды 10 М.
ТЮРЕМЩИК В БОКСЕ! #shorts
00:58
HARD_MMA
Рет қаралды 2,6 МЛН