{"id":13844214,"url":"https://github.com/hetmehtaa/bug-bounty-guide","last_synced_at":"2025-07-11T22:31:01.535Z","repository":{"id":46625935,"uuid":"410786123","full_name":"hetmehtaa/bug-bounty-guide","owner":"hetmehtaa","description":null,"archived":false,"fork":false,"pushed_at":"2025-04-04T08:14:53.000Z","size":113,"stargazers_count":105,"open_issues_count":0,"forks_count":29,"subscribers_count":6,"default_branch":"main","last_synced_at":"2025-06-21T04:47:36.080Z","etag":null,"topics":[],"latest_commit_sha":null,"homepage":null,"language":null,"has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"mit","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/hetmehtaa.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":null,"funding":null,"license":"LICENSE","code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null,"roadmap":null,"authors":null,"dei":null,"publiccode":null,"codemeta":null}},"created_at":"2021-09-27T07:35:01.000Z","updated_at":"2025-04-18T15:44:39.000Z","dependencies_parsed_at":"2025-04-04T09:24:59.054Z","dependency_job_id":"a8ab5f61-ec6c-4689-81c5-c80509a7c79a","html_url":"https://github.com/hetmehtaa/bug-bounty-guide","commit_stats":null,"previous_names":["hetmehtaa/bug-bounty-guide","hetmehtaa/bug-bounty-noob"],"tags_count":0,"template":false,"template_full_name":null,"purl":"pkg:github/hetmehtaa/bug-bounty-guide","repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/hetmehtaa%2Fbug-bounty-guide","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/hetmehtaa%2Fbug-bounty-guide/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/hetmehtaa%2Fbug-bounty-guide/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/hetmehtaa%2Fbug-bounty-guide/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/hetmehtaa","download_url":"https://codeload.github.com/hetmehtaa/bug-bounty-guide/tar.gz/refs/heads/main","sbom_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/hetmehtaa%2Fbug-bounty-guide/sbom","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":264909966,"owners_count":23682096,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":[],"created_at":"2024-08-04T17:02:37.580Z","updated_at":"2025-07-11T22:31:01.513Z","avatar_url":"https://github.com/hetmehtaa.png","language":null,"funding_links":[],"categories":["Others"],"sub_categories":[],"readme":"# Bug-Bounty-Guide\n\nThat tweet is only intended for Beginners/Freshers in bug bounty hunting who just started learning about this or want to start! If you are already doing hunting or doing labs then Maybe this won't be too much helpful to you. \n\nThanks!\n\nIt all depends on interest and hard work, not on degree, age, branch, college, etc.\n\n What to study?\n\n 1. Internet, HTTP, TCP/IP\n 2. Networking\n 3. Command line\n 4. Linux\n 5. Web technologies, javascript, PHP, java\n 6. At least 1 prog language (Python/C/JAVA/Ruby/Golang etc..)\n\n Choose your path (imp)\n\n 1. Web pentesting\n 2. Mobile pentesting\n 3. Desktop apps\n\n\n## Table of Contents\n\n\nResources:\n \n 1. Books\n\n  For web \n\n   1. Web app hackers handbook\n   2. Web hacking 101\n   3. Hacker's playbook 1,2,3\n   4. Hacking art of exploitation\n   5. Mastering modern web pen testing\n   6. OWASP Testing guide \n   7. Bug Bounty Bootcamp.\n  For mobile\n\n   1. Mobile application hacker's handbook\n\nYoutube channels:\n\n   1. Live Overflow\n   2. John Hammond\n   3. Hackersploit\n   4. Bugcrowd\n   5. Hak5\n   6. Hackerone\n\n Must Check: https://blog.intigriti.com/2020/10/05/top-20-bug-bounty-youtube-channels-to-follow-in-2020/ \n\n  Programming:\n\n1. Academind  \n2. CS Dojo  \n3. Derek Banas  \n4. freeCodeCamp  \n5. Joshua Fluke  \n6. LevelUpTuts  \n7. Life of Luba  \n8. The Coding Train  \n\nWriteups, Articles, blogs  ( I have mentioned some awesome writeups at the end! )\n\n  1. Medium (infosec writeups)\n  2. Hackerone public reports\n  3. http://owasp.org\n  4. Portswigger\n  5. Reddit (Netsec)\n  6. DEFCON conference videos\n  7. Forums \n\nPractice (Very Important)\n\n Tools\n\n  1. Burpsuite\n  2. nmap\n  3. dirtbuster\n  4. sublist3r\n  5. Netcat\n  6. Python PWN Library\n  7. Metasploit framework\n\nTesting Labs\n\n  1. DVWA\n  2. bWAPP\n  3. Vulnhub\n  4. Metasploitable\n  5. CTF365\n  6. Hack the box\n\nStart!   ( Don't Forget this masterpiece- https://book.hacktricks.xyz/ )\n\n*******\n\nPractice Owasp Top 10 and Master at least one Bug.\n\n2. Master In Burpsuite and Nmap\n\n3. Top Tools that will be used on a daily Basis\n\nhttps://www.hackerone.com/ethical-hacker/100-hacking-tools-and-resources\n\n4. Read and practice at Portswigger Academy\n\nhttps://portswigger.net/web-security\n\n5. Read On a daily basis\n\nhttps://hackerone.com/hacktivity\n\nhttps://blog.intigriti.com/\n\nhttps://pentester.land/list-of-bug-bounty-writeups.html\n\nhttps://infosecwriteups.com/\n\nhttps://bugbountyguide.com/hunters/books.html\n\nhttps://owasp.org/www-project-web-security-testing-guide/v42/\n\nhttps://github.com/devanshbatham/Awesome-Bugbounty-Writeups\n\nhttps://github.com/nahamsec/Resources-for-Beginner-Bug-Bounty-Hunters/blob/master/assets/basics.md\n\nhttps://github.com/trimstray/the-book-of-secret-knowledge\n\nhttps://www.bugcrowd.com/hackers/bugcrowd-university/\n\nhttps://medium.com/tag/bug-bounty-writeup\n\n6. Checklists\n\nhttps://github.com/OWASP/wstg/tree/master/checklist\n\nhttps://www.youtube.com/watch?v=uKWu6yhnhbQ  ( Methodology )\n\n******\n\n### Select a Platforms\n\n- [HackerOne](https://hackerone.com/)\n- [Bugcrowd](https://bugcrowd.com/)\n- [intigriti](https://intigriti.com/)\n- [YesWeHack](https://yeswehack.com/)\n- [Synack](https://www.synack.com/)\n- [HackenProof](https://hackenproof.com/)\n- [Detectify](https://cs.detectify.com/)\n- [Bugbountyjp](https://bugbounty.jp/)\n- [Safehats](https://safehats.com/)\n- [BugbountyHQ](https://www.bugbountyhq.com/)\n- [Hackerhive](https://hackerhive.io/)\n- [CESPPA](https://www.cesppa.com/)\n\n#### Few Responsible Public Disclosure \n     \n - [Google VDP](https://www.google.com/about/appsecurity/reward-program/)\n - [Apple Bug Bounty](https://developer.apple.com/security-bounty/)\n - [Microsoft Bug Bounty Program](https://www.microsoft.com/en-us/msrc/bounty)\n - [Intel Security](https://www.intel.com/content/www/us/en/security-center/default.html)\n - [Yahoo Security](https://safety.yahoo.com/Security/REPORTING-ISSUES.html)\n - [Cisco VDP](https://tools.cisco.com/security/center/resources/security_vulnerability_policy.html)\n - [Facebook Whitehat](https://www.facebook.com/whitehat/)\n - [Dropbox Security](https://help.dropbox.com/accounts-billing/security/how-security-works)\n - [Mozilla](https://www.mozilla.org/en-US/security/bug-bounty/)\n - [Vimeo](https://vimeo.com/about/security)\n - [Github](https://bounty.github.com/)\n - [Uber Security](https://eng.uber.com/bug-bounty-map/)\n - [PHP](https://bugs.php.net/report.php?bug_type=Security)\n - [PayTM Security](https://paytm.com/offer/bug-bounty/)\n\n#### To Find More Programs, You Can Have a Look Into Google Dorkings.\n\n\n\n\n\n 1. Choose wisely (first not for bounty)\n 2. Select a bug for hunt\n 3. Exhaustive search\n 4. Not straightforward always\n\n### REPORT:\n\n 5. Create a descriptive report\n 6. Follow responsible disclosure\n 7. Create POC and steps to reproduce\n*******\n\n### Words of wisdom\n\n 1. PATIENCE IS THE KEY, takes years to master, don't fall for overnight success\n 2. Do not expect someone will spoon feed you everything.\n 3. Confidence\n 4. Not always for bounty\n 5. Learn a lot\n 6. Won't find at the beginning, don't lose hope\n 7. Stay focused\n 8. Depend on yourself\n 9. Stay updated with the infosec world\n\n\nThe Best skill you can have is Google. Do learn it, it's not only a search bar but more than that! do some Dorking and have tailored results that you want. You can not always be dependent on others, thus learning google is crucial. \n\nThanks. \n\nAll your reference:\n\n- Learn From Bugs Disclosure\n- XSS\n[https://medium.com/@corneacristian/top-25-xss-bug-bounty-reports-b3c90e2288c8](https://medium.com/@corneacristian/top-25-xss-bug-bounty-reports-b3c90e2288c8)\n- RCE\n[https://medium.com/@corneacristian/top-25-rce-bug-bounty-reports-bc9555cca7bc](https://medium.com/@corneacristian/top-25-rce-bug-bounty-reports-bc9555cca7bc)\n- Race Condition\n[https://medium.com/@corneacristian/top-25-race-condition-bug-bounty-reports-84f9073bf9e5](https://medium.com/@corneacristian/top-25-race-condition-bug-bounty-reports-84f9073bf9e5)\n- IDOR\n[https://medium.com/@corneacristian/top-25-idor-bug-bounty-reports-ba8cd59ad331](https://medium.com/@corneacristian/top-25-idor-bug-bounty-reports-ba8cd59ad331)\n- Open Redirect\n[https://medium.com/@corneacristian/top-25-open-redirect-bug-bounty-reports-5ffe11788794](https://medium.com/@corneacristian/top-25-open-redirect-bug-bounty-reports-5ffe11788794)\n- Wordpress\n[https://medium.com/@corneacristian/top-25-wordpress-bug-bounty-reports-f208ea2dad3f](https://medium.com/@corneacristian/top-25-wordpress-bug-bounty-reports-f208ea2dad3f)\n\n\n*************\n\nSome Bug Bounty tools:\n\n\ndnscan https://github.com/rbsec/dnscan\n\nKnockpy https://github.com/guelfoweb/knock\n\nSublist3r https://github.com/aboul3la/Sublist3r\n\nmassdns https://github.com/blechschmidt/massdns\n\nnmap https://nmap.org\n\nmasscan https://github.com/robertdavidgraham/masscan\n\nEyeWitness https://github.com/ChrisTruncer/EyeWitness\n\nDirBuster https://sourceforge.net/projects/dirbuster/\n\ndirsearch https://github.com/maurosoria/dirsearch\n\nGitrob https://github.com/michenriksen/gitrob \n\ngit-secrets https://github.com/awslabs/git-secrets\n\nsandcastle https://github.com/yasinS/sandcastle\n\nbucket_finder https://digi.ninja/projects/bucket_finder.php\n\nGoogD0rker https://github.com/ZephrFish/GoogD0rker/\n\nWayback Machine https://web.archive.org\n\nwaybackurls https://gist.github.com/mhmdiaa/adf6bff70142e5091792841d4b372050 Sn1per https://github.com/1N3/Sn1per/\n\nXRay https://github.com/evilsocket/xray\n\nwfuzz https://github.com/xmendez/wfuzz/\n\npatator https://github.com/lanjelot/patator\n\ndatasploit https://github.com/DataSploit/datasploit\n\nhydra https://github.com/vanhauser-thc/thc-hydra\n\nchangeme https://github.com/ztgrace/changeme\n\nMobSF https://github.com/MobSF/Mobile-Security-Framework-MobSF/\n\n Apktool https://github.com/iBotPeaches/Apktool\n\ndex2jar https://sourceforge.net/projects/dex2jar/\n\nsqlmap http://sqlmap.org/\n\noxml_xxe https://github.com/BuffaloWill/oxml_xxe/ @cyb3rhunt3r\n\nXXE Injector https://github.com/enjoiz/XXEinjector\n\nThe JSON Web Token Toolkit https://github.com/ticarpi/jwt_tool\n\nground-control https://github.com/jobertabma/ground-control\n\nssrfDetector https://github.com/JacobReynolds/ssrfDetector\n\nLFISuit https://github.com/D35m0nd142/LFISuite\n\nGitTools https://github.com/internetwache/GitTools\n\ndvcs-ripper https://github.com/kost/dvcs-ripper\n\ntko-subs https://github.com/anshumanbh/tko-subs\n\nHostileSubBruteforcer https://github.com/nahamsec/HostileSubBruteforcer Race the Web https://github.com/insp3ctre/race-the-web\n\nysoserial https://github.com/GoSecure/ysoserial\n\nPHPGGC https://github.com/ambionics/phpggc\n\nCORStest https://github.com/RUB-NDS/CORStest\n\nretire-js https://github.com/RetireJS/retire.js\n\ngetsploit https://github.com/vulnersCom/getsploit\n\nFindsploit https://github.com/1N3/Findsploit\n\nbfac https://github.com/mazen160/bfac\n\nWPScan https://wpscan.org/\n\nCMSMap https://github.com/Dionach/CMSmap\n\nAmass https://github.com/OWASP/Amass\n\n\n************\n10 Awesome Firefox Extensions to Enhance Your Pentesting/Bug bounty Hunting.\n\n\n1. FoxyProxy Standard\nFoxyProxy is an advanced proxy management tool that completely replaces Firefox's limited proxying capabilities.\n\nUrl: https://t.co/QmDKn9616G \n\n\n2. Firefox Multi-Account Containers\nMulti-Account Containers lets you keep parts of your online life separated into color-coded tabs that preserve your privacy.\n\nContainers+authorize = broken access control bugs!\n\nUrl: https://t.co/ESdMxAuAyE \n\n\n3. PwnFox\nPwnFox is a Firefox/Burp extension that provides useful tools for your security audit.\nFeatures include:\n\u003e Single click BurpProxy\n\u003e Containers Profiles\n\u003e Toolbox injection\n\u003e Security header remover\n\nFoxyProxy + Containers = pwnfox\n\nUrl: https://t.co/mbosicOu8A \n\n4. HackTools\nHacktools is a web extension facilitating your web application penetration tests, it includes cheat sheets as well as all the tools used during a test such as XSS payloads, Reverse shells to test your web application.\n\nUrl: https://t.co/vCOUsGDVAt \n\n5. Wappalyzer\nIdentify technologies on websites\n\nUrl: https://t.co/jEPgAQzwm7 \n\n\n6. Shodan\nThe Shodan plugin tells you where the website is hosted (country, city), who owns the IP and what other services/ ports are open.\n\nUrl: https://t.co/v8FEe6skKN\n\n\n7. DotGit\nAn extension to check if .git is exposed in visited websites.\n\nURL: https://addons.mozilla.org/en-US/firefox/addon/dotgit/\n\n\n8. Open Multiple URLs\nOpens a list of URLs\n\nURL: https://addons.mozilla.org/en-US/firefox/addon/open-multiple-urls/\n\n\n9. Cookie-Editor\n\nCookie-Editor lets you efficiently create, edit and delete a cookie for the current tab. Perfect for developing, quickly testing, or even manually managing your cookies for your privacy.\n\nUrl: https://addons.mozilla.org/en-US/firefox/addon/cookie-editor/\n\n\n10. S3 Bucket List\nFinds Amazon S3 Buckets while browsing then records it in the add-on content.\n\n************\nCheat Sheets:\n\nXSS\nhttps://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/xss.md\nhttps://github.com/ismailtasdelen/xss-payload-list\n\nSQLi\nhttps://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/sqli.md\n\nSSRF\nhttps://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/ssrf.md\nhttps://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/Server%20Side%20Request%20Forgery\n\nCRLF\nhttps://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/crlf.md\nhttps://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/CRLF%20Injection\n\nCSV-Injection\nhttps://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/csv-injection.md\nhttps://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/CSV%20Injection\n\nCommand Injection\nhttps://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/Command%20Injection\n\nDirectory Traversal\nhttps://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/Directory%20Traversal\n\nLFI\nhttps://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/lfi.md\nhttps://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/File%20Inclusion\n\nXXE\nhttps://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/xxe.md\n\nOpen-Redirect\nhttps://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/open-redirect.md\n\nRCE\nhttps://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/rce.md\n\nCrypto\nhttps://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/crypto.md\n\nTemplate Injection\nhttps://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/template-injection.md\nhttps://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/Server%20Side%20Template%20Injection\n\nXSLT\nhttps://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/xslt.md\n\nContent Injection\nhttps://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/content-injection.md\n\nLDAP Injection\nhttps://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/LDAP%20Injection\n\nNoSQL Injection\nhttps://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/NoSQL%20Injection\n\nCSRF Injection\nhttps://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/CSRF%20Injection\n\nGraphQL Injection\nhttps://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/GraphQL%20Injection\n\nIDOR\nhttps://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/Insecure%20Direct%20Object%20References\n\nISCM\nhttps://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/Insecure%20Source%20Code%20Management\n\nLaTex Injection\nhttps://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/LaTeX%20Injection\n\nOAuth \nhttps://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/OAuth\n\nXPATH Injection\nhttps://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/XPATH%20Injection\n\nBypass Upload Tricky\nhttps://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/Upload%20Insecure%20Files\n\n*******\nAwesome Bug Bounty Tools\n\nhttps://github.com/vavkamil/awesome-bugbounty-tools\n\n*****\n\nLots of Write-ups: ( Reading them won't make you expert; Practice yourself.\n\n1)Hacking LG WebOS Smart TVs Using A Phone\nhttps://medium.com/geekculture/hacking-lg-webos-smart-tvs-using-a-phone-3fedba5d6f50\n\n2)Quick Heal Addressed Multiple Vulnerabilities in v19.0\nhttps://cyberworldmirror.com/quick-heal-addressed-multiple-vulnerabilities-in-version-19-update-now/\n\n3)Resetting Expired Passwords Remotely\nhttps://www.n00py.io/2021/09/resetting-expired-passwords-remotely/\n\n4)Windows Event Logging \u0026 Collection Guidance\nhttps://github.com/JSCU-NL/logging-essentials\n\n\n1)[Zomato Order] Insecure deep link leads to sensitive information disclosure\nhttps://hackerone.com/reports/532225\n\n2)CVE-2021-22946: Protocol downgrade required TLS bypassed\nhttps://hackerone.com/reports/1334111\n\n3)CVE-2021-22947: STARTTLS protocol injection via MITM\nhttps://hackerone.com/reports/1334763\n\n4)Guest Users can create issues for Sentry errors and track their status\nhttps://hackerone.com/reports/1117768\n\n5)$8,000 Bug Bounty Highlight: XSS to RCE in the Opera Browser\nhttps://blogs.opera.com/security/2021/09/8000-bug-bounty-highlight-xss-to-rce-in-the-opera-browser/\n\n6)Using CodeQL to detect client-side vulnerabilities in web applications\nhttps://raz0r.name/articles/using-codeql-to-detect-client-side-vulnerabilities-in-web-applications/\n\n7)HCRootkit / Sutersu Linux Rootkit Analysis\nhttps://www.lacework.com/blog/hcrootkit-sutersu-linux-rootkit-analysis/\n\n8)CVE-2021-40847 flaw in Netgear SOHO routers could allow remote code execution\nhttps://securityaffairs.co/wordpress/122486/hacking/cve-2021-40847-netgear-soho-routers.html\n\n9)Autodiscovering the Great Leak\nhttps://www.guardicore.com/labs/autodiscovering-the-great-leak/\n\n1)Used email confirmation link reveals the email address which is tied to it\nhttps://hackerone.com/reports/1128358\n\n2)CSV injection in the credentials export\nhttps://hackerone.com/reports/1131887\n\n3)Race condition allows sending multiple times feedback for the hacker\nhttps://hackerone.com/reports/1132171\n\n4)AWS WAF analysis: How it works and how to attack it\nhttps://thexssrat.medium.com/aws-waf-analysis-how-it-works-and-how-to-attack-it-8a456e561c74\n\n5)ffuf\nhttps://broad-frost-983.notion.site/ffuf-bd8180578bec4dd2986781e09df46cdc\n\n6)New Remote Code Execution Vulnerability In Nagios Can Compromise Complete Network\nhttps://cyberworkx.in/2021/09/22/new-remote-code-execution-vulnerability-in-nagios-can-compromise-complete-network/\n\n1)Privilege Escalation vulnerability in steam's Remote Play feature leads to\nthe arbitrary kernel-mode driver installation\nhttps://hackerone.com/reports/852091\n\n2)HTML Injection in Email\nhttps://hackerone.com/reports/1248585\n\n3)A fever Worth 750$- [Accessing Private Projects ]\nhttps://medium.com/@shakti.gtp/a-fever-worth-750-accessing-private-projects-d113c561311f\n\n4)Look Out For These Top 7 Things When Choosing A VPN Service\nhttps://cyberdessy.medium.com/look-out-for-these-top-7-things-when-choosing-a-vpn-service-801ed9a7b5ae\n\n5)OMIGOD - CVE-2021-38647\nhttps://www.alteredsecurity.com/post/omigod-cve-2021-38647\nhttps://github.com/AlteredSecurity/CVE-2021-38647\n\n1)MSSQL for Pentester: Hashing\nhttp://rajhackingarticles.blogspot.com/2021/09/mssql-for-pentester-hashing.html?utm_source=feedburner\u0026utm_medium=email\u0026utm_campaign=Feed%3A+HackingArticlesrajChandelsBlog+%28Hacking+Articles%7CRaj+Chandel%27s+Blog%29\n\n2)zero-click RCE vulnerability in Hikvision security cameras could lead to network compromise\nhttps://portswigger.net/daily-swig/zero-click-rce-vulnerability-in-hikvision-security-cameras-could-lead-to-network-compromise\n\n3)Ex-Apple Employee Exposes Apple M1 Chip’s Secrets\nhttps://analyticsindiamag.com/ex-apple-employee-exposes-apple-m1-chips-secrets/\n\n4)IoT Security (Internet of Things Security)\nhttps://latesthackingnews.com/2021/09/20/iot-security-internet-of-things-security/\n\n1) Text injection or content spoofing on forbidden page\nhttps://hackerone.com/reports/1310925\n\n2)Log Analysis using Splunk, Solving “Juicy Details TryHackMe”\nhttps://medium.com/@pandeydipanshu57/log-analysis-using-splunk-solving-juicy-details-tryhackme-92ea1b13eb0d\n\n3)You are entering the XSS game area\nhttps://www.hackingtruth.in/2020/08/you-are-entering-xss-game-area.html\n\n4)My Notes and What I Learned This Week!\nhttps://www.getrevue.co/profile/anugrahsr/issues/weekly-newsletter-of-anugrah-sr-issue-2-763659\n\n5)Google Hacking Dorks 2021\nhttps://hackersonlineclub.com/google-hacking/\n\n6)Email Header Analysis – Use Cases Including SPF, DKIM \u0026 DMARC\nhttps://www.socinvestigation.com/email-header-analysis-use-cases-including-spf-dkim-dmarc/\n\n7)QLOG provides enriched Event Logging for security-related events on Windows-based systems.\nhttps://github.com/threathunters-io/QLOG\n\n\n\n1)Admin access !!\nhttps://dewangpanchal98.medium.com/admin-access-799b50694965\n\n2)Investigating Scam/Phishing links campaign circulating in Whatsapp.\nhttps://kunaldas9.medium.com/investigating-scam-phishing-links-campaign-circulating-in-whatsapp-6bf89b2520eb\n\n3)A small change and things go in your hand: Story of a $250 bounty\nhttps://fardeen-ahmed.medium.com/a-small-change-and-things-go-in-your-hand-story-of-a-250-bounty-5ddc43c31463\n\n4)SIEM Monitoring using Wazuh by Francis Jeremiah\nhttps://hakin9.org/siem-monitoring-using-wazuh-by-francis-jeremiah/\n\n5)Complete Google Dorks List in 2020 For Ethical Hacking and Penetration Testing\nhttps://gbhackers.com/latest-google-dorks-list/\n\n6)Edward Snowden urges users to stop using ExpressVPN\nhttps://www.hackread.com/edward-snowden-stop-using-expressvpn/\n\n7)How To Protect Yourself From Malicious Websites While Online\nhttps://latesthackingnews.com/2021/09/18/how-to-protect-yourself-from-malicious-websites-while-online/\n\n8)Concealed Position is a local privilege escalation attack against Windows using\nthe concept of \"Bring Your Own Vulnerability\".\nhttps://github.com/jacob-baines/concealed_position\n\n9)A tool for generating multiple types of NTLMv2 hash theft files.\nhttps://github.com/Greenwolf/ntlm_theft\n\n10)client-side prototype pollution\nhttps://github.com/BlackFan/client-side-prototype-pollution\n\n\n\nThere's a lot more on the internet that won't be completed! Here I am giving more than enough for the complete beginners, after brushing up your hands on this, you will automatically start finding stuff!\n\nThanks, I hope this helps - Feel free to connect/contact.\n- Het Mehta ( twitter.com/hetmehtaa )\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fhetmehtaa%2Fbug-bounty-guide","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fhetmehtaa%2Fbug-bounty-guide","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fhetmehtaa%2Fbug-bounty-guide/lists"}