🤬
183 lines | UTF-8 | 16 KB

Resources-for-Beginner-Bug-Bounty-Hunters

This page is designated to hosts blog posts on particular vulnerability and techniques that have led to a bounty. If you would like to learn more about specific vulnerability types, please visit Vulnerability Types!

NahamSec's Favorite Blogs & Reading Material

Reddit

Blog posts & Disclosed Reports 📝

A collection of Blog Posts ordered by Vulnerability Types


Starting out & Tips

XSS

You can find a ton of awesome XSS reports by searching through the HackerOne Hacktivity Page (https://hackerone.com/hacktivity?querystring=XSS). Here are some more complex and some of my favorite XSS related blog posts:

DOM XSS

Stored XSS

SSRF

Token / Authentication

SQL Injection

HTTP Desync

File Upload

IDOR

GraphQL

RCE

Automation & Recon

Smart Contracts

API

Misc

Mobile

iOS

Android


back to Intro Page

Please wait...
Page is in error, reload to recover