How To Write A Pentest Report That Gets Your Findings Fixed

Поделиться
HTML-код
  • Опубликовано: 3 дек 2024

Комментарии • 16

  • @NahamSec
    @NahamSec  3 дня назад +2

    Big THANK YOU to our sponsor PlexTrac for making this video happen! 👉🏼 plextrac.com
    Here's a copy of my Pentest Report template for free! 🆓 hhub.io/5xALMdSPve
    📚 If you want to learn bug bounty hunting from me: bugbounty.nahamsec.training

  • @BinaryAdventure
    @BinaryAdventure 16 часов назад

    This is great advice. I work at a Fortune 100 company on an in-house pentesting team, and we use a standardized template for these, with automation to help us fill them out. The template is very similar to what you showed here, but you actually provide a bit more in certain areas, such as the overall Recommendations section in the Executive Summary rather than just on each finding. Unfortunately, many bug bounty reports are lacking in impact information which is a reason organizations often prefer pentesting. In addition, I recommend providing a CVSS score and links to relevant CWEs for each finding.

  • @GarryBable
    @GarryBable 2 часа назад

    Very helpful great video, thank you for sharing. Love your content

  • @WaseemAkram-kx7tq
    @WaseemAkram-kx7tq День назад

    Where to buy that shirt, you're wore ? Really cool t-shirt😅

  • @crasystuff2.035
    @crasystuff2.035 2 дня назад

    Thank you very much Sir, you're saving my life!!!!

  • @edwinrerimoi7823
    @edwinrerimoi7823 2 дня назад

    finally bro i needed this ...😅

  • @alexsanzphoto
    @alexsanzphoto 2 дня назад +1

    What if you don’t have a company?

    • @the_sandman00
      @the_sandman00 2 дня назад

      You may use for freelance projects. If not a freelancer as well then you don’t need to make the report.

    • @BinaryAdventure
      @BinaryAdventure 16 часов назад

      You can easily create a basic company name and register a Sole Proprietorship.

  • @skarthiLCE
    @skarthiLCE 2 дня назад

    thanks bro

  • @RmVsRmVsCg
    @RmVsRmVsCg День назад

    Hey copilot please read a bug/pentest report for

  • @latesthitstch9428
    @latesthitstch9428 2 дня назад +1

    Neat one there man. I believe the key is to explain in the report like you are teaching it to a kid or someone who know nothing about computers.and importantly , show the impact . Very good video man 🙏

    • @NahamSec
      @NahamSec  День назад

      Thanks for watching!!

  • @law6zx7
    @law6zx7 2 дня назад

    1