Summary of "Day-2 How To Choose Right Target For Bug Bounty - Bug Bounty Free Course [ Hindi ]"
Main Ideas and Concepts
The video is part of a free bug bounty course conducted in Hindi, focusing on how to choose the right target for bug bounty hunting. The instructor emphasizes the importance of selecting appropriate targets to minimize frustration and maximize learning and success in bug hunting. Here are the key points discussed:
- Steps to Success in bug bounty:
- Learning and practicing are essential.
- Focus on understanding the concepts before attempting to earn.
- Set targets and plan accordingly.
- Importance of Choosing the Right Target:
- Selecting the right target is crucial to avoid duplicates and not applicable bugs, which can lead to demotivation.
- Factors to consider include:
- The number of researchers already hunting the target.
- The scope of the target (how much can be tested).
- The response time of the target's bug bounty program.
- Target Selection Example:
The instructor compares two targets (abc.com and xyz.com) and discusses which one to choose based on researcher competition and response times.
- Understanding Scope:
Scope refers to the domains and applications that can be tested. Importance of knowing the scope to avoid wasting time on out-of-scope vulnerabilities.
- Public vs. Private Programs:
- Public programs have more competition but are easier to find.
- Private programs may offer better chances of finding valid bugs but require invitations.
- Tools and Resources:
The instructor mentions tools like Asset Finder for reconnaissance. Provides resources for further learning and practice, including checklists and directories.
- Practical Tasks:
Viewers are encouraged to create accounts on platforms like TryHackMe and complete specific tasks to enhance their skills.
- Engagement and Community:
The instructor emphasizes the importance of community support and sharing knowledge among peers.
Methodology and Instructions
- Choosing Targets:
- Consider the number of researchers on the target.
- Evaluate the scope and response time of the bug bounty program.
- Use tools like Asset Finder for reconnaissance.
- Practical Task:
- Create an account on TryHackMe.
- Search for and complete the "Top 10 2021" walkthrough.
- Report findings and engage with the community for feedback.
Speakers or Sources Featured
- The main speaker is the instructor of the bug bounty course, who remains unnamed in the subtitles.
- References to tools and platforms like TryHackMe, HackerOne, and Asset Finder are made throughout the session.
This video aims to equip beginners with the foundational knowledge and practical steps needed to effectively choose targets in their bug bounty journey.
Category
Educational
Share this summary
Is the summary off?
If you think the summary is inaccurate, you can reprocess it with the latest model.