I QUIT RECON... and made $10,000 in bounties!

แชร์
ฝัง
  • เผยแพร่เมื่อ 28 พ.ย. 2024

ความคิดเห็น • 168

  • @ImRyTho
    @ImRyTho ปีที่แล้ว +8

    Hey I came from your live stream!

  • @CristiVladZ
    @CristiVladZ ปีที่แล้ว +31

    Pentesting and the requirements of the clients actually moved me away from recon, as more than 98% of the web pentests I did involved single scope web apps requiring a lot of manual testing via burp and code review. Was a blessing in disguise and made me love hacking even more

  • @lol-hz9mc
    @lol-hz9mc ปีที่แล้ว +7

    That's a very cool explanation and hoping that we see the part -2 asap!! Thank YOU FOR THIS!!.

  • @chaospixxie
    @chaospixxie ปีที่แล้ว +1

    Yes, would love a part 2 please. Really enjoying these frequent sort videos focussed on a specific topic. Keep it up man

  • @sveneFX
    @sveneFX ปีที่แล้ว +2

    Part 2 for sure, nice vid again! I'd love to see what you'd see as the "core" tests on an application that does not have or allow logins, users etc

  • @01_hevel24
    @01_hevel24 ปีที่แล้ว +1

    Best video naham..
    This is the exact content I was Expecting that elites like you would have made...
    Live website, live recon, live methodology...

  • @MrFontaineInc
    @MrFontaineInc ปีที่แล้ว +2

    I really appreciate the perspective!! I feel like I found a lightweight and easy recon workflow to find endpoints but I definitely get stuck looking for misconfigurations versus exploring the core apps.

  • @yusufmalikul
    @yusufmalikul ปีที่แล้ว +1

    This is great. I love finding things manually. We just love doing that.

  • @heathstewart2090
    @heathstewart2090 ปีที่แล้ว +4

    I'm new to the bug bounty space, but I find your live streams and content really helpful! I just started and I've not gotten any bounties yet, but I've been able to better understand web apps and how to approach the process. Thanks so much for what you do!

    • @amoh96
      @amoh96 ปีที่แล้ว +1

      Hi im new too i still learn basics and u tell me about your roadmap ?

    • @heathstewart2090
      @heathstewart2090 ปีที่แล้ว +2

      @@amoh96 I don't really have a road map yet lol. I am just trying to get better at understanding the functionality of applications and trying to focus on identifying specific attacks. There's too much for me to try and learn all at once.

    • @amoh96
      @amoh96 ปีที่แล้ว

      @@heathstewart2090 nice im still learn i finish HTML and im in JavaScript did u have any background language

    • @0xgreyhound
      @0xgreyhound ปีที่แล้ว +1

      @@amoh96 i recommend to start on portswigger

    • @heathstewart2090
      @heathstewart2090 ปีที่แล้ว

      @VerticalWordOfChrist yes I have found a few bugs now. These kinds of videos are helpful, but I wouldn't substitute them for hands-on practice. Once I put my mind to actually hacking I had a better go at it. Good luck!

  • @daniferraz3769
    @daniferraz3769 ปีที่แล้ว +2

    manual hunting is the true function of the bug bounty, automation is already overused by Scanners, pentesters, and recently AI tools. Zseano has a manual methodology he will like this video.

  • @ArminFreak
    @ArminFreak ปีที่แล้ว +1

    Thanks for sharing, great video as always looking forward to part 2

  • @jlisonfernandes7826
    @jlisonfernandes7826 ปีที่แล้ว +1

    Hi @nahamsec please make some more video like this to approach a target. And exactly where to look for vulnerability. your talks and tutorials aare so informational and easy to learn quickly. This kind of videos on how to approach to a target are very less on internet so please do some more videos like this . Thanks ❤️🇮🇳

  • @MikeTyson-ms2cl
    @MikeTyson-ms2cl ปีที่แล้ว +15

    As always ben, you never disappoint

    • @NahamSec
      @NahamSec  ปีที่แล้ว

      ❤️❤️🙏🏼

  • @dummyy8145
    @dummyy8145 ปีที่แล้ว

    Just bought your course! I'm starting to take interest in this field and i hope this will lead me somewhere better.

  • @mashoodahmed7174
    @mashoodahmed7174 ปีที่แล้ว +18

    Please make more videos like this in which you are auditing on real websites so that we can understand the methodology to find bugs.

    • @NahamSec
      @NahamSec  ปีที่แล้ว +8

      Have you seen my live recon videos?

    • @hack4rjohn655
      @hack4rjohn655 ปีที่แล้ว +2

      @@NahamSecshare your live recon videos link here please

    • @hack4rjohn655
      @hack4rjohn655 ปีที่แล้ว +1

      @@NahamSec and also share that which tools you used for recon and automated bugs finder tools which you used please 🙏🙏

    • @abhinavbansal9396
      @abhinavbansal9396 ปีที่แล้ว

      @@NahamSec make video of hunting on live target also n not just recon pls...........and pls make part 2of this in longer version

    • @moinkhokhar1897
      @moinkhokhar1897 ปีที่แล้ว

      ​@@NahamSec 😂😂😂

  • @HassanRaza-ek3mv
    @HassanRaza-ek3mv ปีที่แล้ว +1

    Thank you for the valuable content. Quick question: Are your twitch videos for only paid members? I am having "error 5000 with video unavailable".

  • @hashimmajid7905
    @hashimmajid7905 ปีที่แล้ว +1

    Thank you for this video, we love to see more videos like this, like crawling the app with burp suite and etc

  • @OSINT1
    @OSINT1 ปีที่แล้ว +1

    Thanks for all that you do dude

  • @Mehzeen
    @Mehzeen ปีที่แล้ว +2

    would be very helpful to show us more examples on how do u look at apps, what u check and so on (maybe a series on VDP's) something like "no recon monday" dunno, very great content btw

  • @rodricbr
    @rodricbr ปีที่แล้ว +1

    I don't really enjoy automation because the tools does the job for me, and the reason I like web application researching is to do things manually. that's a cool choice of yours, and a hard one as well

  • @MrSlimshadysongs
    @MrSlimshadysongs ปีที่แล้ว +1

    Thank you for the video ❤. I have a question, did you find the vulnerabilities for the 10 000 in public programs?

  • @johnkittleson6413
    @johnkittleson6413 ปีที่แล้ว +1

    The live stream you just did was amazing!!! You should totally publish it to youtube and just blur out the secrets and whatnot! It would be a crime not to

    • @NahamSec
      @NahamSec  ปีที่แล้ว +1

      Maybe! It's too much effort to blur those out, so I may just keep them for members for now.

  • @dhruvkandpal3826
    @dhruvkandpal3826 ปีที่แล้ว

    Love such content, Ben! Thank you for making it. Really insightful. Please continue to make more of these! Grateful.

  • @itsme7570
    @itsme7570 ปีที่แล้ว +1

    I've done team engagements against large organizations and I was by far the whole that found the most useful data for us. Just sucks that the thing I'm best at is just not that sought after

  • @svrajput14
    @svrajput14 ปีที่แล้ว

    Going back to basics helps to develop the mindset & trust own instinct.

  • @jonathanvillatorocordoba7511
    @jonathanvillatorocordoba7511 ปีที่แล้ว +1

    I'm coming from your live right now... though I already watched the video previously lol

  • @azoosh
    @azoosh ปีที่แล้ว +1

    Would love a part 2

  • @radwanaplicant3707
    @radwanaplicant3707 ปีที่แล้ว

    Can’t wait for part 2, thanks man

  • @lucasvalentelima7331
    @lucasvalentelima7331 ปีที่แล้ว +2

    Hey I came from your live! =D

  • @slipkno5
    @slipkno5 ปีที่แล้ว +1

    Great content Ben, please make part 2 but more detailed :)

  • @ReligionAndMaterialismDebunked
    @ReligionAndMaterialismDebunked ปีที่แล้ว

    Yes, please, more of this.

  • @nepal4972
    @nepal4972 ปีที่แล้ว

    So, much information.
    ​Hey I came from your live!

  • @simocigno
    @simocigno ปีที่แล้ว

    Came here from your live !!! Sooooo goood contents Thank you so much!!!!

    • @NahamSec
      @NahamSec  ปีที่แล้ว +1

      🙏🏼🙏🏼

  • @nivkochan8596
    @nivkochan8596 ปีที่แล้ว

    I will be happy to see part 2 of this.

  • @lilbakeful
    @lilbakeful ปีที่แล้ว

    Watching from Ethiopia, Africa! As always awesome content ben.

  • @KaafUzair
    @KaafUzair ปีที่แล้ว

    Thank you so much sir ❤️

  • @vignesh8467
    @vignesh8467 ปีที่แล้ว +1

    Really interesting and informative

  • @cosmicrisis5699
    @cosmicrisis5699 ปีที่แล้ว +1

    Heard about this vid from your live

  • @compendium6619
    @compendium6619 ปีที่แล้ว

    From the live stream! Nahamsec says the internet is a series of tubes, this is legit stuff!

  • @Frawkesish
    @Frawkesish ปีที่แล้ว

    Would love to see some more on the devtools

  • @rdx8122
    @rdx8122 ปีที่แล้ว +1

    Thank you sir 🙏🙏💖💖

  • @tarrylim778
    @tarrylim778 ปีที่แล้ว

    Ya, pls make the part 2, love this kind of content !!!!!!

  • @hasnainabidkhanzada3754
    @hasnainabidkhanzada3754 ปีที่แล้ว

    can we replace one id from other to check for IDOR using network tab as we do it in burp suit?

  • @DM-qm5sc
    @DM-qm5sc ปีที่แล้ว +2

    I am struggling pretty bad right now making money and I am not able to finish my Cybersec degree at university because of it. I want so badly to do this type of work, not necessarily for the money but because this type of work really appeals to me. My current job has nothing to do with computers and staying with it will not yield any of my goals.
    Im really not sure where to start as I am a bit intimidated but I feel that this is probably my best shot to change my career and life.... Any tips would be greatly appreciated. ❤

  • @danishbhat1536
    @danishbhat1536 ปีที่แล้ว

    I am doing the same from past 2 years. My 90% bugs are access control issues with manual approach.

  • @_shivammusic
    @_shivammusic ปีที่แล้ว

    great video ben!!! i really enjoyed your content nowadays.

    • @NahamSec
      @NahamSec  ปีที่แล้ว

      I appreciate that!

  • @adrtadsx5951
    @adrtadsx5951 ปีที่แล้ว

    Hey come from your live.I like your vedio.its easy to understand all security staff.Tnx.

  • @JayPanchal-xu2fk
    @JayPanchal-xu2fk ปีที่แล้ว

    please make whole process video , moreover can you make video upon wordpress like if i had vulnerable version of wordpress and its is vulnerable from xss , prototype pollution , ssrf then how could i find them ? i found this vulnerable version from wpscan tool it give me all vulnerabilities but i dont know how to find them so can you make video on then . if you dont mind can make video on how to approach on wordpress site .

  • @eviI_genius
    @eviI_genius ปีที่แล้ว

    Just came from your live recon video!!
    BTW You did live recon on sunday also!!! xD

  • @MFoster392
    @MFoster392 ปีที่แล้ว

    Thanks bro, I'm learning bug bounty and your videos always have great info ;-)

  • @koenvanhoecke2110
    @koenvanhoecke2110 ปีที่แล้ว

    Great video as always :)! Learning a lot from you

  • @huzifaahmed1426
    @huzifaahmed1426 ปีที่แล้ว +1

    I realy enjoy whatch the video and the way you aproch the application
    Please make more video for manualy aproch like this

    • @NahamSec
      @NahamSec  ปีที่แล้ว +2

      I got you!

  • @EduardoSilva-xf2fo
    @EduardoSilva-xf2fo ปีที่แล้ว

    AMAZING. Thanks man!

  • @zzzzzzzzZzZZzzzaZzz
    @zzzzzzzzZzZZzzzaZzz ปีที่แล้ว

    Great ! We need videos like this

  • @austinjonestyler
    @austinjonestyler ปีที่แล้ว

    coming over from live. solidarity forever y'all

  • @easydosh73
    @easydosh73 ปีที่แล้ว

    So Gold! Part 2 pls!

  • @riley8824
    @riley8824 ปีที่แล้ว

    Came from the live. Already watched the video and thanks for doing what you do.

    • @NahamSec
      @NahamSec  ปีที่แล้ว

      🙏🏼🙏🏼

  • @hm-jr4ok
    @hm-jr4ok ปีที่แล้ว

    Great video, looking forward for more content like this.

  • @cguzmanvisuals
    @cguzmanvisuals ปีที่แล้ว

    Yeah Imma need a part 2

  • @sahilgupta1383
    @sahilgupta1383 ปีที่แล้ว

    i definitely want 2nd video this is too interesting just hit the core without using tools dayum sounds cool

    • @NahamSec
      @NahamSec  ปีที่แล้ว

      I just have to think of how to do it so it’s not just me talking to a camera

  • @0xfsec
    @0xfsec ปีที่แล้ว

    Definitely more videos like this!

  • @adyp487
    @adyp487 ปีที่แล้ว

    Kidding. Great video 💜

  • @mhrzesm9973
    @mhrzesm9973 ปีที่แล้ว

    amazing bro as always

  • @Rocks_roxks9
    @Rocks_roxks9 ปีที่แล้ว

    Fantastic video sir 😍😎you are awesome. Every time I learnt new content from your videos ❤️

  • @graborgone6154
    @graborgone6154 ปีที่แล้ว

    Please make part 2 to this video topic

  • @rahmat_qurishi
    @rahmat_qurishi ปีที่แล้ว

    It was amazing video🤠
    Thanks for sharing!

  • @NovaSecTechnologies
    @NovaSecTechnologies ปีที่แล้ว

    I need to learn about all bug bounty step by step

  • @villenie
    @villenie ปีที่แล้ว

    Hello! I come from the Live! Good stuff!

  • @AzmahSmith
    @AzmahSmith ปีที่แล้ว

    Thanks Man

  • @bazboz1468
    @bazboz1468 ปีที่แล้ว

    More of this please

  • @TornTech1
    @TornTech1 ปีที่แล้ว

    The compression and quality of your screen recording is a little bad for a few seconds sometimes, have you changed your screen recorder settings? it is artificing quite a bit in places.

  • @amiralig1099
    @amiralig1099 ปีที่แล้ว

    hey Coming from your live
    love you man

  • @msalih
    @msalih ปีที่แล้ว

    I am really bad at recon, Liked your way, hope to find some bugs !

  • @SayfSentinel
    @SayfSentinel ปีที่แล้ว

    Hey I came from your live
    Nice content. We need more content like the live one

  • @vivekkhandagre9274
    @vivekkhandagre9274 ปีที่แล้ว

    love you bro ❣❣

  • @abd-y5011
    @abd-y5011 ปีที่แล้ว

    Love this video it would be awesome if you will make more videos like these Ben ❤

  • @karimnl2302
    @karimnl2302 ปีที่แล้ว

    Coming from your live right now

  • @Andrei-ds8qv
    @Andrei-ds8qv ปีที่แล้ว

    thanks

  • @captain_crunchv1145
    @captain_crunchv1145 ปีที่แล้ว

    Love it! From twitch!

  • @peternavarroiii3944
    @peternavarroiii3944 ปีที่แล้ว

    Love these videos!

    • @NahamSec
      @NahamSec  ปีที่แล้ว +1

      Thanks for watching!

  • @insertcoindesign4115
    @insertcoindesign4115 ปีที่แล้ว

    Bro can you make a video about js files recon? Thank you

  • @viktoras.buivydas
    @viktoras.buivydas ปีที่แล้ว

    Hey, came from livestream!

  • @happyjester
    @happyjester ปีที่แล้ว

    thank u

    • @NahamSec
      @NahamSec  ปีที่แล้ว

      You're welcome 😊

  • @Funnnnboyy
    @Funnnnboyy ปีที่แล้ว

    Put a video about endpoint analysis

  • @cesarsanchez1275
    @cesarsanchez1275 ปีที่แล้ว

    Hey I came from your live!

  • @trustedsecurity6039
    @trustedsecurity6039 8 หลายเดือนก่อน

    Maybe a part 2 on recon xD

  • @mashoodahmed7174
    @mashoodahmed7174 ปีที่แล้ว

    Nice work!

  • @martinj8818
    @martinj8818 ปีที่แล้ว

    Part 2 please :)

  • @brs2379
    @brs2379 ปีที่แล้ว

    Make a part 2 🙏

  • @L9Zodiac
    @L9Zodiac ปีที่แล้ว

    Came from your live

  • @robinmarte7990
    @robinmarte7990 ปีที่แล้ว

    Great video

  • @IvanIvanov-ix5no
    @IvanIvanov-ix5no ปีที่แล้ว

    Part 2 please

  • @stevefont
    @stevefont ปีที่แล้ว

    live stream took me here

  • @mdmoulaali2734
    @mdmoulaali2734 ปีที่แล้ว

    Please part 2

  • @shafin_murani
    @shafin_murani ปีที่แล้ว

    Love it!(from twitch though)

  • @ebrraahiimhanny5097
    @ebrraahiimhanny5097 ปีที่แล้ว

    please make part2

  • @loneliestwolf4228
    @loneliestwolf4228 ปีที่แล้ว

    Part 2 please......!!!!

  • @benjaminwagner1772
    @benjaminwagner1772 ปีที่แล้ว

    Legend 🔥❤

  • @pwnearth5505
    @pwnearth5505 ปีที่แล้ว

    Love u bro

  • @mr.ayyanirfan7081
    @mr.ayyanirfan7081 ปีที่แล้ว

    we want part 2