Updated Beginners Guide to API Bug Bounty

Поделиться
HTML-код
  • Опубликовано: 27 ноя 2024

Комментарии • 46

  • @swapCode
    @swapCode 11 месяцев назад +3

    Thank you for sure all of this information
    Where video links that you mention?

  • @skysunset877
    @skysunset877 10 месяцев назад +1

    I really love this video! Thank you very much!!!

  • @cybernerddante
    @cybernerddante 10 месяцев назад

    Thank you for educating the community. You are my favorite bug bounty educator. I have a question about ffuf...how slow should I run ffuf for enumeration? You can set a rate/second with "-rate" or a delay beteeen requests with "-p"...
    I'm paranoid and sometimes only run 1-2 requests per second...grandpa-style 👴🐢

    • @InsiderPhD
      @InsiderPhD  10 месяцев назад

      Depends on the client, should be in their scope or on the program page

  • @EZ-HACK
    @EZ-HACK 11 месяцев назад

    thanks im changing sides

  • @Alexander007A
    @Alexander007A 11 месяцев назад

    Thank you for the new information MAAM,
    I'm learning JS will it help me in my API?
    is learning JSON is worth for API?

    • @InsiderPhD
      @InsiderPhD  11 месяцев назад +2

      JSON yes
      JavaScript it depends, id focus on react

    • @Alexander007A
      @Alexander007A 11 месяцев назад

      @@InsiderPhD alright thank you react is also good.. by the way can you tell me why I got unsubscribe from your RUclips channel??
      When I subscribe after few days I got unsubscribe.?

    • @camelotenglishtuition6394
      @camelotenglishtuition6394 10 месяцев назад

      silly-ish question but why react and not javascript? Just wondering as I'm choosing one of them atm@@InsiderPhD

  • @MFoster392
    @MFoster392 11 месяцев назад

    Thank you for the information :)

  • @Micah-m1o
    @Micah-m1o 11 месяцев назад

    very good and helpful thanks

  • @shubham_srt
    @shubham_srt 11 месяцев назад

    thanks

  • @0xanupam
    @0xanupam 11 месяцев назад +1

    I stuck when i see authorization bearer token

  • @ISaIGoI
    @ISaIGoI 11 месяцев назад

    I have found an IDOR vulnerability but can't access other users' "id", should I report it?

    • @InsiderPhD
      @InsiderPhD  11 месяцев назад +1

      As in you can’t find how you would discover the other ID?

    • @ISaIGoI
      @ISaIGoI 11 месяцев назад

      @@InsiderPhD Yeah, ID looks like this "
      id=69690bb85f0ea26a7e5a962746cf008b8"

  • @Bit_Fury
    @Bit_Fury 11 месяцев назад

    Tank you ❤

  • @mateuszwojtowicz6270
    @mateuszwojtowicz6270 11 месяцев назад

    where can I find images from OWASP API Top 10 slide (16:55)?

    • @InsiderPhD
      @InsiderPhD  11 месяцев назад +1

      That’s from an upcoming video :) coming out this week

    • @mateuszwojtowicz6270
      @mateuszwojtowicz6270 11 месяцев назад

      @@InsiderPhD bless you all of for those!!!

  • @orbitxyz7867
    @orbitxyz7867 11 месяцев назад

    hoping more videos on web apis 😊

    • @InsiderPhD
      @InsiderPhD  11 месяцев назад +5

      I’m actually running some free live classes in January over Zoom!

    • @orbitxyz7867
      @orbitxyz7867 11 месяцев назад +1

      @@InsiderPhD can we join free classes

    • @hackergod00001
      @hackergod00001 11 месяцев назад

      @@InsiderPhD would love to join

    • @abubakarmohammed2436
      @abubakarmohammed2436 11 месяцев назад

      How can we join?

    • @InsiderPhD
      @InsiderPhD  11 месяцев назад +3

      Yup! Going to share details on Monday but you just need to register it’s 100% free

  • @0xanupam
    @0xanupam 11 месяцев назад

    what if program using authorization Bearer token

    • @InsiderPhD
      @InsiderPhD  11 месяцев назад

      Barer tokens work exactly the same as cookies

  • @orbitxyz7867
    @orbitxyz7867 11 месяцев назад

    Where is the zoom link mam

    • @InsiderPhD
      @InsiderPhD  11 месяцев назад

      Will be announcing it soon, taking a bit longer to sort out the registration form than I expected

  • @tbjehad106
    @tbjehad106 10 месяцев назад

    KITERUNNER is not working any more

  • @f.n.k.b8678
    @f.n.k.b8678 11 месяцев назад

    Need help here

  • @jasonl9266
    @jasonl9266 7 месяцев назад

    A brother that code is Brogrammer

  • @dexincheng9135
    @dexincheng9135 11 месяцев назад

    Hello insiderPhD, can you share your PPT?

    • @InsiderPhD
      @InsiderPhD  11 месяцев назад +1

      Sorry I don’t because people are dicks and steal it, you can find some older stuff on leak websites though

  • @abosi2733
    @abosi2733 11 месяцев назад

    I live in Iran and I can't work with bugcrowd or hakerone 😢💔

    • @InsiderPhD
      @InsiderPhD  11 месяцев назад +1

      Yeah Iran is still under international sanctions, it’s going to be the case for most bug bounty platforms or companies they just aren’t allowed :(

  • @Exploit5lover
    @Exploit5lover 11 месяцев назад

    Greetings 🤗

  • @0xanupam
    @0xanupam 11 месяцев назад

    easy to play with cookies

  • @volodyakost4354
    @volodyakost4354 5 месяцев назад

  • @johnkhan2042
    @johnkhan2042 5 дней назад +1

    I don't understand your accent please talk clearly

    • @ThatSecGuy
      @ThatSecGuy 2 дня назад

      enable the subtitle and read it.

  • @AnthonyMcqueen1987
    @AnthonyMcqueen1987 8 месяцев назад +1

    Enough talking and show some examples step by step would be more helpful and just this nonsense get to the point.

  • @finchking
    @finchking 7 месяцев назад

    Most of your video is just wasting time. Nothing Practical! nothing new! Nothing Helpful for real world scenario?