Finding Your First Bug: Impact and Report Writing

แชร์
ฝัง
  • เผยแพร่เมื่อ 8 ก.ย. 2024

ความคิดเห็น • 26

  • @omarbdrn
    @omarbdrn 4 ปีที่แล้ว +3

    lol That Kholy report killed me 😂😂😂😂😂😂😂😂

  • @robbie2044
    @robbie2044 4 ปีที่แล้ว +1

    Just got this in the feed. Big thumbs up for this video. Great presentation and explanation! This should have much much more views.
    But I guess it is like that... People like YT "low hanging fruit" (10min, be a haxor video) of how easy this job is and how everyone can do it.

    • @InsiderPhD
      @InsiderPhD  4 ปีที่แล้ว +4

      I wish I could explain how to hack in 10mins , believe me I'd have millions of views and $$$$. But turns out hacking is kinda hard who'd thunk it. Thanks for watching my video I do really appreciate it

  • @skwtf
    @skwtf 4 ปีที่แล้ว +3

    Thanks for the video, Katie. Really interesting to see what sort of things the triagers have to go through.
    Can you please consider zooming in on the images a bit for the next video?

    • @InsiderPhD
      @InsiderPhD  4 ปีที่แล้ว +2

      Yes of course I realise that they were a little small this video!

  • @ImranKhan-tc8jz
    @ImranKhan-tc8jz 4 ปีที่แล้ว +1

    Thank you! This series was sooo good, Looking forward to new stuff from you.

  • @christenw.1726
    @christenw.1726 2 ปีที่แล้ว

    Yes, this video is very useful. Thank you for teaching us.

  • @ismailramzan8927
    @ismailramzan8927 4 ปีที่แล้ว +1

    Guess what? You are Amazing !!!

  • @tahasamar7223
    @tahasamar7223 2 ปีที่แล้ว

    you actually have the best "how to start bug bounty" in the youtube but I still can't find my answer to how to practically start doing it . I mean like how to work with a bug hunting website ?and what is N/A means that every body says we will see in starting days ?what are the steps to report and get answer and how do these sites pay? and these stuff

  • @karimsz2009
    @karimsz2009 3 ปีที่แล้ว +2

    Ty Dr for your unique content , That little immature attitude made me laugh a lot.

  • @mubashirparay545
    @mubashirparay545 4 ปีที่แล้ว

    THANKS, for producing content like this. It is truly epic. One more thing can u make a video on Wayback machine and how to find some easy bugs using wYBck.

    • @InsiderPhD
      @InsiderPhD  4 ปีที่แล้ว

      I’ll add it to the list :) I’m currently playing with it for a project of mine

  • @eli_chaps
    @eli_chaps 2 ปีที่แล้ว

    We are into the bug but more the impact
    Bigger the impact the bigger the cash and rep

  • @gcm4312
    @gcm4312 4 ปีที่แล้ว

    38:20 "maybe they would have got triaged a little faster if they had fully explained it". The report was so good and concise it was triaged, solved and payed out in 24h.

    • @InsiderPhD
      @InsiderPhD  4 ปีที่แล้ว

      Whoops, good catch! My mistake!

  • @TheAlanCulley
    @TheAlanCulley 4 ปีที่แล้ว

    Should I report a particularly vicious bee that attacked me the other day?
    I understand that they are becoming an endangered species so I am somewhat reluctant to take action.
    What would you recommend?

  • @AnwarSabry
    @AnwarSabry 4 ปีที่แล้ว

    thanks for your content.
    i'm from Egypt so i have to tell you that your bad example about that Egyptian guy called as Ahmed Kholy was very good
    that guy is a big nothing ,he belongs to the family of the president of Egypt so that he was shown as a great hacker and save Egypt from terrorism !

  • @skarverse
    @skarverse 4 ปีที่แล้ว

    i am a beginner....i always like your way of explaining.....i have some questions,guess you could help me....how to find the bug-bounti-programs that does not frustrate me(Beginner) ?.....how to analyse the programs in bugcrowd or hackerone in this perspective? ....Thnx in Advance....

    • @InsiderPhD
      @InsiderPhD  4 ปีที่แล้ว

      I made a video on this called Choosing a Target, check it out and I think that will answer your questions :)

    • @skarverse
      @skarverse 4 ปีที่แล้ว

      @@InsiderPhD thanks for responding✌....i have seen all your videos including it🤗...but Do i have to look for recently added programs ? because many programs that i come across has many bugs that are submitted already or having bad interface😥.......Some more Doubts😇 1.Do you check *each and every possible places* for bugs by *manually* going through it?...... 2.How to join a team for hunting online ?.....

    • @InsiderPhD
      @InsiderPhD  4 ปีที่แล้ว

      It's up to you to figure out what kind of program works for you. You can do the Hacker One CTF to gain points, once you have enough for a private invite you can wait for it, see if it's an established program (with lots of bugs found already), if it is you can reject and wait for the next invite. However I'd advise against doing that and picking something you're interested in and that has a scope you like.
      1. Yes, I think manual testing is the way to go, it means you really understand both the app and any bug you find
      2. Get involved, join channels on discord or slack, talk to people on twitter, make friends : twitter.com/sylv3on_/status/1247300974055653382

    • @skarverse
      @skarverse 4 ปีที่แล้ว

      @@InsiderPhD Really you have cleared all my doubts👍.....Yeah i'll try talking to people and gain some experience😇.... *Thank you* for spending your _valuable time_ ,explaining me everything _calmly_ 🤗.....

    • @InsiderPhD
      @InsiderPhD  4 ปีที่แล้ว +1

      Just keep at it, don’t be afraid to ask questions, keep learning. You’ll understand more with more experience

  • @tamjid0x01
    @tamjid0x01 4 ปีที่แล้ว

  • @GeoLocading
    @GeoLocading 4 ปีที่แล้ว

    ! ur voice is too cute HAHAHHA!