Это видео недоступно.
Сожалеем об этом.

How I Earned $200 in just 10 minutes

Поделиться
HTML-код
  • Опубликовано: 22 янв 2021
  • #bugbounty #hackerone #technosaviour
    Hackerone is one of the best platforms for security researchers and beginners.
    hackerone.com/...
    HackerOne Report
    hackerone.com/...

Комментарии • 130

  • @KINGSTARR786
    @KINGSTARR786 3 года назад +238

    LOL.. I got $100 for this same Vulnerability after watching your video😁😁😍🤩

    • @TechnoSaviour
      @TechnoSaviour  3 года назад +28

      🎉 congrats buddy, glad to know this video helped

    • @KINGSTARR786
      @KINGSTARR786 3 года назад +16

      @@TechnoSaviour Really appreciated Man.. Keep it up.. and you know, this is my first bounty as well.. :))🥰

    • @hakeitek1851
      @hakeitek1851 3 года назад +6

      @@KINGSTARR786 to which website you tried this?

    • @mohamadtaha9091
      @mohamadtaha9091 3 года назад +3

      Really

    • @KINGSTARR786
      @KINGSTARR786 3 года назад +2

      @@mohamadtaha9091 yes bro

  • @ahtisham4752
    @ahtisham4752 3 года назад +5

    Now tell me after how many days did you get your bounty after reporting this issue.?

  • @yaswanthkumar409
    @yaswanthkumar409 Год назад +7

    I founded and reported the same vulnerability to 5 programs but no program accepted all of them closed it as informative. 😢 😢
    You are so lucky that content spoofing has been accepted in your case and also rewarded a bounty.

    • @quietube.
      @quietube. Год назад +1

      Bro it does have impact of you find it in sensitive endpoint rather on non sensitive one

    • @PranshuSethi
      @PranshuSethi Год назад

      Same bro, marked as informative...

  • @kadelwoody1213
    @kadelwoody1213 2 года назад +7

    who do you report the bug too in order to collect on bounty ? this is so awesomely simply smart

  • @steiner254
    @steiner254 2 года назад +3

    Seen this and already reported a bug in less 5 min... Cheers bro :)

  • @hexbrokers9115
    @hexbrokers9115 3 года назад +17

    Wooow nice bug hunt on low
    Please teach us bug bounty from scratch and focous on low compition nich.

  • @AkashSharma-ml2lz
    @AkashSharma-ml2lz 2 года назад +4

    Bro I'm new to bug bounty,.Can u please tell me what is P1 level,P2,P3 P4level vulnerability ??

    • @googlewebcreator814
      @googlewebcreator814 Год назад +2

      P stands for priority P1 means Critical P2 High P3 Medium P4 Low & P5 Informative ( No Bounty for P5 )

  • @PradeepKumar-dg1jm
    @PradeepKumar-dg1jm 3 года назад +13

    Can you please show how did you found those issues more clearly

  • @sabindira3158
    @sabindira3158 3 года назад +16

    Excellent brother we need more such videos

  • @aviralgupta9869
    @aviralgupta9869 3 года назад +8

    I got 300$ for improper authentication

  • @preethammm
    @preethammm 2 года назад +1

    Lol, No company accepts open redirect as a valid bug unless and until you can escalate it to something else.

  • @angelgarciaaguazul789
    @angelgarciaaguazul789 3 года назад +3

    Hi friends. Payments apply in dollars in any country ???????

  • @hackeryajemaa
    @hackeryajemaa Год назад +2

    how did you got bounty paypal or in bank

  • @vivekghinaiya6121
    @vivekghinaiya6121 3 года назад +7

    today i know text injection named vulnerability exist in world , btw thanks

    • @mynamejeff2880
      @mynamejeff2880 3 года назад

      there are a lot of injection like SQL,no SQL,text , html etc

    • @xoro163
      @xoro163 2 года назад

      @@mynamejeff2880 is it hard to learn all these?

  • @shammahagwor9205
    @shammahagwor9205 3 года назад +6

    Most programs will not accept this , high chance of getting an N/A

    • @TechnoSaviour
      @TechnoSaviour  3 года назад +1

      True, I was trying my luck. Looks like got lucky

    • @techietouche877
      @techietouche877 3 года назад +1

      @@TechnoSaviour Not just luck but a good report explaining the impact of bug properly might pay you more than allocated for a bug.

  • @soloh4cker
    @soloh4cker 3 года назад +12

    Damn.. this was an excellent find!!!

  • @67percenthsratio
    @67percenthsratio 3 года назад +2

    I got a question. Are there people on these websites who work for free? I’ve heard that there were. I’m not sure why they’d even do that.

    • @YoutubeShorties69
      @YoutubeShorties69 2 года назад +1

      Yes they work on VPD's(Vulnerability Disclosure Program) You work for free but in return you get your profile higher in points leading to private program invitations

  • @congnguyen3461
    @congnguyen3461 2 года назад

    Hi, I just wonder why text injection can lead to CSRF.

  • @Garryonfoot
    @Garryonfoot 2 года назад +2

    text injection is now not considered a bug bro

    • @djdkdkkrkfssglg2255
      @djdkdkkrkfssglg2255 Год назад

      Why bro?

    • @Garryonfoot
      @Garryonfoot Год назад

      @@djdkdkkrkfssglg2255 they will mark it informational or out of scope bro its not a bug until you leverage its impact

  • @villagerstown
    @villagerstown 3 года назад +5

    today i also reported same vuln. now i am waiting for reply....😁😍🤩

    • @anonwolf7730
      @anonwolf7730 3 года назад +1

      Did you get reward

    • @villagerstown
      @villagerstown 3 года назад +1

      no bro. it was closed as Not applicable

    • @villagerstown
      @villagerstown 3 года назад +1

      but i recieved 350$ for finding xss in xiaomi 🥳

    • @anonwolf7730
      @anonwolf7730 3 года назад +1

      @@villagerstown bro how to do xss I only know SQL injection

    • @anonwolf7730
      @anonwolf7730 3 года назад +1

      @@villagerstown which tool you used bro

  • @jonnydeep3342
    @jonnydeep3342 3 года назад +1

    we know that how many time west to find bug

  • @tirth6373
    @tirth6373 Год назад

    I got 1000$ for this Same Vulnerability

  • @febinfrancis4730
    @febinfrancis4730 3 года назад

    Thats how a hacker thinks

  • @h4cker
    @h4cker 3 года назад +1

    I reported the same issue on 3 companies and get nothing. All reports got not applicable...😣

    • @TechnoSaviour
      @TechnoSaviour  3 года назад +1

      Yes it's a low hanging bug found in almost all applications, they might consider if they are very prone to phishing

    • @TechnoSaviour
      @TechnoSaviour  3 года назад +1

      It was my first report, I never reported this again rather I focus on business logic flaws

    • @h4cker
      @h4cker 3 года назад +1

      @@TechnoSaviour it depends on the company.

  • @shreyanshraj688
    @shreyanshraj688 2 года назад

    From where i should start learning bug bounty???

    • @TechnoSaviour
      @TechnoSaviour  2 года назад +1

      There are tons of RUclips channel and Udemy courses

  • @tamimhasan2142
    @tamimhasan2142 3 года назад

    but brother it is out of scope on their program so how they give you bounty?

    • @TechnoSaviour
      @TechnoSaviour  3 года назад +1

      It was in scope when I reported

    • @sldw3221
      @sldw3221 2 года назад

      @@TechnoSaviour I found version disclosure but it is not in out of scope. Should i report it bro?

    • @abdulrahmanhs8162
      @abdulrahmanhs8162 2 года назад

      What does out of sope means?

  • @vesmanmartin7628
    @vesmanmartin7628 3 года назад

    Bro I reported the same bug in other domain in BugCrowd they treat it as P5 as per the BugCrowd VRT. Is there any possibile to lead it to P4 or P3 even ?

    • @TechnoSaviour
      @TechnoSaviour  3 года назад +1

      Yes, like I mentioned most won't accept it. But you might get lucky

  • @curinpython3827
    @curinpython3827 3 года назад

    bro ,what if the site is not legit can we still submit

    • @TechnoSaviour
      @TechnoSaviour  3 года назад +1

      You can, but if there exist no bug bounty or responsible disclosure then they won't pay.

  • @curinpython3827
    @curinpython3827 3 года назад

    Bro ,i have question

  • @ramzi1727
    @ramzi1727 3 года назад

    how do you cash out the 200$ you got?

    • @TechnoSaviour
      @TechnoSaviour  3 года назад

      There are multiple modes like PayPal bank transfer etc

  • @hackeryajemaa
    @hackeryajemaa Год назад

    bro bounty kayse ata hai

  • @mdyaminhasan2396
    @mdyaminhasan2396 2 года назад +1

    anyone can teach me bug bounty?

    • @dennistyler2885
      @dennistyler2885 2 года назад

      I'll advise you to invest in crypto like I do and make good profits as it's currently the most profitable investment after Telsa.

  • @hatakekakashi7758
    @hatakekakashi7758 3 года назад

    Too bad its considered p5 in bugcrowd :(

    • @TechnoSaviour
      @TechnoSaviour  3 года назад

      Hackerone it was considered, but like I said in the video it depends on projects.

    • @hatakekakashi7758
      @hatakekakashi7758 3 года назад

      Ahh bet, thanks for clearing it up
      Good finding tho keep it up :)

  • @0xsudip892
    @0xsudip892 3 года назад +1

    Cool

  • @jhonnysins2465
    @jhonnysins2465 2 года назад

    i just reported same vuln after watching your video. hope i get bounty xd

  • @psm876
    @psm876 3 года назад +2

    Awesome bro...
    Thanks for sharing ❤️❤️

  • @Tech_reviews6
    @Tech_reviews6 2 года назад

    My one is out of scope 😌

  • @loveyadav1201
    @loveyadav1201 2 года назад

    Bro but i did not get any reward for this vulnerability

    • @TechnoSaviour
      @TechnoSaviour  2 года назад

      As, I mentioned this is a low hanging fruit many programs don't give rewards. But there is no harm in trying out

  • @jonellmendelebar554
    @jonellmendelebar554 Год назад

    bro itry but it failed

  • @jonnydeep3342
    @jonnydeep3342 3 года назад +1

    bhai koi corce hoga to bata dena

    • @TechnoSaviour
      @TechnoSaviour  3 года назад

      Bhai, I just read hacker one reports and medium blogs

    • @jyotiranjan5343
      @jyotiranjan5343 3 года назад

      @@TechnoSaviour bhai u didn't took any course?🥺😳😳

  • @MaNaS_thAKuR
    @MaNaS_thAKuR 3 года назад

    can anyone teach me something :(

  • @DetectingCymru
    @DetectingCymru 3 года назад +1

    Well done bro. Good job

  • @jonnydeep3342
    @jonnydeep3342 3 года назад

    bro help to find bug

  • @midhun6151
    @midhun6151 3 года назад

    Nice bro 👍🏻

  • @Thunder-dp7du
    @Thunder-dp7du 3 года назад

    Great bro

  • @mchig2195
    @mchig2195 3 года назад +2

    India accent IS terrible, i didnt understand, nothing

    • @TechnoSaviour
      @TechnoSaviour  3 года назад +21

      Feel free not to watch any indian videos.

    • @itsallbts3286
      @itsallbts3286 2 года назад

      @@TechnoSaviour op bro he is now smoked

    • @zipp5022
      @zipp5022 2 года назад

      then bag off dude, why you even bother to write this comment.

    • @agusten7
      @agusten7 2 года назад

      Maybe is because you are dumb

  • @tonynorrington3371
    @tonynorrington3371 2 года назад

    How to write a bug bounty email or text to report

  • @vesmanmartin7628
    @vesmanmartin7628 3 года назад

    Where I can contact you bro ?

  • @quietube.
    @quietube. Год назад

    Text injection in not a bug now

  • @ahtisham4752
    @ahtisham4752 3 года назад

    Yes sub and like has been done

  • @arvind2791
    @arvind2791 3 года назад

    #hackerone

  • @hadhikhan7730
    @hadhikhan7730 Год назад

    Brother if u don't mind contact on dm

  • @tsrisanath8441
    @tsrisanath8441 3 года назад

    Great bro