How to Bug Bounty in 2023

Ғылым және технология

Purchase my Bug Bounty Course here 👉🏼 bugbounty.nahamsec.training
Buy Me Coffee:
www.buymeacoffee.com/nahamsec
Live Every Sunday on Twitch:
/ nahamsec
Free $100 DigitalOcean Credit:
m.do.co/c/3236319b9d0b
Follow me on social media:
/ nahamsec
/ nahamsec
twitch.com/nahamsec
hackerone.com/nahamsec
/ nahamsec1
Github:
github.com/nahamsec
Nahamsec's Discord:
discordapp.com/invite/ucCz7uh
#offensivesecurity #redteam #bugbounty #hackerone #hackers #hacking #infosec #hackingtutorial #owasp #educational

Пікірлер: 135

  • @cguzmanvisuals
    @cguzmanvisuals Жыл бұрын

    #Nahomies

  • @donnieb390
    @donnieb390 Жыл бұрын

    Great video, the only mishap is the volume is very low for some reason. Thanks for the content!

  • @tmac9208
    @tmac92088 ай бұрын

    When you said tooling up, automation, etc makes you lazy..on point. This is about learning what those tools and automation are doing in the beginning and applying it to one attack. Not defending against constant attacks where you need those tools/automation to hope to keep up. Thanks for the content to get me motivated this morning.

  • @casualcaspero
    @casualcaspero Жыл бұрын

    This year fu*ed me up already. At least cybersec learning going well thx to all content creators like you

  • @NahamSec

    @NahamSec

    Жыл бұрын

    You got this!

  • @luminoustech6477

    @luminoustech6477

    Жыл бұрын

    I agree

  • @flip69zz
    @flip69zz Жыл бұрын

    you the man thanks for all the advice always great learning from the greats been following your work for awhile.

  • @alexandersoltesz8103
    @alexandersoltesz8103 Жыл бұрын

    Thank you, I'm just starting out and my ever-lasting wonder is whether I should focus on a vulnerability type and master it or pick a target and try as many vulnerabilities as I can. As I gathered these are the two types of methodologies combating each other when discussing how to start out. Both have advantages I think. Picking a vuln type has the advantage that you don't get confused with too much information whereas picking a target takes the load off having to browse in targets all the time or do more recon. But since i've just finished creating my first and own recon script (which, for the most part, is the automation of your recon video with tomnomnom by the way, haha), I think I'm good to go exactly the way you're recommending and it's very reassuring that someone like you - I've been following your videos for long - supports a certain type of starting point that you think is the best. :) I would be eager to see more content like this, thanks for your contribution to the rookie community!!

  • @prabakarj4797
    @prabakarj4797 Жыл бұрын

    A perfect glimpse on Bug Bounty ! Keep uploading more stuff 👍🏻

  • @alfredzo
    @alfredzo3 ай бұрын

    I remember following you when I was QA Engineer in 2014 alongside Jason Haddix and many others. I will have to agree that Bug Bounty has evolved into so much more since then

  • @pr0tagnist
    @pr0tagnist Жыл бұрын

    I love this bro! I'm currently working on the eJPT but after that I want to get into web hacking and bug bounty. It's something I haven't really touched and know I need some dedicated study and time to do. I got Vickie Li's book and want to work through Web Security Academy and then try out some VDP's on the platforms. Would you recommend choosing one program and trying to go really deep on that? Thanks for all the great content dude! Peace.

  • @candogan3242
    @candogan3242 Жыл бұрын

    Thank you Ben. I was registered bugcrowd today for starting bug bounty about 12-14 hours ago and this video show up, again thank you man appreciate

  • @candogan3242

    @candogan3242

    Жыл бұрын

    @@ptrcan4302 sağolasın, değer ama sevmen lazım sevmiyorsan çekilecek meslek değil

  • @ptrcan4302

    @ptrcan4302

    Жыл бұрын

    @@candogan3242 haklısın hocam seviyorum ama benimki bir yan uğraş, hobi gibi. Kolay gelsin :)

  • @tjoleary8738
    @tjoleary8738 Жыл бұрын

    Awesome video...thank you Nahamsec...this has inspired me!

  • @adyp487
    @adyp487 Жыл бұрын

    Great advice! Thanks Ben! I also have some light OCD so I had to comment since this is the 100th comment here :D

  • @CYBIRD0fficial
    @CYBIRD0fficial Жыл бұрын

    Great content from great hacker like you always help everyone

  • @jren2956
    @jren2956 Жыл бұрын

    juicy stuff as always... thank you sir!!!

  • @talhaazeem3250
    @talhaazeem325011 ай бұрын

    Appreciate the efforts and knowledge shared!!!

  • @ductive
    @ductive Жыл бұрын

    Incredible video, Thanks a lot.

  • @LoneStarBassPursuit
    @LoneStarBassPursuit Жыл бұрын

    🔥 content man. Thank you for sharing.

  • @claudiogiura1881
    @claudiogiura1881 Жыл бұрын

    Thx for sharing Ben !!!

  • @no1ne410
    @no1ne410 Жыл бұрын

    after 1 year i will return to this vidéo and remember my start thnx alot ❣❤‍🔥

  • @AyushKumar-hv2ww
    @AyushKumar-hv2ww Жыл бұрын

    Very nice video Thanks for sharing 🙏❤️

  • @MFoster392
    @MFoster392 Жыл бұрын

    This channel is awesome man :-)

  • @offlife77
    @offlife77 Жыл бұрын

    great one Naham!

  • @sharma7ay
    @sharma7ay Жыл бұрын

    Great video boss 👍

  • @An0Gt
    @An0Gt Жыл бұрын

    Great man🔥🔥

  • @raghu600
    @raghu600 Жыл бұрын

    This guy have helped me a lot in paying my engineering college fees Respect to you bruh

  • @youtubeur3073

    @youtubeur3073

    Жыл бұрын

    How?

  • @Hamad-re9vr

    @Hamad-re9vr

    Жыл бұрын

    Really did u earn some cash bro ?

  • @thenextbigthing1393

    @thenextbigthing1393

    Жыл бұрын

    😂😂 did you pay or just change the data?

  • @lol-hz9mc
    @lol-hz9mc Жыл бұрын

    Thank You for the content ben!!

  • @OneMinExplains
    @OneMinExplains Жыл бұрын

    Always best✨

  • @rahmat_qurishi
    @rahmat_qurishi Жыл бұрын

    Nice video, Thanks for sharing🙂

  • @NahamSec

    @NahamSec

    Жыл бұрын

    Thanks for watching!

  • @sayturestorver4334
    @sayturestorver4334 Жыл бұрын

    Thank you for the amazing video ! I've always had an issue with the mentorship part..I can't seem to figure out how to collaborate and I wish I could change that

  • @beelostlove

    @beelostlove

    Жыл бұрын

    No comments on my Facebook

  • @lokendrasingh1802
    @lokendrasingh1802 Жыл бұрын

    Thanks for making this video

  • @arjunn7683
    @arjunn7683 Жыл бұрын

    🙏 Dhanyawaad

  • @gonella
    @gonella Жыл бұрын

    Awesome. Thanks!!!

  • @headlights-go-up
    @headlights-go-up Жыл бұрын

    Thank you for this. I'm a bit late to the party lol. Early 30s is a big gap compared to fresh out of college people.

  • @SirPali

    @SirPali

    Жыл бұрын

    On the other hand you have a lot more experience in actually learning stuff "on the job". College is great and all, but real life experience is more valuable, coming from a fellow early 30s guy ;-)

  • @sveneFX

    @sveneFX

    Жыл бұрын

    End 30 guy here and only doing this for a few month so no problem ✌️

  • @josiahculling

    @josiahculling

    Жыл бұрын

    Early 30s, just getting started. You ain't alone

  • @andrew5157

    @andrew5157

    Жыл бұрын

    38 here plus at our age now we are more mature an serious about getting stuff done past all the partying an more goal driven

  • @Cumander1

    @Cumander1

    Жыл бұрын

    All the love to you guys❤❤❤ I'm 24 I'm just starting out too much love all the best.

  • @user-gq2rq8du1y
    @user-gq2rq8du1yАй бұрын

    You are the best!!

  • @chaospixxie
    @chaospixxie Жыл бұрын

    Awesome video! This kind of content is really helpful. I never knew working through hacker 101 content would result in an invite. Keep up the good work!

  • @simplifiedknowledgehub
    @simplifiedknowledgehub Жыл бұрын

    Sir I am learning more about bug bounties but I have a problem with some money and also financial problems. But I also have the same dreams as you. But I am stuck 😢 Love your video and also I started from your video 😢

  • @Dailybhagwaangeet

    @Dailybhagwaangeet

    Жыл бұрын

    Me too bro😢😢

  • @sachalraja1054
    @sachalraja105410 ай бұрын

    Great Content

  • @aakashkokate3014
    @aakashkokate3014 Жыл бұрын

    Great video

  • @garretonaban8533
    @garretonaban8533 Жыл бұрын

    I'm just now getting into bug hunting.. is there a list of "what not to do"?

  • @Diirn
    @Diirn3 ай бұрын

    Great video with great advice! What do you think about HTB Bug Bounty Course? Is it worth doing?

  • @amoh96
    @amoh96 Жыл бұрын

    this my roadmap as background to start bug bounty , is it good boss #NahamSec - HTML & (Basics) & JavaScript (Focus) - NodeJs (Focus) - Web Basics(HTTP & Protocols ....) + Network+ From yt - Practice Portswiger & free labs & study docker - Owsap Top 10 - Kali linux basics

  • @stanleyruheza
    @stanleyruheza Жыл бұрын

    If anyone is looking for someonw to learn with then am here. Zero bounty yet, but am constantly learning.

  • @gamingrampage2898

    @gamingrampage2898

    Жыл бұрын

    Bro i am also can we both do it together

  • @stanleyruheza

    @stanleyruheza

    Жыл бұрын

    @@gamingrampage2898 Where can i contact you? share your contact just any

  • @whoami8105

    @whoami8105

    Жыл бұрын

    ​@@stanleyruheza his id is akshdeep211

  • @jagjitsinghkainth5036

    @jagjitsinghkainth5036

    Жыл бұрын

    @@stanleyruheza his id is akshdeep211

  • @SophiaEnax

    @SophiaEnax

    Жыл бұрын

    Hey Stanley, I’m looking for someone to learn with if you’re still open

  • @shazam4444asd
    @shazam4444asd Жыл бұрын

    Hello, I entered the bug bounty at the beginner level. My goal is p1, p2 is not a high amount of explanations, p4 is a joyful event for me, even if I win small vulnerabilities. bug bounty p4. What do you recommend to be successful?

  • @andrew5157
    @andrew5157 Жыл бұрын

    im actually just starting to get my degree in computer science in cyber security so if i can get a head start an learn anything an everything can only benifit me.

  • @IvanPopov-pg5yp
    @IvanPopov-pg5yp Жыл бұрын

    What do you think about CBBH from Hack the box?

  • @ahmedkasmi7194
    @ahmedkasmi7194 Жыл бұрын

    Thanks GOAT

  • @hacken-lernen
    @hacken-lernen Жыл бұрын

    How do I decide if my precious invite to a private bb program is worth the program? and what programs should I better skip?

  • @saadadil6112
    @saadadil6112 Жыл бұрын

    great video

  • @amirhussainbalti
    @amirhussainbalti Жыл бұрын

    Please make a playlist for starter

  • @HassanRaza-ek3mv
    @HassanRaza-ek3mv Жыл бұрын

    Thank you for the advises. By saying no tools, does it include burpsuite as well?

  • @lmfao69420

    @lmfao69420

    6 ай бұрын

    @mikhail1792 I do all my web app testing by sending curl requests 😎

  • @xianew2408
    @xianew2408 Жыл бұрын

    Thanks bro I spent three years hacking, but I only found one acceptable bug, 20 duplicate, and 5 informatives. I'm really bored and desperate. I need advice from you. What should I do?

  • @wanishoaib_
    @wanishoaib_ Жыл бұрын

    I love u man, you are osm!!

  • @aow6813
    @aow6813 Жыл бұрын

    thanks man

  • @slickwilly6868
    @slickwilly6868 Жыл бұрын

    To learn bug bounty & ethical hacking, should programming, networking & Operating systems be the first things you learn?

  • @dimitrismanos1162
    @dimitrismanos1162 Жыл бұрын

    came here from your live

  • @089dhruv5
    @089dhruv5 Жыл бұрын

    where can i buy your course from nahm?

  • @thedarkluminary
    @thedarkluminary5 ай бұрын

    hey man your video is really cool a little tip is get a better mic plz.

  • @duyancrypto6921
    @duyancrypto6921 Жыл бұрын

    do m1 max good for bug bounty, please nahamsec reply

  • @kdusha-
    @kdusha- Жыл бұрын

    tnx men

  • @rahulroy3697
    @rahulroy3697 Жыл бұрын

    nice video

  • @RohinJain
    @RohinJain Жыл бұрын

    10:18 words🙌🏻

  • @cadetpriyanshu6987
    @cadetpriyanshu6987 Жыл бұрын

    🔥🔥

  • @NahamSec

    @NahamSec

    Жыл бұрын

  • @Tomandjerrycorner
    @Tomandjerrycorner Жыл бұрын

    I already started it 3 years ago by my master but now I'm not doing hunting no pccc 😭😭 i got the knowledge but no pc 😭

  • @alighasemnejad5930
    @alighasemnejad5930 Жыл бұрын

    Great

  • @garretonaban8533
    @garretonaban8533 Жыл бұрын

    Is there a list of "what not to do"? Some of the terms seem like they'll charge you criminally (AT&T) if you don't follow the t&c perfectly..

  • @mahmoudadel197

    @mahmoudadel197

    Жыл бұрын

    Yes, most programs tell what not to do in their policy you can also look for safe harbor programs which will not take any legal action if you did something wrong accidentally

  • @garretonaban8533

    @garretonaban8533

    Жыл бұрын

    @@mahmoudadel197 hey, thanks, Mahmoud! I appreciate that. I started reading at&t. That one threw me off. All those others make perfect sense. Ty for term " safe harbor".

  • @goheat007
    @goheat00711 ай бұрын

    can i message you personally? fresh grad and i want to turn this into a full-time job or learn bug bounty hunting and find a job in cyber security as a penetration tester. I have a lot of questions...thanks

  • @daljeetbhati8353
    @daljeetbhati8353 Жыл бұрын

    ❤❤❤❤❤❤

  • @mdashifuzzamanshawon
    @mdashifuzzamanshawon Жыл бұрын

    Awesome...

  • @NahamSec

    @NahamSec

    Жыл бұрын

    Thanks! 🙏

  • @mahbobalam4430
    @mahbobalam4430 Жыл бұрын

    😍

  • @beelostlove
    @beelostlove Жыл бұрын

    I would rather report hacks as long as you use them

  • @a4aladdin428
    @a4aladdin428 Жыл бұрын

    💝

  • @alirezashayegan8260
    @alirezashayegan8260 Жыл бұрын

    🙏🙏

  • @user-pp1fg7sk2l
    @user-pp1fg7sk2l5 ай бұрын

    👍

  • @youforgotthelinkinthedescr6798
    @youforgotthelinkinthedescr679811 ай бұрын

    "I'll link their channel in the description" usually means they will not.

  • @UBNA671
    @UBNA671 Жыл бұрын

    You need to do a guided training step by step on how to do stuff

  • @user-zy2fq5nl3j

    @user-zy2fq5nl3j

    Жыл бұрын

    I don't think it works like that my friend

  • @lmfao69420

    @lmfao69420

    6 ай бұрын

    that's not how hacking works fren

  • @UBNA671

    @UBNA671

    6 ай бұрын

    @@lmfao69420 yeah im now realizing you cant directly show exploits and sensitive information but he cant he use metasploitable

  • @Dext3r-Hwqkwtom
    @Dext3r-Hwqkwtom Жыл бұрын

    I just found my first vuln sql injection triaged as High 8.2

  • @NahamSec

    @NahamSec

    Жыл бұрын

    Amazing!!

  • @lmfao69420

    @lmfao69420

    8 ай бұрын

    ayyyyy

  • @truckinguy5050
    @truckinguy5050 Жыл бұрын

    Audio is messed u0

  • @ismailachabi8627
    @ismailachabi8627 Жыл бұрын

    What about the basics

  • @bohidorshon
    @bohidorshon Жыл бұрын

    You promised to update your course on Udemy

  • @NahamSec

    @NahamSec

    Жыл бұрын

    Still keeping my promise. Soon :)

  • @0xprishaa
    @0xprishaa Жыл бұрын

    Okay

  • @lmfao69420

    @lmfao69420

    8 ай бұрын

    lol?

  • @mertbingol0
    @mertbingol0 Жыл бұрын

    Hello from MDISEC

  • @Linnitup7755
    @Linnitup7755 Жыл бұрын

    Voice volume seems a little low

  • @NahamSec

    @NahamSec

    Жыл бұрын

    Had a small issue with audio with this one, but the video was too good to not publish it.

  • @a.k.infinity1502
    @a.k.infinity150211 ай бұрын

    Volume super low

  • @antwarior
    @antwarior Жыл бұрын

    your audio sucked bad on this but great video, thanks

  • @securedsolutions6277

    @securedsolutions6277

    Жыл бұрын

    I thought for a sec it was my earphones

  • @savebyXAU
    @savebyXAU Жыл бұрын

    Third

  • @NahamSec

    @NahamSec

    Жыл бұрын

    First

  • @ManagedMadness
    @ManagedMadness Жыл бұрын

    #dontpwnic

  • @CSBO-SamGiftsonraj
    @CSBO-SamGiftsonraj Жыл бұрын

    Your voice In your videos are very low man

  • @3nduser
    @3nduser Жыл бұрын

    audio sucked on this one. I wanted to buy your udemy course but the video was crappy.

  • @jruok
    @jruok Жыл бұрын

    He is so cute I can't focus 🙄

  • @ChillTamizha
    @ChillTamizha Жыл бұрын

    Make a videos in a little more interesting way

  • @richowens5254
    @richowens52549 ай бұрын

    Does that mean no nmap?? Tools to me means nmap, nikto, ffuf, amass, subfinder and the like. Automation i thought would be like nuclei, burp, msfconsole....

  • @siddharthchhetry4218
    @siddharthchhetry4218 Жыл бұрын

    I watch similar video by @stok in 2021 when I started my bug bounties journey.

  • @Jdbdjdbdkdbdjjd
    @Jdbdjdbdkdbdjjd Жыл бұрын

    Don't use music

  • @abhinavkumar8052
    @abhinavkumar8052 Жыл бұрын

    Great video

  • @NahamSec

    @NahamSec

    Жыл бұрын

    Glad you enjoyed it

  • @akhilesh5896
    @akhilesh589611 ай бұрын

    #Nahomies

Келесі