@yamarajislitaf Hi bro thanks for this article I tried got some new subdomains with yandex dork but
how to find sensitive or internal files or misconfiguration keywords to select like some of dorks are russian should use that? This is little bit new for me as I am a new hunter can u guide me
@Mdhsan19 I’m new to bug bounty and recently had same report downgraded from P3 to P4 on Bugcrowd. I wanted to ask if you’d be open to giving some advice on how to better justify impact for a P3.
@sl4x0 I have seen videos of this and articles as well but the program says not importing these entries as dependencies. I have got confused due to different sources So can u clarify it little how to actually determine it is a internal dependency??
@bug_vs_me Hey! Just curious — the coin you got, was that from a CTF event or was it for something else? I'm a new bug hunter, so I’m trying to learn how these things work. Looks really cool!
@0xw2w Hey i am new hunter I am not able to understand can u explain me a little with example where this is injected exactly how 1 click ato is happening
@0xbartita Hey can you explain me little a real world impact of this how a attacker can exploit it I am bit confused about that.
Secondly just confirming once a saml response is sent and you are logged it should invalidate u should not be able to use same saml response again right?