What Should You Do After Recon?!

แชร์
ฝัง
  • เผยแพร่เมื่อ 29 ม.ค. 2025

ความคิดเห็น • 82

  • @captain_crunchv1145
    @captain_crunchv1145 2 ปีที่แล้ว +41

    A nuclei video would be absolutely sick! I've been wanting to research more about it lately, just haven't found the time for it yet.

    • @NahamSec
      @NahamSec  2 ปีที่แล้ว +24

      Noted! Give me a few weeks to poke around :)

    • @deepanshu29
      @deepanshu29 2 ปีที่แล้ว

      @@NahamSec thanks so much

    • @siavashborzouei3304
      @siavashborzouei3304 7 หลายเดือนก่อน

      That's awesome

  • @crusader_
    @crusader_ 2 ปีที่แล้ว +22

    Everyone tells you to create custom nuclei template. On the other hand people on twitter and the nuclei template team is continuously creating templates as soon as new cves are coming out.
    A detailed video on nuclei automation would be really helpful clearing the confusions.

  • @emekaukwuani4119
    @emekaukwuani4119 ปีที่แล้ว +2

    I don't have a style of hacking as a beginner, And i will like you to be my mentor. I will be so happy to get that offer,

  • @TonyAsh-p3c
    @TonyAsh-p3c หลายเดือนก่อน

    Wow man. Cool. I like you. I will definitely enroll in your course soon.

  • @broomandmopmop
    @broomandmopmop ปีที่แล้ว

    on another note I started learning from you and st0k and tom hudson I will always be grateful for your content.

  • @KevinBeee
    @KevinBeee 2 ปีที่แล้ว +3

    Thank you for making this, as this is the question I'm kind of stuck on right now. I've gotten pretty good at recon and even started automated my process, but have yet to figure out how to use the pile of data I collect each time to land my first reportable bug.

    • @sveneFX
      @sveneFX 2 ปีที่แล้ว

      Dude I feel u, just where I am right now and it is frustrating

  • @broomandmopmop
    @broomandmopmop ปีที่แล้ว

    No that is 100% true Ben, I tried automation and found out I do better using some of my own tools I write to hunt but still use the automation only for loose recon. I now go hands on with the apps and all that as before I just used automation to clip low hanging fruit.

  • @bughunter3476
    @bughunter3476 2 ปีที่แล้ว +1

    we need a stream brother about what to do after a recon, maybe doing a hard ctf or a medium one. This is the video I've been waiting for long.

  • @oliviergaudel3838
    @oliviergaudel3838 ปีที่แล้ว +1

    Thanks Nahamsec. I start with automatic recon (subdomains, tech, parameters, js links, ...) ... after, manual recon, js file analyze. I avoid CMS. Thanks for the tips ... I will now use httpx to prioritize and I will avoid switching targets too quickly (30x on sso ...)

  • @worm_403
    @worm_403 8 หลายเดือนก่อน

    I'm watching all your videos and i've been learning a lot

  • @sveneFX
    @sveneFX 2 ปีที่แล้ว +3

    Thanks Ben! I spent the whole day today in the console while finding absolutely nothing. I think I am more comfortable in an application instead of the console so I will give it a shot :)
    I would love to see a video of you staring at an httpx output and telling us which assets you would go for and why. Cheers ✌️

  • @rahmat_qurishi
    @rahmat_qurishi 2 ปีที่แล้ว +1

    I love manual approach, anyway thanks for this awsome video❤

  • @tonybloodloss
    @tonybloodloss ปีที่แล้ว +1

    I like to google everything I've found via recon. It usually helps a lot and sometimes leads to some 4chan post with a complete instruction on how to exploit the cve related to the server's hardware/software. Sometimes it's literally like in Mr.Robot CTF(Wordpress website). So, sometimes recon replaces actual hacking, lol.

  • @legeekdad
    @legeekdad ปีที่แล้ว

    Hi! love you videos. Starting in Bug Bounty. Long time computer technician with lot a knowledge about network and computers and starting to learn linux and python.
    Did you finally make a video about nuclei? Couldn't find it! I learn a lot here, keep the good job!

  • @insertcoindesign4115
    @insertcoindesign4115 ปีที่แล้ว +1

    Hi bro I am learning bug bounty I am doing manual and automated pentesting but at the moment I didn't find any bug thank you for the video I will focus in httpx to get the codes

  • @binjaminsmoker4667
    @binjaminsmoker4667 ปีที่แล้ว

    amazing video we need more like this with practical example

  • @alexbenjamin-nl3gd
    @alexbenjamin-nl3gd 2 ปีที่แล้ว +2

    the community is asking for nuclei video , or some course that shows hot to use and build our templates 🙂

  • @vinayakpatil5214
    @vinayakpatil5214 ปีที่แล้ว

    need video on how your approach for utilising nuclei while hunting

  • @slumb3rx
    @slumb3rx ปีที่แล้ว

    Hey i can't find any video of you about how to approach to bug bounty first time, what is the process and the steps

  • @viking.gothi.304
    @viking.gothi.304 6 ชั่วโมงที่ผ่านมา

    my style of (bug bounty) hacking is to think in my head, going to start small, and then 8 hours later following one lead that is most definitely a vulnerability that is beyond my capabilities to deal with and i scrap the whole project.

  • @cadetpriyanshu6987
    @cadetpriyanshu6987 2 ปีที่แล้ว +1

    Awesome video🔥

  • @markfuentes3666
    @markfuentes3666 2 ปีที่แล้ว

    I'm still a noob, but I start by throwing the first few things that I found at the wall and see if anything sticks.

  • @AnthonyMcqueen1987
    @AnthonyMcqueen1987 ปีที่แล้ว +1

    Amass is all I need for recon and waybackurls as well server bugs is all I care about.

  • @chuxokeke9919
    @chuxokeke9919 ปีที่แล้ว

    Please can you use nuclei to solve hack the box so that it can be very practical

  • @omega7018
    @omega7018 2 ปีที่แล้ว +1

    A nuclei video would be amazing!

  • @denissteif4678
    @denissteif4678 2 ปีที่แล้ว

    you like to use make instead of nuclei can you post a link of make ?

  • @MFoster392
    @MFoster392 2 ปีที่แล้ว

    u da man bro, thank you for your videos :-)

  • @exploitjunkie
    @exploitjunkie ปีที่แล้ว +2

    I have tons and tons of questions. But , if you do a live bug hunting video , like from choosing a target to finding a bug, it would solve all of the questions I have. Please make this video, this will help me a lot. @NahamSec

  • @Rocks_roxks9
    @Rocks_roxks9 2 ปีที่แล้ว +1

    Fantastic video 🤩

    • @NahamSec
      @NahamSec  2 ปีที่แล้ว +1

      Thanks 🤗

  • @mjsblo80
    @mjsblo80 2 ปีที่แล้ว

    To manually brute some some admin pass like u mentioned at 10 min mark, yea..., i was that smoked only twice, and i regret that waste of time XD

  • @akashranjan-g
    @akashranjan-g 2 ปีที่แล้ว +1

    Great video sir..

  • @alexandrerodriguez8723
    @alexandrerodriguez8723 หลายเดือนก่อน

    My style of hacking is none :D I've yet to get my first bounty, but I'm getting close to it.

  • @oneplanet2198
    @oneplanet2198 2 ปีที่แล้ว +3

    KEYWORD: All of these comes with YEARS of experience, The more you do these the more you learn.

  • @brutexploiter
    @brutexploiter 2 ปีที่แล้ว

    Awesome!!! 🔥🔥🔥

  • @neon_Nomad
    @neon_Nomad 2 ปีที่แล้ว

    The 1st approach i hate it but i actually do both

  • @munyaradzitaurai
    @munyaradzitaurai 6 หลายเดือนก่อน

    NahamSec, i am new in tech industry.

  • @NahamSec
    @NahamSec  2 ปีที่แล้ว +6

    So.. what kind of hacker are you?

    • @rabbiyatabassum2278
      @rabbiyatabassum2278 2 ปีที่แล้ว +2

      Skid🤐🙃

    • @FaLkraydz
      @FaLkraydz 2 ปีที่แล้ว

      I'm not a hacker yet. But I WILL be (it's a fate). What would be the options included in this context? The same ones I learned when I was studying for Sec+ like:
      Script Kiddie (which I don't consider actually a hacker)
      Hacktivist
      Insider threat
      Nation State (the Elite Hackers like APT).
      Or would that be something more like White, Black and Grey hat?

    • @FaLkraydz
      @FaLkraydz 2 ปีที่แล้ว

      Oh I see what you're saying... I'm still watching the video. 😅

    • @G3msFinder
      @G3msFinder ปีที่แล้ว

      I'm following your path ❤

  • @mugunthanp2747
    @mugunthanp2747 2 ปีที่แล้ว

    make a live for what should you do after recon on real website

  • @hariharan1996
    @hariharan1996 2 ปีที่แล้ว +1

    Recon, Code Analysis, Payloads Repeat !

  • @yousufalirafi1630
    @yousufalirafi1630 2 ปีที่แล้ว +2

    After recon i Start manually hunt.

    • @NahamSec
      @NahamSec  2 ปีที่แล้ว

      What does that include?

  • @CloudSec101
    @CloudSec101 2 ปีที่แล้ว

    nuclei from basic installation to advance usage.

  • @mayhem1994
    @mayhem1994 ปีที่แล้ว

    I made this sick tool when i wad like 26 but it would take hours to scan

    • @Nejtak853
      @Nejtak853 8 หลายเดือนก่อน

      How old are you now?

    • @mayhem1994
      @mayhem1994 8 หลายเดือนก่อน

      @@Nejtak853 30

  • @arianahmadi1227
    @arianahmadi1227 ปีที่แล้ว

    you are great

  • @norsalam9302
    @norsalam9302 2 ปีที่แล้ว

    Thank you for sharing

    • @NahamSec
      @NahamSec  2 ปีที่แล้ว +1

      Thanks for watching!

  • @techofch
    @techofch 2 ปีที่แล้ว

    Fuzzing :)

  • @noureldinehab2686
    @noureldinehab2686 2 ปีที่แล้ว +1

    💙

  • @bewithoutfear1361
    @bewithoutfear1361 2 ปีที่แล้ว +1

    Recon is useless for us(beginners),we need to get good on manual testing,if you look at the some of the guys who good at sql or xss,they really good at testing these variations,so thats why little bit of information or 1 more subdomain important for them,get good on testing and understand everything otherwise you will look at the screen with a lot of useless information in your hand.

    • @axelvirtus2514
      @axelvirtus2514 2 ปีที่แล้ว

      Ye most beginners use automation tools,so as 99999999 mil other beginners.

  • @mrblackhat8088
    @mrblackhat8088 2 ปีที่แล้ว

    nice

  • @j4ck_d4niels
    @j4ck_d4niels ปีที่แล้ว

    plz make nuclei :)

  • @ananthakrishnaner9807
    @ananthakrishnaner9807 2 ปีที่แล้ว

    Need a nuclei video

  • @pubgfantasy9010
    @pubgfantasy9010 ปีที่แล้ว

  • @negus8810
    @negus8810 2 ปีที่แล้ว

    I live in burp

  • @ahmedelhady335
    @ahmedelhady335 ปีที่แล้ว

    full nuclei video

  • @iqyou-gw4kd
    @iqyou-gw4kd 2 ปีที่แล้ว

    browser site

  • @leghdaf
    @leghdaf 10 หลายเดือนก่อน

    Terminal Hacking 🎉

  • @neon_Nomad
    @neon_Nomad 2 ปีที่แล้ว

    Nap?

  • @screamy_619
    @screamy_619 ปีที่แล้ว

    How to contact you sir

  • @janekmachnicki2593
    @janekmachnicki2593 ปีที่แล้ว

    Thanks nathamsec .I love terminal and im old style Linux lover

  • @dollaaaar
    @dollaaaar ปีที่แล้ว

    thanks

  • @mereemail8352
    @mereemail8352 ปีที่แล้ว

    Please make nuclei video