Bug Bounty - An Advanced Guide to Finding Good Bugs

Member
Joined
October 2, 2024
Messages
10
Reaction score
1
Points
3
n
Screenshot-2023-12-14-18-22-45.png

Bug bounties are evolving year after year and thousands of infosec enthuasiasts are looking to join the boat. Having a great place on that boat requires dedication and investing a great amount of time of work. In fact, there are multiple types of vulnerabilities and mastering the most important of these can be a game changer. In this class, attendees will learn the "how" and "why" of vulnerabilities they are already aware of instead of sticking to what the vulnerability is in general. This class will be based on real-life scenarios to show how to think out of the box in different scenarios to bring in the maximum impact.

During the session, students will have hands on excercises with:
  1. SQL Injection
  2. XXE
  3. SSRF
  4. RECON out of the box
  5. RCE
  6. SSTI
  7. Directory Traversal
  8. Access Control Vulns
  9. Authentication Issues
  10. Cache Poisoning
  11. Info Disclosure
  12. More subjects to be treated
Who Should Attend This Course
This course is intended for students with an interest in bug bounties, web vulnerability discovering and exploitation, or general infosec enthusiast who whish to know more about the side of bug bounties. Students should be comfortable with the type of vulnerabilities mentionned because we are not going to cover from a totaly beginner's side.

Key Takeaways
  1. Students will learn in-depth about a vulnerability exploitation
  2. Students will be able to approach a target effectively
  3. Students will learn thinking out of the box in different scenarios

Who this course is for:

  • Bug bounty hunters and anyone interested into web application security
  • Pentesters
  • Hackers



    [Hidden content]
nice
 
Member
Joined
November 22, 2024
Messages
45
Reaction score
3
Points
8
Screenshot-2023-12-14-18-22-45.png

Bug bounties are evolving year after year and thousands of infosec enthuasiasts are looking to join the boat. Having a great place on that boat requires dedication and investing a great amount of time of work. In fact, there are multiple types of vulnerabilities and mastering the most important of these can be a game changer. In this class, attendees will learn the "how" and "why" of vulnerabilities they are already aware of instead of sticking to what the vulnerability is in general. This class will be based on real-life scenarios to show how to think out of the box in different scenarios to bring in the maximum impact.

During the session, students will have hands on excercises with:
  1. SQL Injection
  2. XXE
  3. SSRF
  4. RECON out of the box
  5. RCE
  6. SSTI
  7. Directory Traversal
  8. Access Control Vulns
  9. Authentication Issues
  10. Cache Poisoning
  11. Info Disclosure
  12. More subjects to be treated
Who Should Attend This Course
This course is intended for students with an interest in bug bounties, web vulnerability discovering and exploitation, or general infosec enthusiast who whish to know more about the side of bug bounties. Students should be comfortable with the type of vulnerabilities mentionned because we are not going to cover from a totaly beginner's side.

Key Takeaways
  1. Students will learn in-depth about a vulnerability exploitation
  2. Students will be able to approach a target effectively
  3. Students will learn thinking out of the box in different scenarios

Who this course is for:

  • Bug bounty hunters and anyone interested into web application security
  • Pentesters
  • Hackers



    [Hidden content]
cjv
 
  • Tags
    advanced bug bounty learn students vulnerabilities
  • Top