Repost
This video https://t.co/WD76QhphOn was a life-changing moment for me. Thanks to @GodfatherOrwa and @sakshamintech for creating this podcast, which completely changed my point of view.
My First VALID BUG as P1. π€π€π€π€
@errorsec_ Hello Sir, I am from India and I need to complete identity verification on Bugcrowd. Can I use my Aadhaar Card for identity verification? Also, is it mandatory to be 18 years of age or older to complete the identity verification process?
@theXSSrat Hacking is understanding an applicationβs logic and structure, and then using your own unique human thinking to break or bypass that logic and structure. AI is mainly good at tasks that are repetitive and do not require human creativity or deep thinking.
@the_IDORminator I try to find XSS vulnerabilities on my target, but while testing the application, I often come across PII exposure and other types of bugs as well. Is that okay?
Repost
This video https://t.co/WD76QhphOn was a life-changing moment for me. Thanks to @GodfatherOrwa and @sakshamintech for creating this podcast, which completely changed my point of view.
My First VALID BUG as P1. π€π€π€π€
@krishnsec Iβve been doing bug hunting for the past 4 months and recently found a P1 vulnerability on a public Bugcrowd program. With AI rapidly advancing, Iβm uncertain about the future of bug hunting and how it will impact cybersecurity. I want to understand where bug hunting is headed.
@krishnsec Iβve been doing bug hunting for the past 4 months and recently found a P1 vulnerability on a public Bugcrowd program. With AI rapidly advancing, Iβm uncertain about the future of bug hunting and how it will impact cybersecurity. I want to understand where bug hunting is headed.
@the_IDORminator Basically, should I just focus on raw hunting, understanding how an application works and using my own unique human brain to figure out how its logic can be broken instead of spending time learning random stuff? Is that the right approach?
@IslamA18269@defronixacademy@GodfatherOrwa Go through blogs, articles, and research on Google to find out the potential impact of the exposed credentials, since impact is a crucial factor in bug bounty programs.