• Post category:StudyBullet-3
  • Reading time:5 mins read


Finally learn what to do after recon

What you will learn

Bug bounty hunting on a broad scope target

What to do after recon

Working with a VPS

Automating your workflow

Description

Who am i?

I am The XSS Rat, also known as Wesley. I created infosec tutorials and courses in a unique way. It’s my opinion that a teacher should be able to bring knowledge in an inspirational way but also make sure that knowledge is retained. This is a very unique challenge requiring out of the box thinking. My courses never just consist of a video or video + PDF only format. Courses should be interactive and not just boring reads of powerpoint slides.

Who is this course for?

Are you tired of seeing all these bug bounty methodologies that stop after the recon phase or give some general advice like look for vulnerable software on exploit-db? I am sick of it as well and in this course i guide a bug bounty hunter to a broad scope bug bounty hunter with a serious tool belt.

This course is made for hackers and developers who have the ultimate goal of automating their workflow.


Get Instant Notification of New Courses on our Telegram channel.


Contents

– A video and PDF covering every topic required in broad scope bug bounties

– 2 learning paths to facilitate all types of hackers. You can go one way and come back to the other later on

– A list of extras such as a list of tools and a better way to perform directory brute forcing

English
language

Content

The Intricacies of bug bounties
Introduction
The Intricacies of bug bounties
The Intricacies of bug bounties
Broad scope methodology
Broad scope methodology – Manual
Broad scope methodology – Automated
Processing subdomains
Subdomain enumeration
3 Subdomain flyover
3 Subdomain flyover
4 Exploiting open ports
4 Exploiting open ports
A Vulnerability scanning
A Vulnerability scanning
B Our attack strategt
B Our attack strategy
97 Exploit-db examples
97 Exploit-db examples
Cheat sheets and extra’s
Cheat sheets
Analysing javascript files
What the ffuf
Directory brute forcing
You are probably doing directory brute forcing wrong. Here’s why!
Subdomain flyover
Running scripts on a VPS