Finding Your First Bug

แชร์
ฝัง
  • เผยแพร่เมื่อ 22 ก.ค. 2024
  • 📚 Purchase my Bug Bounty Course here 👉🏼 bugbounty.nahamsec.training
    💵 Support the Channel:
    You can support the channel by becoming a member and get access exclusive content, behind the scenes, live hacking session and more!
    ☕️ Buy Me Coffee:
    www.buymeacoffee.com/nahamsec
    JOIN DISCORD:
    discordapp.com/invite/ucCz7uh
    🆓 🆓 🆓 $200 DigitalOcean Credit:
    m.do.co/c/3236319b9d0b
    💬 Social Media
    - / nahamsec
    - / nahamsec
    - twitch.com/nahamsec
    - / nahamsec1
    #bugbounty #ethicalhacking #infosec #cybersecurity #redteam #webapp

ความคิดเห็น • 105

  • @AlecMaly
    @AlecMaly ปีที่แล้ว +84

    Truth. Even if you're in heavy study mode, just allocate a few hours a week to hunt with the goal of building out your tooling, even if you find nothing your methodology will be improving and you'll for sure get a hit someday if you don't give up.
    Some of these bugs aren't even complex, they just chain basic bugs together for big impact.
    People are probably more capable than they think.

  • @gettingComputey
    @gettingComputey ปีที่แล้ว +7

    Thank you for the encouragement on this. I'm exactly at this stage. Lots of learning, but just started trying for bounties a couple of weeks ago. Reported something that turned out to be n/a, but was worth the practice at making a report. Some people have been posting about how most make less than minimum wage on bug bounty when you do the hour math, so it's nice to see your name on the top 5 on Bugcrowd + these vids and know it's not unlike how it works with DJing. Thousands try at being dope ass DJs, but only a few will do the work instead of depending entirely on automation.

  • @jacobmain7814
    @jacobmain7814 ปีที่แล้ว +7

    You compared it to learning a game and idk why, maybe because every other person makes it all seem so technical, but I started connecting my learning to gaming and have actually improved my process of trying to find bugs in websites significantly. Thank you for the motivating video!

  • @jmcsmtp
    @jmcsmtp ปีที่แล้ว +1

    I cannot thank you enough. Truly the best advice I could have received at this stage in my progression. Your advice almost gave me permission to stop the cycle and just start really putting into practice all that I have learned.

  • @learn-with-noob-007
    @learn-with-noob-007 ปีที่แล้ว +55

    I reported a oracle EBS exploit and get the complete shell access to inside. Reported it. Just because your motivation ❤

    • @NahamSec
      @NahamSec  ปีที่แล้ว +8

      💪🏼💪🏼💪🏼💪🏼💪🏼

    • @AronSzilagyi-wf9yq
      @AronSzilagyi-wf9yq ปีที่แล้ว +2

      Hey I need some help with some social media stuff. Trying to figure out who’s behind some fake accounts that’s been bugging my family and business. Where do I look ? Thanks

    • @learn-with-noob-007
      @learn-with-noob-007 ปีที่แล้ว +2

      @@NahamSec ❤️❤️🤟🏻

  • @mhdshl8502
    @mhdshl8502 7 หลายเดือนก่อน

    i have never subscribed to a channel this quick. you are truly inspiring.

  • @RivuDonTech
    @RivuDonTech ปีที่แล้ว +1

    Thank you for providing such great content, This video was much needed. I often study alot , have done plenty of rooms as well, now i need to just start doing it. Thanks alot keep up the good work looking forward to seeing more, Until next time !

  • @chaospixxie
    @chaospixxie ปีที่แล้ว +4

    Oh I feel so called out 🤣 but you're right. Thanks for saying it out loud. I'm saving this video for when I get stuck on the hamster wheel of study.

  • @V.WalkingTours
    @V.WalkingTours 2 หลายเดือนก่อน

    I started to study pentesting 3 weeks ago and this was my idea, now I will put it into practice! Thank you!

  • @JohnnyARants
    @JohnnyARants 2 หลายเดือนก่อน +1

    I feel like I’m learning this soo slowly it’s frustrating. The past year this is all that’s been on my mind. I swear when I learn this I’m going to create my own internship program

  • @umeshpaytode
    @umeshpaytode ปีที่แล้ว +7

    Far Better content than the most of the content creators in infosec community!!!!!! ThankYou Ben❤

    • @NahamSec
      @NahamSec  ปีที่แล้ว

      Thanks for watching!

  • @CybersecurityProjects
    @CybersecurityProjects 7 หลายเดือนก่อน

    thank you so much for this true video i have been learning and consuming a lot of content without getting my hands dirty i found myself making no progress. this year i have put hands-on learning and applied everything and i found that i am making progress

  • @ahmedezealdean6189
    @ahmedezealdean6189 หลายเดือนก่อน

    every time i feel that i am getting lazy or feeling like giving up, i watch nahamsec videos❤❤❤

  • @nnofficial2414
    @nnofficial2414 2 หลายเดือนก่อน

    You are a kind teacher. Keep it up!

  • @jugalchaudhary8943
    @jugalchaudhary8943 ปีที่แล้ว +4

    This is so helpful, Thanks Sir for the cool tips

  • @h1-hackermater
    @h1-hackermater 10 หลายเดือนก่อน

    You are amazing man! Thanks bro

  • @gamingwithakprince5308
    @gamingwithakprince5308 ปีที่แล้ว +2

    Bruh your the one always a inspiration to find my first bug and I find my first bug yet but soon i will find it and I will dedicate to u❤💀bruh

  • @rahmat_qurishi
    @rahmat_qurishi ปีที่แล้ว +2

    Great advices❤thanks for the video

  • @abman2402
    @abman2402 ปีที่แล้ว

    great video!!! if you can next make a video about how to build our methodology :)

  • @zacharyjohnston70
    @zacharyjohnston70 8 หลายเดือนก่อน

    My plan is to finish off the PNPT study course, then hitting boxes and bounties to beef that resume for getting a red team position.

  • @haxixi7035
    @haxixi7035 ปีที่แล้ว +3

    Thank you so much!

  • @drive8263
    @drive8263 ปีที่แล้ว +2

    Love you boss, Peace!

  • @0xbeven462
    @0xbeven462 ปีที่แล้ว +2

    Truth, but with you posting these nice vids we keep in the ➰

  • @night0x1
    @night0x1 ปีที่แล้ว +2

    I love this video!

  • @berthold9582
    @berthold9582 3 หลายเดือนก่อน

    I really had to be told to stop learning and really move on to the real target BBP thank you sir🤝

  • @dev__004
    @dev__004 ปีที่แล้ว

    One of the best advices We can get on BugBounty

  • @LoneStarBassPursuit
    @LoneStarBassPursuit ปีที่แล้ว

    So if someone is new into it where would you have them start?

  • @247-md.nayeemsarkar3
    @247-md.nayeemsarkar3 ปีที่แล้ว +2

    Thank you ❤❤❤

  • @mokiller01
    @mokiller01 ปีที่แล้ว

    New sub, thank you

  • @josephmwanza6363
    @josephmwanza6363 ปีที่แล้ว +5

    my first bug and bounty will be dedicated to you for the inspiration

  • @pinskiller9914
    @pinskiller9914 ปีที่แล้ว

    I love you for these words. thank you very much

  • @mateo__2023
    @mateo__2023 ปีที่แล้ว +1

    Thanks for all your contents. I reported 2 bug but they closed as information before 3 weeks i will back agin and i will get valid bug soon. Thanks❤

    • @NahamSec
      @NahamSec  ปีที่แล้ว +1

      You’ve got this 💪🏼

  • @nguyenthanhloc3878
    @nguyenthanhloc3878 8 หลายเดือนก่อน

    thanks for your advice! From Viet Nam

  • @user-sg3iz2bi7w
    @user-sg3iz2bi7w 9 หลายเดือนก่อน

    hey can u tell us how many languages to know before u get into bug bounty

  • @sudani0zak
    @sudani0zak ปีที่แล้ว +2

    Thank you

  • @user-fp7fs9xl2t
    @user-fp7fs9xl2t 4 หลายเดือนก่อน

    Great Content ...

  • @abhisheksangule6027
    @abhisheksangule6027 8 หลายเดือนก่อน

    if i found bug or loop hole in youtube so does youtube will pay to me or not if yes what will be payment and where i can report the bug

  • @Rocks_roxks9
    @Rocks_roxks9 ปีที่แล้ว

    Best motivation 🤩🤩🤗

  • @bugs-lk3jf
    @bugs-lk3jf ปีที่แล้ว

    Great Content

  • @shriyanssudhi4545
    @shriyanssudhi4545 ปีที่แล้ว +11

    I just submitted a bug to a company, Blind SSRF on victim's machine + IP disclosure. Hope it gets triaged :)
    Thanks for your content as it pushed me to something called "I quit recon" and finding bugs 😅

    • @NahamSec
      @NahamSec  ปีที่แล้ว +5

      Good luck!! 🙏🏼

    • @dev__004
      @dev__004 ปีที่แล้ว +2

      Let us know if it got triaged ;)

    • @thades0001
      @thades0001 9 หลายเดือนก่อน +1

      Has triaged?

    • @shriyanssudhi4545
      @shriyanssudhi4545 9 หลายเดือนก่อน

      @@thades0001 Yes. Resolved and swag shipped

  • @xlight55
    @xlight55 ปีที่แล้ว

    Help me please, How to choose a bugbounty program for a beginner

  • @mehrankurd
    @mehrankurd 4 วันที่ผ่านมา

    thanks a lot agha.

  • @btspurplebutterfly
    @btspurplebutterfly ปีที่แล้ว +3

    i dont know if you see this or not but i dont but i get so scared when i choose website for testing i get confused....
    even if i choose website or any private program i have lot of questions running in my mind... scared of lot of rules and restrictions all that website put in descriptions...
    and i cant focus on website and one bug i get bored easily maybe because it take too much time and it doesn't give instant reward aur any satisfaction like we get from ctf...
    in the the conclusion i dont have patience and focus or maybe i dont know my goal...
    i dont what should i do...
    i am just lost in my mind...

    • @btspurplebutterfly
      @btspurplebutterfly ปีที่แล้ว +2

      I take me lot courage to say this I never really comment on youtube...
      and I didn't even share this problem to my hacking teacher...
      it's so....😕

    • @NahamSec
      @NahamSec  ปีที่แล้ว +2

      That's normal. It's normal to feel like this if you aren't getting any results. My only advice for you is to find a large organization and just keep staying consistent while still taking a break. Don't set any expectations. Do it for fun until you are comfortable with the entire process. I know it's not easy but hang in there :)

  • @user-ug4gy4bn1p
    @user-ug4gy4bn1p 9 หลายเดือนก่อน +1

    Just learnt the vulnerabilities. Now learning the tools. Hopefully, by December I'll be back

    • @mhdshl8502
      @mhdshl8502 7 หลายเดือนก่อน

      how's it going dude : ) got a bounty yet?

    • @user-ug4gy4bn1p
      @user-ug4gy4bn1p 7 หลายเดือนก่อน

      @@mhdshl8502 I'm still hunting. Not yet! We still psuh

  • @mohammadrezaabbasi4841
    @mohammadrezaabbasi4841 9 หลายเดือนก่อน

    Merci Naham, damet garm :))

  • @mmnahian
    @mmnahian ปีที่แล้ว

    thank you Naham

  • @darkceid
    @darkceid ปีที่แล้ว

    Very good 🎉

  • @mr_robot1587
    @mr_robot1587 ปีที่แล้ว +4

    Love you ben bro 💕

    • @NahamSec
      @NahamSec  ปีที่แล้ว +1

      🥰🥰

  • @sokiuwu
    @sokiuwu 23 วันที่ผ่านมา

    Your nose is at angle and i just can't unsee it and can't focus on the video 😂😭

  • @georgeg7712
    @georgeg7712 ปีที่แล้ว

    This helped a-lot,

  • @thenextbigthing1393
    @thenextbigthing1393 ปีที่แล้ว

    is it possible to do bug hunting as a full time job? I'm a Computer Science engineer from India.

  • @__CJ.__
    @__CJ.__ ปีที่แล้ว

    Than you ❤❤

  • @chinedumichael8776
    @chinedumichael8776 ปีที่แล้ว

    nice video . pls where can i get the justin shout broadcast? critical thinking and his youtube channel

  • @shubham_srt
    @shubham_srt ปีที่แล้ว

    thanks :)

  • @MrBrooks89
    @MrBrooks89 ปีที่แล้ว +1

    The people watching these types of videos are newbs and I think it would be cool to provide links to content you mention. The BBPs and VDP sites etc in the description or pin comment.

  • @natanaelconcha92
    @natanaelconcha92 ปีที่แล้ว +1

    Does anyone have the link to the podcast he mentioned?

    • @bigboycdznutz2079
      @bigboycdznutz2079 ปีที่แล้ว

      it's called "Critical Thinking - Bug Bounty Podcast"

  • @suryaroja03
    @suryaroja03 ปีที่แล้ว +1

    great thank yo....

  • @makedredd299
    @makedredd299 ปีที่แล้ว +2

    Amen! 🙏

  • @infosecinsights9
    @infosecinsights9 ปีที่แล้ว +2

    Thank you sir, I hope one day I will be from top 10 hackers

    • @NahamSec
      @NahamSec  ปีที่แล้ว +1

      🤞🏽🤞🏽

  • @martinsuperfind7779
    @martinsuperfind7779 ปีที่แล้ว +1

    Here is a tip from me,
    film in 60frames.

  • @grassy-p12
    @grassy-p12 ปีที่แล้ว

    I thought i was first to comment😍

  • @yassinech7824
    @yassinech7824 ปีที่แล้ว

    yep, i started found 3 bugs, but no bounty

  • @clementtino2693
    @clementtino2693 ปีที่แล้ว +7

    You'll be the first to know when I win my first bounty

    • @NahamSec
      @NahamSec  ปีที่แล้ว +4

      We are going to make it happen this year 💪🏼

    • @3rdNumberOfPi
      @3rdNumberOfPi ปีที่แล้ว +2

      I'm going to let my parents know 1st, 2nd is here, 3rd is my girlfriend

    • @Anonymous-cx7ht
      @Anonymous-cx7ht ปีที่แล้ว +1

      ​@@3rdNumberOfPi ❤

  • @spider_sec
    @spider_sec ปีที่แล้ว

    starting now

  • @Death_User666
    @Death_User666 10 หลายเดือนก่อน

    Doing this all day everyday

  • @lmfao69420
    @lmfao69420 9 หลายเดือนก่อน

    intimate 😈

  • @alidashti5385
    @alidashti5385 ปีที่แล้ว

    Hey guys & ben
    is it normal starting bug bounty learning and starting with a target for 5 months still getting informatives ??? i think am a lot behind

    • @abdonito8254
      @abdonito8254 ปีที่แล้ว +1

      me for 2 years btw

    • @alidashti5385
      @alidashti5385 ปีที่แล้ว +1

      @@abdonito8254 wow that's amazing maybe our next bug will be four digits we just need to be patience

    • @0xm1racle
      @0xm1racle ปีที่แล้ว

      Yes. Mine was 7 months before I got my bounty

  • @askholia
    @askholia 6 หลายเดือนก่อน +3

    The tools are like a scalpel to a surgeon. It's not the tool that makes the difference, it's the surgeon. Same with tools/payloads. Just because someone gives you something to use doesn't mean you know what to do at all. Whether you give me an airplane or not doesn't change the fact I don't know anything about using it.

  • @HYBERN
    @HYBERN ปีที่แล้ว

    😘❤

  • @MFoster392
    @MFoster392 ปีที่แล้ว

    I know rite 100%

  • @221B-wg4dc
    @221B-wg4dc ปีที่แล้ว +2

  • @Ajay-kz6zw
    @Ajay-kz6zw ปีที่แล้ว +1

    😎

    • @Ajay-kz6zw
      @Ajay-kz6zw ปีที่แล้ว

      Upload some live bug hunting Manuall way🙏

  • @imosolar
    @imosolar ปีที่แล้ว

    Good TH-cam but you need to talk more about the real bugbouty method than your self process

    • @NahamSec
      @NahamSec  ปีที่แล้ว +1

      Give me a few weeks ;)

  • @prakhar0x01
    @prakhar0x01 ปีที่แล้ว +1

    Really helpfull