The Bug Hunter's Methodology - Application Analysis | Jason Haddix

  Рет қаралды 98,904

HackerOne

HackerOne

Күн бұрын

Пікірлер: 54
@AnthonyMcqueen1987
@AnthonyMcqueen1987 8 ай бұрын
Unlike most top researchers out there who do nothing but flex their bounties and give cryptic generic advise or how they got those bugs to me those people add nothing to the community. But people like Haddix who doesnt show off how much he has made or flex his bounties actually explains in detail what he does. He also updates his style and methodology and its not for everyone but he does give detail to how he finds bugs and does his recon unlike most out there and i respect that. Researchers who flex their bounties offer nothing to the community Researchers like Haddix offer a lot to the community.
@auwalsalisu7889
@auwalsalisu7889 8 ай бұрын
you said nothing but pure 100% truth, you literally spoke my mind
@AnthonyMcqueen1987
@AnthonyMcqueen1987 8 ай бұрын
@auwalsalisu7889 I am just sick of researchers out there who do nothing and show off their bounties. These people make the profession worse IMO and add nothing. Haddix on the other hand I respect.
@shiiswii4136
@shiiswii4136 8 ай бұрын
​@@AnthonyMcqueen1987look up Ryan John and ippsec, these guys are pure fundamentals and no nonsense in the videos
@skysunset877
@skysunset877 10 ай бұрын
I'm deeply grateful that you explained this specific procedure for bugbounty. As a beginner, it helped me a lot with my studies.
@goohaver
@goohaver 8 ай бұрын
same here. good luck homie
@madcane13
@madcane13 2 жыл бұрын
json headache... utterly... no words can explain how brilliant he is... you rock
@rynomas4948
@rynomas4948 Жыл бұрын
He is haddix bro, not headache. 😆
@viralledshow7079
@viralledshow7079 Жыл бұрын
@@rynomas4948might be auto correct error brother....!😂
@wk8173
@wk8173 Жыл бұрын
@@rynomas4948 grateful he didn't go for json headless💀
@SankizTime
@SankizTime Жыл бұрын
Lmao😂
@iqyou-gw4kd
@iqyou-gw4kd 2 жыл бұрын
Thank you everyone for helping the community evolve
@eyephpmyadmin6988
@eyephpmyadmin6988 Жыл бұрын
Took notes on everything, every tool, all the methodology
@AmineAb
@AmineAb Жыл бұрын
Really informative talk, but at the end he wasn’t using Notion for the note-taking part as stated, it was Obsidian.
@esamlasheen453
@esamlasheen453 Жыл бұрын
hhh i see it too
@Suckit-b6k
@Suckit-b6k 20 күн бұрын
8:30 is an incredible moment
@popo_hack
@popo_hack Жыл бұрын
Thank you Jason for this amazing presentation, it was very fruitful with alot of knowledge. I think it's very important to know where to start testing and what are the tools that can help you doing that😀
@nathanbolen7624
@nathanbolen7624 23 күн бұрын
i love these talks, still relevant today
@MdMilonHossainNil
@MdMilonHossainNil Жыл бұрын
❤❤Oh my God, this is what I've been waiting for!! It looks beautiful!!❤❤
@AlecMaly
@AlecMaly 2 жыл бұрын
Great presentation! Thank you for sharing your expertise!
@emanuelepicariello
@emanuelepicariello Жыл бұрын
Great video thanks, it’s time to build a proper methodology now 🕵🏽‍♂️
@fp1036
@fp1036 7 ай бұрын
Thank you for your passionate sharing Sir!
@sapienshack1711
@sapienshack1711 9 ай бұрын
Jason Haddix you are awesome
@4liraah
@4liraah 10 ай бұрын
Thanks for the talk! Any chance we can get a link to the slides?
@Booom1444-_-
@Booom1444-_- 9 ай бұрын
Slides?
@william_ade
@william_ade 2 жыл бұрын
how can we get the slides ??
@Khal_Rheg0
@Khal_Rheg0 8 ай бұрын
Thank you!
@actuallyclover
@actuallyclover 8 ай бұрын
I went to college with Corben! Super smart guy
@0xfsec
@0xfsec 2 жыл бұрын
Can I get the slide presentation?
@godzab
@godzab 2 жыл бұрын
I second this!
@william_ade
@william_ade 2 жыл бұрын
This is brilliant !
@aalekhmotani3877
@aalekhmotani3877 3 ай бұрын
Thanks a lot for all this
@hamidrahamaabakar7995
@hamidrahamaabakar7995 11 ай бұрын
Good morning I'm very appreciate you
@wise.wanderer.00
@wise.wanderer.00 2 жыл бұрын
Very informative talk
@samgold9151
@samgold9151 2 жыл бұрын
Thank you
@anasshaikh5778
@anasshaikh5778 Жыл бұрын
Rustscan might not be helpful Since most of the programs have speed limitations like 10 req/s etc..
@سامرسعيد-ي1ب
@سامرسعيد-ي1ب 2 ай бұрын
“There are bugs in every single aplication”
@bugs-lk3jf
@bugs-lk3jf Жыл бұрын
Great Content , like a Boss
@esamlasheen453
@esamlasheen453 Жыл бұрын
45:36 Jason It's obsidian not notion!
@reactivicky
@reactivicky Жыл бұрын
Nice tips.
@ExploitDeveloper
@ExploitDeveloper Жыл бұрын
thats good
@TheCyberWarriorGuy
@TheCyberWarriorGuy Жыл бұрын
Legend :)
@thehackr.
@thehackr. 2 жыл бұрын
nyc one
@mariarahelvarnhagen2729
@mariarahelvarnhagen2729 Жыл бұрын
The Financial Instruments Game
@bountyproofs
@bountyproofs 7 ай бұрын
if you don't CREATE your own METHODOLOGY this is worth NOTHING for YOU
@shantanusharma5624
@shantanusharma5624 Жыл бұрын
Woah!! I'm the 1Kth liker of this video
@garywilburn7384
@garywilburn7384 Жыл бұрын
I'll give you a dollar if you learn to pronounce "obligatory" properly 😂
@ll-ruby..gloom-ll
@ll-ruby..gloom-ll 11 ай бұрын
he did
@CaseyStrouse
@CaseyStrouse Жыл бұрын
jsnice is the best tool I've found for making sense of obfuscated js. Definitely check it out.
@Ln0rag
@Ln0rag Жыл бұрын
where to find the slides file ?
@awanakb4867
@awanakb4867 Жыл бұрын
how can i find these word lists
@AmineAb
@AmineAb Жыл бұрын
Everthing is on the talk.. if you can’t find those wordlists, I don’t know how you will find bugs
@awanakb4867
@awanakb4867 Жыл бұрын
@@AmineAb i found them already. it just needed some attention.
DEF CON 32 - The Darkest Side of Bug Bounty - Jason Haddix
32:30
DEFCONConference
Рет қаралды 45 М.
Молодой боец приземлил легенду!
01:02
МИНУС БАЛЛ
Рет қаралды 1,8 МЛН
IBM - Live bug bounty hunting on Hackerone
48:33
gotr00t?
Рет қаралды 96 М.
Web Application Penetration Testing - A Practical Methodology
1:16:34
Ansible for Dev Teams
51:28
DCChattanooga
Рет қаралды 9
0 to $100,000 in Bug Bounty : The architecture !! #bugbounty
18:19
Mayur Chavan
Рет қаралды 3,8 М.
The Bug Hunter’s Methodology Jason Haddix @jhaddix
1:16:16
Red Team Village
Рет қаралды 48 М.
Practical Bug Bounty
4:45:52
The Cyber Mentor
Рет қаралды 104 М.
The Bug Hunter's Methodology Full 2-hour Training by Jason Haddix
1:53:53
Red Team Village
Рет қаралды 169 М.
“Recon Like an Adversary” by Jason Haddix at IWCON2023
1:01:13
Infosec Studio by IW
Рет қаралды 17 М.