How to Bug Bounty in 2023

Поделиться
HTML-код
  • Опубликовано: 9 фев 2025

Комментарии • 134

  • @NahamSec
    @NahamSec  3 месяца назад

    Want to learn directly from me? Check out my course here: app.hackinghub.io/hubs/nahamsec-bug-bounty-course

  • @casualcaspero
    @casualcaspero 2 года назад +46

    This year fu*ed me up already. At least cybersec learning going well thx to all content creators like you

  • @donnieb390
    @donnieb390 2 года назад +36

    Great video, the only mishap is the volume is very low for some reason. Thanks for the content!

  • @alexandersoltesz8103
    @alexandersoltesz8103 2 года назад +14

    Thank you, I'm just starting out and my ever-lasting wonder is whether I should focus on a vulnerability type and master it or pick a target and try as many vulnerabilities as I can. As I gathered these are the two types of methodologies combating each other when discussing how to start out.
    Both have advantages I think. Picking a vuln type has the advantage that you don't get confused with too much information whereas picking a target takes the load off having to browse in targets all the time or do more recon.
    But since i've just finished creating my first and own recon script (which, for the most part, is the automation of your recon video with tomnomnom by the way, haha), I think I'm good to go exactly the way you're recommending and it's very reassuring that someone like you - I've been following your videos for long - supports a certain type of starting point that you think is the best. :)
    I would be eager to see more content like this, thanks for your contribution to the rookie community!!

  • @candogan3242
    @candogan3242 2 года назад +7

    Thank you Ben. I was registered bugcrowd today for starting bug bounty about 12-14 hours ago and this video show up, again thank you man appreciate

    • @candogan3242
      @candogan3242 2 года назад

      @@ptrcan4302 sağolasın, değer ama sevmen lazım sevmiyorsan çekilecek meslek değil

    • @GoodFella-km2io
      @GoodFella-km2io 2 месяца назад

      How is it going?

  • @alfredzo
    @alfredzo 11 месяцев назад

    I remember following you when I was QA Engineer in 2014 alongside Jason Haddix and many others. I will have to agree that Bug Bounty has evolved into so much more since then

  • @tmac9208
    @tmac9208 Год назад

    When you said tooling up, automation, etc makes you lazy..on point. This is about learning what those tools and automation are doing in the beginning and applying it to one attack. Not defending against constant attacks where you need those tools/automation to hope to keep up. Thanks for the content to get me motivated this morning.

  • @raghu600
    @raghu600 2 года назад +8

    This guy have helped me a lot in paying my engineering college fees
    Respect to you bruh

  • @flip69zz
    @flip69zz 2 года назад +3

    you the man thanks for all the advice always great learning from the greats been following your work for awhile.

  • @headlights-go-up
    @headlights-go-up 2 года назад +9

    Thank you for this. I'm a bit late to the party lol. Early 30s is a big gap compared to fresh out of college people.

    • @SirPali
      @SirPali 2 года назад +7

      On the other hand you have a lot more experience in actually learning stuff "on the job". College is great and all, but real life experience is more valuable, coming from a fellow early 30s guy ;-)

    • @sveneFX
      @sveneFX 2 года назад +5

      End 30 guy here and only doing this for a few month so no problem ✌️

    • @josiahculling
      @josiahculling 2 года назад +7

      Early 30s, just getting started. You ain't alone

    • @andrew5157
      @andrew5157 Год назад +3

      38 here plus at our age now we are more mature an serious about getting stuff done past all the partying an more goal driven

    • @Al-Fisaa
      @Al-Fisaa Год назад +2

      All the love to you guys❤❤❤ I'm 24 I'm just starting out too much love all the best.

  • @no1ne410
    @no1ne410 Год назад +2

    after 1 year i will return to this vidéo and remember my start thnx alot ❣❤‍🔥

    • @ramamimu
      @ramamimu 5 месяцев назад

      how about currently?

  • @CYBIRD0fficial
    @CYBIRD0fficial 2 года назад +4

    Great content from great hacker like you always help everyone

  • @talhaazeem3250
    @talhaazeem3250 Год назад +1

    Appreciate the efforts and knowledge shared!!!

  • @prabakarj4797
    @prabakarj4797 Год назад +1

    A perfect glimpse on Bug Bounty ! Keep uploading more stuff 👍🏻

  • @adyp487
    @adyp487 Год назад

    Great advice! Thanks Ben! I also have some light OCD so I had to comment since this is the 100th comment here :D

  • @amoh96
    @amoh96 2 года назад +4

    this my roadmap as background to start bug bounty , is it good boss #NahamSec
    - HTML & (Basics) & JavaScript (Focus)
    - NodeJs (Focus)
    - Web Basics(HTTP & Protocols ....) + Network+ From yt
    - Practice Portswiger & free labs & study docker
    - Owsap Top 10
    - Kali linux basics

  • @stanleyruheza
    @stanleyruheza 2 года назад +2

    If anyone is looking for someonw to learn with then am here. Zero bounty yet, but am constantly learning.

    • @gamingrampage2898
      @gamingrampage2898 Год назад +2

      Bro i am also can we both do it together

    • @stanleyruheza
      @stanleyruheza Год назад +1

      @@gamingrampage2898 Where can i contact you? share your contact just any

    • @whoami8105
      @whoami8105 Год назад

      ​@@stanleyruheza his id is akshdeep211

    • @jagjitsinghkainth5036
      @jagjitsinghkainth5036 Год назад +1

      @@stanleyruheza his id is akshdeep211

    • @SophiaEnax
      @SophiaEnax Год назад

      Hey Stanley, I’m looking for someone to learn with if you’re still open

  • @learn-with-noob-007
    @learn-with-noob-007 2 года назад +2

    Sir I am learning more about bug bounties but I have a problem with some money and also financial problems. But I also have the same dreams as you. But I am stuck 😢
    Love your video and also I started from your video 😢

  • @LoneStarBassPursuit
    @LoneStarBassPursuit Год назад

    🔥 content man. Thank you for sharing.

  • @pr0tagnist
    @pr0tagnist Год назад +1

    I love this bro! I'm currently working on the eJPT but after that I want to get into web hacking and bug bounty. It's something I haven't really touched and know I need some dedicated study and time to do. I got Vickie Li's book and want to work through Web Security Academy and then try out some VDP's on the platforms. Would you recommend choosing one program and trying to go really deep on that?
    Thanks for all the great content dude! Peace.

  • @MFoster392
    @MFoster392 2 года назад +2

    This channel is awesome man :-)

  • @tjoleary8738
    @tjoleary8738 2 года назад

    Awesome video...thank you Nahamsec...this has inspired me!

  • @jren2956
    @jren2956 2 года назад +1

    juicy stuff as always... thank you sir!!!

  • @shazam4444asd
    @shazam4444asd 2 года назад +3

    Hello, I entered the bug bounty at the beginner level. My goal is p1, p2 is not a high amount of explanations, p4 is a joyful event for me, even if I win small vulnerabilities. bug bounty p4. What do you recommend to be successful?

  • @milestips
    @milestips 2 года назад +2

    Always best✨

  • @sayturestorver4334
    @sayturestorver4334 2 года назад +3

    Thank you for the amazing video !
    I've always had an issue with the mentorship part..I can't seem to figure out how to collaborate and I wish I could change that

  • @xianew2408
    @xianew2408 2 года назад +2

    Thanks bro
    I spent three years hacking, but I only found one acceptable bug, 20 duplicate, and 5 informatives. I'm really bored and desperate. I need advice from you. What should I do?

  • @rahmat_qurishi
    @rahmat_qurishi 2 года назад +3

    Nice video,
    Thanks for sharing🙂

    • @NahamSec
      @NahamSec  2 года назад +2

      Thanks for watching!

  • @claudiogiura1881
    @claudiogiura1881 2 года назад +1

    Thx for sharing Ben !!!

  • @ductive
    @ductive 2 года назад +1

    Incredible video, Thanks a lot.

  • @NiralShekhat
    @NiralShekhat 8 месяцев назад

    You are the best!!

  • @An0Gt
    @An0Gt 2 года назад +1

    Great man🔥🔥

  • @andrew5157
    @andrew5157 Год назад

    im actually just starting to get my degree in computer science in cyber security so if i can get a head start an learn anything an everything can only benifit me.

  • @offlife77
    @offlife77 2 года назад +1

    great one Naham!

  • @chaospixxie
    @chaospixxie 2 года назад +2

    Awesome video! This kind of content is really helpful. I never knew working through hacker 101 content would result in an invite. Keep up the good work!

  • @Diirn
    @Diirn 11 месяцев назад

    Great video with great advice! What do you think about HTB Bug Bounty Course? Is it worth doing?

  • @AyushKumar-hv2ww
    @AyushKumar-hv2ww 2 года назад +1

    Very nice video
    Thanks for sharing 🙏❤️

  • @arjunn7683
    @arjunn7683 2 года назад +1

    🙏 Dhanyawaad

  • @HassanRaza-ek3mv
    @HassanRaza-ek3mv Год назад +2

    Thank you for the advises. By saying no tools, does it include burpsuite as well?

  • @sharma7ay
    @sharma7ay 2 года назад

    Great video boss 👍

  • @cguzmanvisuals
    @cguzmanvisuals 2 года назад +36

    #Nahomies

  • @garretonaban8533
    @garretonaban8533 2 года назад +2

    I'm just now getting into bug hunting.. is there a list of "what not to do"?

  • @hacken-lernen
    @hacken-lernen 2 года назад +1

    How do I decide if my precious invite to a private bb program is worth the program? and what programs should I better skip?

  • @sachalraja1054
    @sachalraja1054 Год назад

    Great Content

  • @lol-hz9mc
    @lol-hz9mc 2 года назад

    Thank You for the content ben!!

  • @thedarkluminary
    @thedarkluminary Год назад

    hey man your video is really cool a little tip is get a better mic plz.

  • @gonella
    @gonella Год назад

    Awesome. Thanks!!!

  • @slickwilly6868
    @slickwilly6868 Год назад +1

    To learn bug bounty & ethical hacking, should programming, networking & Operating systems be the first things you learn?

  • @089dhruv5
    @089dhruv5 Год назад

    where can i buy your course from nahm?

  • @lokendrasingh1802
    @lokendrasingh1802 2 года назад

    Thanks for making this video

  • @IvanPopov-pg5yp
    @IvanPopov-pg5yp 2 года назад

    What do you think about CBBH from Hack the box?

  • @dimitrismanos1162
    @dimitrismanos1162 Год назад

    came here from your live

  • @duyancrypto6921
    @duyancrypto6921 2 года назад

    do m1 max good for bug bounty, please nahamsec reply

  • @amirhussainbalti
    @amirhussainbalti 2 года назад +1

    Please make a playlist for starter

  • @beelostlove
    @beelostlove Год назад +1

    I would rather report hacks as long as you use them

  • @saadadil6112
    @saadadil6112 Год назад

    great video

  • @RohinJain
    @RohinJain 2 года назад

    10:18 words🙌🏻

  • @Tokga-m5r
    @Tokga-m5r Год назад +2

    You need to do a guided training step by step on how to do stuff

    • @user-zy2fq5nl3j
      @user-zy2fq5nl3j Год назад

      I don't think it works like that my friend

    • @Tokga-m5r
      @Tokga-m5r Год назад

      @lmfao69420 yeah im now realizing you cant directly show exploits and sensitive information but he cant he use metasploitable

  • @ratmoneyg
    @ratmoneyg Год назад

    can i message you personally? fresh grad and i want to turn this into a full-time job or learn bug bounty hunting and find a job in cyber security as a penetration tester. I have a lot of questions...thanks

  • @abhinavkumar8052
    @abhinavkumar8052 2 года назад

    Great video

    • @NahamSec
      @NahamSec  2 года назад

      Glad you enjoyed it

  • @garretonaban8533
    @garretonaban8533 2 года назад

    Is there a list of "what not to do"?
    Some of the terms seem like they'll charge you criminally (AT&T) if you don't follow the t&c perfectly..

    • @mahmoudadel197
      @mahmoudadel197 2 года назад +1

      Yes, most programs tell what not to do in their policy you can also look for safe harbor programs which will not take any legal action if you did something wrong accidentally

    • @garretonaban8533
      @garretonaban8533 2 года назад +1

      @@mahmoudadel197 hey, thanks, Mahmoud! I appreciate that. I started reading at&t. That one threw me off. All those others make perfect sense. Ty for term " safe harbor".

  • @ahmedkasmi7194
    @ahmedkasmi7194 2 года назад

    Thanks GOAT

  • @youforgotthelinkinthedescr6798
    @youforgotthelinkinthedescr6798 Год назад +1

    "I'll link their channel in the description"
    usually means they will not.

  • @wanishoaib_
    @wanishoaib_ 2 года назад

    I love u man, you are osm!!

  • @kdusha-
    @kdusha- Год назад

    tnx men

  • @aow6813
    @aow6813 2 года назад

    thanks man

  • @Tomandjerrycorner
    @Tomandjerrycorner 2 года назад +1

    I already started it 3 years ago by my master but now I'm not doing hunting no pccc 😭😭 i got the knowledge but no pc 😭

  • @rahulroy3697
    @rahulroy3697 2 года назад

    nice video

  • @a.k.infinity1502
    @a.k.infinity1502 Год назад +3

    Volume super low

  • @cadetpriyanshu6987
    @cadetpriyanshu6987 2 года назад

    🔥🔥

  • @mertbingol0
    @mertbingol0 Год назад

    Hello from MDISEC

  • @bohidorshon
    @bohidorshon 2 года назад +2

    You promised to update your course on Udemy

    • @NahamSec
      @NahamSec  2 года назад +7

      Still keeping my promise. Soon :)

  • @alighasemnejad5930
    @alighasemnejad5930 Год назад

    Great

  • @mdashifuzzamanshawon
    @mdashifuzzamanshawon 2 года назад

    Awesome...

  • @daljeetbhati8353
    @daljeetbhati8353 2 года назад

    ❤❤❤❤❤❤

  • @Dext3r-Hwqkwtom
    @Dext3r-Hwqkwtom 2 года назад

    I just found my first vuln sql injection triaged as High 8.2

  • @ismailachabi8627
    @ismailachabi8627 2 года назад

    What about the basics

  • @hammadzaki7534
    @hammadzaki7534 2 месяца назад

    There is guy in my neighbour who is in top 20 in bug crowd back then ......(i am lucky as fuck )

  • @КадырБотокараев

    👍

  • @mahbobalam4430
    @mahbobalam4430 2 года назад

    😍

  • @truckinguy5050
    @truckinguy5050 2 года назад

    Audio is messed u0

  • @a4aladdin428
    @a4aladdin428 2 года назад

    💝

  • @alirezashayegan8260
    @alirezashayegan8260 2 года назад

    🙏🙏

  • @Linnitup7755
    @Linnitup7755 2 года назад

    Voice volume seems a little low

    • @NahamSec
      @NahamSec  2 года назад +3

      Had a small issue with audio with this one, but the video was too good to not publish it.

  • @0xkirti
    @0xkirti 2 года назад

    Okay

  • @antwarior
    @antwarior Год назад

    your audio sucked bad on this but great video, thanks

  • @3nduser
    @3nduser 2 года назад

    audio sucked on this one. I wanted to buy your udemy course but the video was crappy.

  • @CSBO-SamGiftsonraj
    @CSBO-SamGiftsonraj Год назад

    Your voice In your videos are very low man

  • @ManagedMadness
    @ManagedMadness Год назад

    #dontpwnic

  • @ChillTamizha
    @ChillTamizha 2 года назад

    Make a videos in a little more interesting way

  • @savebyXAU
    @savebyXAU 2 года назад

    Third

  • @jruok
    @jruok 2 года назад

    He is so cute I can't focus 🙄

  • @richowens5254
    @richowens5254 Год назад

    Does that mean no nmap?? Tools to me means nmap, nikto, ffuf, amass, subfinder and the like. Automation i thought would be like nuclei, burp, msfconsole....

  • @siddharthchhetry4218
    @siddharthchhetry4218 2 года назад

    I watch similar video by @stok in 2021 when I started my bug bounties journey.

  • @Jdbdjdbdkdbdjjd
    @Jdbdjdbdkdbdjjd 2 года назад

    Don't use music

  • @aakashkokate3014
    @aakashkokate3014 2 года назад

    Great video

  • @akhilesh5896
    @akhilesh5896 Год назад

    #Nahomies