As always, a FANTASTIC video which took us for two hours straight without feeling it .. A deep thanks from the bottom of our heart for what you are doing . Truly, your teaching intention has reached us . THANKS
What Mr. R-s0n has taught about bug bounty cannot be found in any medium. All those books and RUclips videos are teaching surfaces. They don't teach the detail side of it. We really appreciate Mr. R-s0n. Thank you.
That's a great question! I typically see groups take one of two strategies: 1. Everyone splits the bounty evenly, even if they did not participate in the hunting: This typically works for teams that know each other very well, have worked together before, and aren't highly motivated by money. This strategy can definitely breed resentment if you have someone "flaky" on the team. A way to mitigate that issue is that everyone agrees upfront that if someone doesn't participate in X way, they will be removed from the group. I've even seen groups create an SLA for async responses and number of synchronous meetups each month. 2. Money is split per bounty, based on participation: This is the most common way I see teams split pay. Usually they come to some agreement for the scribes and automation engineers, for example if their notes/tools directly lead to finding a vuln they get 50%, etc. Mentors typically get a split of every vuln they advise on. Ultimately, the most important thing is to sit down as a team and formally set up/document these agreements. The simplest way to do that is just to say "Everyone who contributed to finding a bug splits the money evenly" but again, if you're primary motivation is earning money that may not work for you.
@@rs0n_live Thank you for the detailed response. Building a group is super stressful, as is talking in voice chat. However, I will continue to slog through discord . I will keep following your videos too. And again wow such a large reply.
something i hate about watching live bounties n bug bounty tips in general is nobody talks about certain things, i've noticed a lot of people who do live bug bounties don't use vpns or proxies but don't say why, nobody talks about the program rules like how to change user agent for automated/manual recon, nobody explains anything like that
As always, a FANTASTIC video which took us for two hours straight without feeling it .. A deep thanks from the bottom of our heart for what you are doing . Truly, your teaching intention has reached us . THANKS
What Mr. R-s0n has taught about bug bounty cannot be found in any medium. All those books and RUclips videos are teaching surfaces. They don't teach the detail side of it. We really appreciate Mr. R-s0n. Thank you.
This was a FANTASTIC video. Thank you for this and your very detailed breakdown dude
Your videos have taught me so much, sir.
These is brilliant
You change my life, Thank you so much bro
Client side injection part 2 plz
Welcome back.
Love this notifications
I"m glad! I'll be in the chat to answer any questions that the group has :)
What a nice personality ❤?
Bro do a live bug hunting specialy focus on api
need One More Video On Access Controls Please
How do you divide up the pay for the group?
That's a great question! I typically see groups take one of two strategies:
1. Everyone splits the bounty evenly, even if they did not participate in the hunting: This typically works for teams that know each other very well, have worked together before, and aren't highly motivated by money. This strategy can definitely breed resentment if you have someone "flaky" on the team. A way to mitigate that issue is that everyone agrees upfront that if someone doesn't participate in X way, they will be removed from the group. I've even seen groups create an SLA for async responses and number of synchronous meetups each month.
2. Money is split per bounty, based on participation: This is the most common way I see teams split pay. Usually they come to some agreement for the scribes and automation engineers, for example if their notes/tools directly lead to finding a vuln they get 50%, etc. Mentors typically get a split of every vuln they advise on. Ultimately, the most important thing is to sit down as a team and formally set up/document these agreements. The simplest way to do that is just to say "Everyone who contributed to finding a bug splits the money evenly" but again, if you're primary motivation is earning money that may not work for you.
@@rs0n_live Thank you for the detailed response. Building a group is super stressful, as is talking in voice chat. However, I will continue to slog through discord . I will keep following your videos too. And again wow such a large reply.
anybody want to create a team ?
something i hate about watching live bounties n bug bounty tips in general is nobody talks about certain things, i've noticed a lot of people who do live bug bounties don't use vpns or proxies but don't say why, nobody talks about the program rules like how to change user agent for automated/manual recon, nobody explains anything like that
Found that your discord server is gone. What is it only me or your took it down?
3 minutes to go