Bug Bounty
10.6K subscribers
369 photos
3 videos
46 files
426 links
Bugbounty Resources • Tips • Security Zines • Writeups • Vulnerability Update • Notes • Mindmaps • Cheatsheets • Checklists • Article / Blogs • PDFs • ebooks •
Download Telegram
Most Common TCP/UDP Port in Networking
#bugbounty #networking #infosec

Download : https://miro.medium.com/max/720/1*jIxgQnfS9X2dVDNKTrzVJg.png

See : ☝🏻
5👍2😱1
Every Linux Networking Tool I Know 💢
By @b0rk

PDF : https://wizardzines.com/networking-tools-poster.pdf

#bugbounty #infosec

See :☝🏻
👍3🔥2👏1
🥰85👍3👏3
TOP OPEN SOURCE INTELLIGENCE TOOLS USED IN CYBERSECURITY

OSINT Framework
CheckUserNames
HavelbeenPwned
BeenVerified
Censys
BuiltWith
Google Dorks
Maltego
Recon-Ng
theHarvester
Shodan
Jigsaw
SpiderFoot
Creepy
Nmap
WebShag
OpenVAS
Fierce
Unicornscan
Foca
ZoomEye
Spyse
IVRE
Metagoofil
Exiftool

#bugbounty #infosec
🔥7👏2
👍4🔥2😁1
Account takeover with JSON 💥

{"password":"1234",token="123"} ->200 0K

{"password":"1234","email":"victm@gmail.com","token="123"} ->200 0K

Hidden email add

#bugbounty #infosec #bugbountytips
👍9🔥2👌1
Authentication Checklist😀
#bugbounty #Infosec
🔥4👍1
👍3🎉1
Cross Origin Resource Sharing (CORS)🔥

Include :
Blogs / Articles , Tools and Mind Maps

Link :
https://gowthams.gitbook.io/bughunter-handbook/list-of-vulnerabilities-bugs/cors
🤩4👏2👍1
PWK – Penetration Testing With Kali Linux Penetration Testing With Kali Linux . This ebook teaches not only the skills, but also the mindset required for successful penetration testing.

It's Equivalent to bible in Penetration Testing Field

Link : https://abhishekmeena.gumroad.com/l/oscp
👍5❤‍🔥1🔥1👏1
☝🏻 USE DISCOUNT CODE : Awesome
🔥7🤮41🍾1
🏹AWS S3 Bucket Tools 💢

s3brute - s3 brute force tool

s3-bucket-finder - Find aws s3 buckets and extract datas.

bucket-stream - Find interesting Amazon S3 Buckets by watching certificate transparency logs.

slurp - Enumerate S3 buckets via certstream, domain, or keywords.

lazys3 - A Ruby script to bruteforce for AWS s3 buckets using different permutations.

cred_scanner - A simple file-based scanner to look for potential AWS access and secret keys in files

DumpsterDiver - A tool used to analyze big volumes of various file types in search of harcoded secrets like keys (AWS Access Key, Azuer Share Key or SSH keys) or passwords.

S3Scanner - Scan for open AWS S3 buckets and dump the contents
👍11👏42🔥2
👍51
Best Time to Post 🤗 ( with Respect to IST )
Anonymous Poll
29%
Early Morning
18%
Morning
15%
Afternoon
28%
Night
10%
Late Night
4👏2👍1😁1
Bug Bounty pinned a photo
Security headers 🔥

Learn more about headers that can keep your site safe and quickly look up the most important details.

Link : https://web.dev/security-headers/

#bugbounty #infosec
🔥5👍2