rs0n_live
rs0n_live
  • Видео 50
  • Просмотров 408 372
I'm Hosting a Workshop at DEFCON's First Bug Bounty Hunting Village!!
I'm *soo* excited to announce that I will be hosting a Workshop at DEFCON's first Bug Bounty Hunting village this year! If you can't make the live version, I'll be releasing a pre-recorded version of the workshop here on RUclips a few months after DEFCON.
Workshop Repo w/ Methodology: github.com/R-s0n/bug-bounty-village-defcon32-workshop
Learn More: www.bugbountydefcon.com/
Hire Me! - ars0nsecurity.com
Watch Live! - twitch.tv/rs0n_live
Free Tools! - github.com/R-s0n
Connect! - www.linkedin.com/in/harrison-richardson-cissp-oswe-msc-7a55bb158/
Просмотров: 990

Видео

Ask Yourself These Four Questions When Bug Bounty Hunting for IDORs
Просмотров 1,6 тыс.Месяц назад
When bug bounty hunting for IDORs, these questions will help you identify code patterns that can lead to finding bugs faster and easier! If you've seen my video on Access Controls and IDORs (Part 1), this video expands on some of the core topics. I hope it helps! Hire Me! - ars0nsecurity.com Watch Live! - twitch.tv/rs0n_live Free Tools! - github.com/R-s0n Connect! - www.linkedin.com/in/harrison...
Bug Bounty Hunting | Find Bugs in Hidden React Source Code!! ⏰ QUICK TIP ⏰
Просмотров 3,4 тыс.3 месяца назад
Find XSS bugs (and more!) in client-side React Code! Developers often forget to obfuscate and properly serialize their React code before shipping it to production. In this video, I show you how I find applications with this misconfiguration, download the raw React files, and use a Static Code Analysis tool to find vulnerabilities! I've been working on my editing and pacing, let me know what you...
I'm Back! What to Expect Moving Forward...
Просмотров 1,3 тыс.3 месяца назад
00:00 - Quick Recap 00:18 - HUGE thank you to the community! 01:23 - What happened to the Discord Server? 04:08 - What's going on with the Framework? 08:52 - What about Livestreams and Recorded Videos? 10:25 - FloQast Authenticated Bug Bounty Program 13:25 - Wrap Up
I need a break...
Просмотров 3,6 тыс.5 месяцев назад
The endless stream of demands and harassment around my Bug Bounty Hunting Framework has finally gotten to me, so I've decided to take a break from developing, as well as streaming and recording, for a few months. Thank you all for the love and support! I just need a few months to get my head right and figure out how I want to drive these projects moving forward.
New Fiverr Pro Gig!! Attack Surface Vulnerability Scanning -- 👀🎯 See How Attackers See You
Просмотров 9826 месяцев назад
Learn More: www.fiverr.com/s/xg3WvZ I will conduct a thorough vulnerability assessment using a collection of automated tools to enumerate the client's attack surface, identify valid targets in that attack surface, and test those targets for a wide range of known vulnerabilities. Attackers often chose their targets based on who they believe will be an "Easy Target". This testing will simulate th...
New Fiverr Pro Gig!! Web Application & Cloud Infrastructure Penetration Test
Просмотров 7386 месяцев назад
Learn More: www.fiverr.com/s/KG8Nez I will conduct thorough penetration testing on a target web application, as well as the cloud infrastructure hosting that application. This testing includes a significant amount of manual testing and is designed to simulate the experience of being targeted by an Advanced Persistent Threat (APT) group with the goal of gaining a foothold in an organization thro...
[Part III] Bug Bounty Hunting for IDORs & Access Controls
Просмотров 10 тыс.6 месяцев назад
[Part III] Bug Bounty Hunting for IDORs & Access Controls
Live Bug Bounty Hunting | Authenticated Testing the Client-Side & Server-Side on Figma's Core App
Просмотров 7 тыс.7 месяцев назад
Live Bug Bounty Hunting | Authenticated Testing the Client-Side & Server-Side on Figma's Core App
Bug Bounty Hunting for Client-Side Injection Vulnerabilities | Part I
Просмотров 22 тыс.7 месяцев назад
Bug Bounty Hunting for Client-Side Injection Vulnerabilities | Part I
Live Bug Bounty Hunting | Client-Side Injection Testing on Starbucks Japan (Plus Q&A)
Просмотров 15 тыс.7 месяцев назад
Live Bug Bounty Hunting | Client-Side Injection Testing on Starbucks Japan (Plus Q&A)
My Bug Bounty Hunting Framework | New Collaboration Features Out Now!!! -- Alpha 0.0.2 Release
Просмотров 3,2 тыс.7 месяцев назад
My Bug Bounty Hunting Framework | New Collaboration Features Out Now!!! Alpha 0.0.2 Release
[Part II] Bug Bounty Hunting for IDORs and Access Control Violations
Просмотров 15 тыс.7 месяцев назад
[Part II] Bug Bounty Hunting for IDORs and Access Control Violations
[Part I] Bug Bounty Hunting for IDORs and Access Control Violations
Просмотров 32 тыс.8 месяцев назад
[Part I] Bug Bounty Hunting for IDORs and Access Control Violations
This Update to my Bug Bounty Hunting Framework is a GAMECHANGER!!!
Просмотров 1,7 тыс.8 месяцев назад
This Update to my Bug Bounty Hunting Framework is a GAMECHANGER!!!
A Complete Guide to My Bug Bounty Hunting Framework
Просмотров 14 тыс.8 месяцев назад
A Complete Guide to My Bug Bounty Hunting Framework
Everything You Need To Know About Burp Suite For Bug Bounty Hunting!
Просмотров 15 тыс.9 месяцев назад
Everything You Need To Know About Burp Suite For Bug Bounty Hunting!
I'm Exhausted.....but my Bug Bounty Framework (Alpha Version) is FINALLY READY!!!
Просмотров 2,8 тыс.9 месяцев назад
I'm Exhausted.....but my Bug Bounty Framework (Alpha Version) is FINALLY READY!!!
LIve Bug Bounty Hunting | Unauthenticated Testing on Front.com
Просмотров 76 тыс.9 месяцев назад
LIve Bug Bounty Hunting | Unauthenticated Testing on Front.com
Live Bug Bounty Recon & Enumeration (Raw Stream) | HackerOne Public Program Starbucks
Просмотров 8 тыс.10 месяцев назад
Live Bug Bounty Recon & Enumeration (Raw Stream) | HackerOne Public Program Starbucks
Bug Bounty Tip | Do This Exercise Every Day to Get Better at Finding XSS Bugs!
Просмотров 12 тыс.10 месяцев назад
Bug Bounty Tip | Do This Exercise Every Day to Get Better at Finding XSS Bugs!
Bug Bounty Tip | How to Set Up Testing Requirements for Public HackerOne Program
Просмотров 2,3 тыс.10 месяцев назад
Bug Bounty Tip | How to Set Up Testing Requirements for Public HackerOne Program
Live Bug Bounty Recon (Raw Stream) | HackerOne Public Program - Hilton
Просмотров 44 тыс.10 месяцев назад
Live Bug Bounty Recon (Raw Stream) | HackerOne Public Program - Hilton
Bug Bounty Hunting for Server-Side Request Forgery - Who, What, When, Where, How, and Why?
Просмотров 1,1 тыс.10 месяцев назад
Bug Bounty Hunting for Server-Side Request Forgery - Who, What, When, Where, How, and Why?
Bug Bounty Hunting for Reflected XSS - Who, What, When, Where, Why, and How???
Просмотров 1,9 тыс.10 месяцев назад
Bug Bounty Hunting for Reflected XSS - Who, What, When, Where, Why, and How???
Bug Bounty Tip | Test Hidden API's From Desktop Applications!
Просмотров 2,1 тыс.10 месяцев назад
Bug Bounty Tip | Test Hidden API's From Desktop Applications!
WHAT have I been DOING for the last SIX MONTHS???
Просмотров 87410 месяцев назад
WHAT have I been DOING for the last SIX MONTHS???
Install my NEW Bug Bounty Framework on Kali Linux | The Ars0n Framework -- (No Audio)
Просмотров 7 тыс.Год назад
Install my NEW Bug Bounty Framework on Kali Linux | The Ars0n Framework (No Audio)
Bug Bounty Hunting | Deep Dive -- Part II
Просмотров 6 тыс.Год назад
Bug Bounty Hunting | Deep Dive Part II
Bug Bounty Hunting | Deep Dive -- Part 1
Просмотров 29 тыс.Год назад
Bug Bounty Hunting | Deep Dive Part 1

Комментарии

  • @kianooshmehrandish7187
    @kianooshmehrandish7187 4 дня назад

    that was incredible, thanks for sharing, please keep up the good work legend.

  • @AhmedAli-u7r2e
    @AhmedAli-u7r2e 6 дней назад

    best video i ever seen in bug hunting

  • @pubgbattlegroundindiaoffic4414
    @pubgbattlegroundindiaoffic4414 7 дней назад

    sir can i contact you ?

  • @pubgbattlegroundindiaoffic4414
    @pubgbattlegroundindiaoffic4414 7 дней назад

    can i contact you ? please give me your contact detail

  • @pubgbattlegroundindiaoffic4414
    @pubgbattlegroundindiaoffic4414 7 дней назад

    Finally someone explaining with real website. I was looking for this..This was very easy to follow as a beginner in bug bounty hunting.

  • @TSTpodcasts
    @TSTpodcasts 7 дней назад

    Great video. One of the best if you pay attention

  • @Mahedihasan-ei9qw
    @Mahedihasan-ei9qw 9 дней назад

    Thanks a lot....I take your video link on my notion account..

  • @eduardopereira2718
    @eduardopereira2718 9 дней назад

    13:50 bro was definitely angry about the question

  • @eduardopereira2718
    @eduardopereira2718 9 дней назад

    Amazing Video

  • @ChristianScott-wj6qm
    @ChristianScott-wj6qm 9 дней назад

    Hey I’m 18 months out from ETS date, I have been into CS for about 8 years now and am finally making it a career wish me luck brother, thank you for your service.

  • @mohamadelsawi
    @mohamadelsawi 12 дней назад

    Unique content 👌👌

  • @bluezmodz
    @bluezmodz 17 дней назад

    Does anyone have any advice for me getting into bug bounties, right now I'm learning how to use burpsuite

  • @technicalinformer4034
    @technicalinformer4034 17 дней назад

    Brooo Hats off man .....Hats Off...🎩 Please make more videos like this and on other vulnerability as welll❤❤❤❤

  • @somebody3014
    @somebody3014 19 дней назад

    a good program to hunt for IDORs It has to have authenticated testing and you have to be able to get multiple different accounts. taking notes is mandatory for this type of testing 19:05 first we need to identify how the application is pulling larger data sets and identifying the user. 1:03:48 left

  • @mwebsec
    @mwebsec 19 дней назад

    Congrats ! 🔥🔥🔥

  • @govindkumarjha2500
    @govindkumarjha2500 20 дней назад

    lets gooooo 😍

  • @ethicalpap
    @ethicalpap 20 дней назад

    What an absolute GEM!! PS: The workshop repo is looking amazing 👀

  • @lukeempty3386
    @lukeempty3386 20 дней назад

    Have fun

  • @PhilocyberWithRichie
    @PhilocyberWithRichie 20 дней назад

    Congrats for that!! All the best for you and the lucky attendees 🎉🎉😁 I will wait for the recording

  • @GabrielGray_2024
    @GabrielGray_2024 20 дней назад

    👍😎

  • @ahmedezealdean6189
    @ahmedezealdean6189 20 дней назад

    man you are amazing, keep up the great work.

  • @abdellahbouskine5340
    @abdellahbouskine5340 21 день назад

    Thanks man you helped us a lot 🤍

  • @MishkatMazumder
    @MishkatMazumder 24 дня назад

    Hey can anyone explain his point on 1:25:49, he makes a point of writing automations every day as practise, can someone just further explain to me the benefits of this please.

  • @JustAnotherKiid
    @JustAnotherKiid 28 дней назад

    35:01 "Is this a cloud...? I've been out in the sun today...." lolol, had me dying. Just discovered your channel man, keep at it! Good luck with the framework!

  • @georgekiwarkis8264
    @georgekiwarkis8264 28 дней назад

    i recently discovered this channel and i would like to say that as a knew person to cybersecurity you motivate me and give me alot of knew information to keep going

  • @ion_403
    @ion_403 28 дней назад

    I love your videos man 🦝

  • @SoWhatToDo
    @SoWhatToDo 28 дней назад

    Thx a lot master! Ur videos was really helpful for many guys))

  • @NoOneNew-b4c
    @NoOneNew-b4c Месяц назад

    but it needs to look like that 'X-Bug-Bounty:HackerOne-{UName}'. so you still got it wrong

  • @fahadali1372
    @fahadali1372 Месяц назад

    Read about Islam and take a look in the Quran, then decide. This world has darkness and puts a lot of stress on people. When you carry all this in your heart, you need to get it out of your body through prayer, reading the Quran, and talking to Allah. Listen to or read the story of Prophet Muhammad and how he faced the people in Makkah, even his cousins, and managed to deal with it with the help of Allah, the Greatest. Go to the gym, listen to the Quran while you are driving, and see the changes. search about azkar of morning and night and sleeping (وفقك الله)

  • @l00pzwastaken
    @l00pzwastaken Месяц назад

    Yo thanks for this video's also your parts for idors and broken access help me lot to create notes and work accordingly 🙏. Looking for live streams again :)

  • @tokyorockstarVALORANT
    @tokyorockstarVALORANT Месяц назад

    Hello rson are you still doing 1on1 coaching

  • @hichemsavastano4430
    @hichemsavastano4430 Месяц назад

    OMG please make video about semgrep I have one week and I'm trying to learn it it's little challenging like didn't find someone explain it good 😊 so plz if u can make video because that will help me in my bug bounty 😅

  • @fakepleb
    @fakepleb Месяц назад

    Welcome back, Sir

  • @cyberpro151
    @cyberpro151 Месяц назад

    very nice

  • @Unknown-u9s
    @Unknown-u9s Месяц назад

    Good To See You Back Sir 🎉

  • @samioul9180
    @samioul9180 Месяц назад

    welcome back champ

  • @razmjumehdi9069
    @razmjumehdi9069 Месяц назад

    thanks a lot 🙏

  • @TheCyberWarriorGuy
    @TheCyberWarriorGuy Месяц назад

    :)

  • @manvaldez_
    @manvaldez_ Месяц назад

    Great to see you back buddy

  • @thepotatogaming2340
    @thepotatogaming2340 Месяц назад

    Hey glad to see you back

  • @user-ff1bs4rz9m
    @user-ff1bs4rz9m Месяц назад

    Need more videos for Idor pleasseeee

  • @randriamahandryrado9800
    @randriamahandryrado9800 Месяц назад

    Welcome back, need video like that for broken access control 😊

  • @rtleo5260
    @rtleo5260 Месяц назад

    This channel never disappoints 😁

  • @lukeempty3386
    @lukeempty3386 Месяц назад

    Welcome back man.

    • @rs0n_live
      @rs0n_live Месяц назад

      Thank you! I've been here, work has just been crazy so I haven't had time to make videos. After DEFCON I should have a *lot*more time, and especially through the winter. I'm very exited to get back to it!

  • @khabeirmbh8755
    @khabeirmbh8755 Месяц назад

    Awesome ❤🎉 We need one stream for taking notes when testing with checklist

  • @huzaifamuhammad8044
    @huzaifamuhammad8044 Месяц назад

    Very informative. Missing your streams

    • @rs0n_live
      @rs0n_live Месяц назад

      Streams are coming back after DEFCON, I promise! I've been so busy, just trying to find time for everything.

    • @yahiayhDZ
      @yahiayhDZ Месяц назад

      Welcome back man 🎉, we need your lessons on business logic bugs and more videos how to look for access control ​bugs, i like when your videos are very long like the IDOR one@@rs0n_live