Bug Bounties With Bash - VirSecCon2020 Talk

แชร์
ฝัง
  • เผยแพร่เมื่อ 28 พ.ย. 2024

ความคิดเห็น •

  • @Gold_fi
    @Gold_fi 4 ปีที่แล้ว +49

    like seriously ..how I wish you do this more often- cos you're one of the best

    • @cyberUF
      @cyberUF 4 ปีที่แล้ว

      Hie I shared bugbounty , CTF challenge video you can visit me ❤️

    • @RowanSheridan
      @RowanSheridan 4 ปีที่แล้ว +12

      to save you guys a click - don't. Terrible channel.

  • @GeorgeDran
    @GeorgeDran 3 ปีที่แล้ว +7

    This guy is real MVP, amazing job on NahamCon2021! Thank you and please make more videos.

  • @marcostorres572
    @marcostorres572 ปีที่แล้ว +2

    out on the porch, sippin on some hot cocoa and learnin bash scriptin ♥ thank you for an awesome vid

  • @procybr
    @procybr 4 ปีที่แล้ว +4

    No easier and cooler way to learn the command line from a real “Keyboard Cowboy”! Awesome work, your videos are much appreciated!

  • @AzmahSmith
    @AzmahSmith ปีที่แล้ว +1

    Great Content 🎉

  • @eshansh_bhardwaj
    @eshansh_bhardwaj 10 หลายเดือนก่อน +1

    Simply Awesome😊

  • @ujjwalbansal1070
    @ujjwalbansal1070 4 ปีที่แล้ว

    I don't know why people like you with so much expertise in the field is having such a few subscribers! Why people are not seeing these JEMS on the internet. Trying to learn a lot from you keeps making such stuff for us.

  • @peterluke9392
    @peterluke9392 4 ปีที่แล้ว +5

    Criminally underrated channel, keep it up man great content.

  • @JJ-dz2ne
    @JJ-dz2ne 6 หลายเดือนก่อน

    Wow, you're great at explaining things. Excellent video!

  • @maxb.4261
    @maxb.4261 4 ปีที่แล้ว

    you are the real deal and should be 100x more popular. please dont stop making these

  • @badrelmazaz
    @badrelmazaz ปีที่แล้ว

    please make more content like this I love your way to teach it's brilliant, thanks

  •  3 ปีที่แล้ว

    i saw the pdf late but it seems fascinating, thx for ur interest and presentation

  • @MesonoxianVlad
    @MesonoxianVlad 4 ปีที่แล้ว

    Great talk Tom. I always learn something new from your videos and I really appreciate your content. Cheers.

  • @Daniel-wb2mm
    @Daniel-wb2mm 4 ปีที่แล้ว +1

    All I want for Christmas is for you to do more of these/ stream on Twitch!

  • @angeldev96
    @angeldev96 4 ปีที่แล้ว

    Thanks so much for your talks, you are a true inspiration for most of us.

  • @kavishgour3267
    @kavishgour3267 4 ปีที่แล้ว

    Thanks Tom. This is awesome. May you achieve more success in your life.

  • @whativelearnedthisweek4518
    @whativelearnedthisweek4518 4 ปีที่แล้ว

    loved the video bro. I hope to see more about VIM and BASH tips on your channel. I swear to God, I could spent hours watching this kind of content.

  • @soufianta8374
    @soufianta8374 ปีที่แล้ว

    Returning something else than 0 doesn’t always mean that command fails (it depends on the implementation of the return value in the program itself). Example: grep/egrep can return something else than 0 if it doesn’t find anything matching your query (that doesn’t mean that it fails) because it just depends on how the return value has been implemented (based on conditional cases). Nice vid btw

  • @husseinyoussef6998
    @husseinyoussef6998 ปีที่แล้ว +1

    Would you say that learning bash in depth makes sense right now with LLMs emerging that can write great complex bash scripts from prompts?

  • @clay0274
    @clay0274 2 ปีที่แล้ว

    that's amazing, I enjoyed to watch out. thanks a lot man

  • @padaloni
    @padaloni 4 ปีที่แล้ว

    you're an inspiration dude. love your work and thanks for sharing!

  • @an4kein
    @an4kein 4 ปีที่แล้ว

    Awesome TomNomNom, thanks! 👏🏻👏🏻

  • @mstanford3
    @mstanford3 ปีที่แล้ว

    Love your videos please make more soon

  • @D3rMesaa
    @D3rMesaa 3 ปีที่แล้ว

    well that hour went by quite quick

  • @leisureclub_
    @leisureclub_ 4 ปีที่แล้ว

    Much Love Tomnomnom .. You are one of my fav hunter @ Keep Rocking ! I just tried exiting vim & it is not hard as I noticed people tweeting..lol

  • @artanmulhaxha1525
    @artanmulhaxha1525 ปีที่แล้ว

    this was really helpful you are amazing man

  • @clindamycinphosphate4407
    @clindamycinphosphate4407 ปีที่แล้ว

    legend is tom
    tom is legend!

  • @cutepanda2629
    @cutepanda2629 2 ปีที่แล้ว

    Love from heart 🥰

  • @xrfox1634
    @xrfox1634 3 ปีที่แล้ว

    Thanks for the awesome video!

  • @leghdaf
    @leghdaf 9 หลายเดือนก่อน

    Great Content ....

  • @jack.klimov
    @jack.klimov 4 ปีที่แล้ว

    Incredible! Thank you for tips and tricks

  • @aaronaguilar2238
    @aaronaguilar2238 ปีที่แล้ว

    Thank you tom! I definitely enjoyed this video! A new subscriber now. Hope you make a new one soon.

  • @shivangraina9698
    @shivangraina9698 4 ปีที่แล้ว

    Thanks tom i wish you could make more of these shell scripting videos. Big fan.

  • @mayurchavhan8590
    @mayurchavhan8590 4 ปีที่แล้ว

    Great content Tom, Would like to see more. Thanks

  • @rodricbr
    @rodricbr 3 ปีที่แล้ว

    epic video and channel, earned a well deserved subscriber, cheers from Brazil!

  • @clindamycinphosphate4407
    @clindamycinphosphate4407 ปีที่แล้ว

    tom sounds sooth

  • @picanzo
    @picanzo 4 ปีที่แล้ว

    So ... First of all.. thanks for sharing all this valuable information and knowledge. I saw a talk you make about this 3 years ago.. and that was the way you found a lot of bugbounties back in the days, so you're basically giving us gold! Im just a n00b in here but I need to ask just to see if I understand... 1. we need to create like a wordlist but for subdomais 2. try requests to see the response.. like (404, 200, 301,302) to see it resolves.. Its that right? About the HTTP Headers.. you're telling us that its possible to find vulnerabilities by just reading that Headers? (like a passive recon) . Thanks again for sharing Tom!

  • @surferbum618
    @surferbum618 4 ปีที่แล้ว +1

    Thanks for this Tom, I'll be processing this info for the coming months. Also, do you stream at all?

  • @StephenOgu
    @StephenOgu 4 ปีที่แล้ว

    Thanks TomNomNom

  • @arifinarifin3600
    @arifinarifin3600 3 ปีที่แล้ว

    beside that you explain things clearly, your voice is also nice to hear XD

  • @thecaretaker0007
    @thecaretaker0007 4 ปีที่แล้ว

    Can you please continue this and make a whole playlist? Plzzz.

  • @h4cker
    @h4cker 3 ปีที่แล้ว

    Dude your terminal looks great ... What themes you are using ?? Please tell us??

  • @sifatazad3353
    @sifatazad3353 3 ปีที่แล้ว

    So at 38:00 i realised that its meg doing all the parsing!! 😂😂

  • @Rashedulcss
    @Rashedulcss 3 ปีที่แล้ว

    This is a goldmine.

  • @emanuelbergagna3678
    @emanuelbergagna3678 4 ปีที่แล้ว +5

    53:43 hahah

  • @watchlistsclips3196
    @watchlistsclips3196 3 ปีที่แล้ว

    TomNomNom can you make some demo on how you create tools

  • @when542
    @when542 4 ปีที่แล้ว

    great video thank you!!

  • @mohammadasil5937
    @mohammadasil5937 4 ปีที่แล้ว

    I want to learn from you pls create a playlist and upload more educational videos for our inspiration and for learning purpose

  • @DeShooter3
    @DeShooter3 4 ปีที่แล้ว +2

    Could you do a demo of bug bounty like only the recon part. I would like to see these tutorials in a real scenario.

    • @AJRepp
      @AJRepp 4 ปีที่แล้ว +3

      Stok has a video with Tomnomnom where he uses a lot of this info, in combination with vim, to do recon. Sounds like what you're looking for.

  • @glengonsalves9547
    @glengonsalves9547 3 ปีที่แล้ว

    hey can someone explain me that cname part bt how does one claim the domain??

  • @lukeastorw
    @lukeastorw 2 ปีที่แล้ว

    Which OS ( Terminal ) you use to do that? is that ubuntu??

  • @cyrusbesabella5938
    @cyrusbesabella5938 4 ปีที่แล้ว

    Thank you sir!

  • @danielazulay4936
    @danielazulay4936 4 ปีที่แล้ว

    That's great, do you think doing bug bounty without vm is a good idea?

  • @waffen-ssyt6027
    @waffen-ssyt6027 4 ปีที่แล้ว +2

    genius

  • @cypher4036
    @cypher4036 3 ปีที่แล้ว

    Which os you sre using @tomnomnom

    • @rodricbr
      @rodricbr 3 ปีที่แล้ว

      ubuntu

  • @BnayaProgramming
    @BnayaProgramming 2 ปีที่แล้ว

    grepping headers at 42:00

  • @BlokeBritish
    @BlokeBritish 3 ปีที่แล้ว

    i just want to kno how u took tat name. Tom and nom and again nom !!

  • @shopflicker
    @shopflicker 3 ปีที่แล้ว

    witch linux os u use??

  • @bejanknaveen2274
    @bejanknaveen2274 3 ปีที่แล้ว

    your super i love ur tools and way of hacking super sirrrrrrrrrrrrr

  • @manikkoirala9576
    @manikkoirala9576 4 ปีที่แล้ว +1

    post more about bash scripting

  • @abdelabdel8089
    @abdelabdel8089 4 ปีที่แล้ว

    Hi. I liked the video that you've made with @STÖK. Can you please make an extensive video about how to read code using the debuggers and or tools? Would help starting developers like me tremendously and I believe you will make a great one. Thanks

  • @pato6350
    @pato6350 4 ปีที่แล้ว

    Broo I love yo

  • @h4ck3r_SA
    @h4ck3r_SA ปีที่แล้ว

    i love you ..

  • @Aravindb26
    @Aravindb26 4 ปีที่แล้ว +1

    Bro post ur secrets on how to win easy bugs y im saying cause u have great knowledge and ur fans r waiting for that...

    • @cyberUF
      @cyberUF 4 ปีที่แล้ว

      Hie I shared bugbounty , CTF challenge video you can visit me ❤️

  • @suvarneshkm4845
    @suvarneshkm4845 4 ปีที่แล้ว

    Can u make a video on public-firing-range !`

  • @elliot9066
    @elliot9066 4 ปีที่แล้ว

    YOO i see filly video plz more video on bash bug bounty

  • @labeh3750
    @labeh3750 4 ปีที่แล้ว

    watch your hacking101...great video. I got a good insight on developer-tool.

  • @kavishgour3267
    @kavishgour3267 4 ปีที่แล้ว

    Hey! any chance you could share your $PS1 config ? This looks awesome!

    • @TomNomNomDotCom
      @TomNomNomDotCom  4 ปีที่แล้ว +1

      Sure; it's here along with all of my other config files: github.com/tomnomnom/dotfiles/blob/0433a3b3ca681cf3c9f894a401ecd5406ac22752/.bashrc#L143
      (note the variables defined above that it uses)

    • @kavishgour3267
      @kavishgour3267 4 ปีที่แล้ว

      @@TomNomNomDotCom Thanks man. Cheers.