Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Finding Hidden Gems in Old Bug Bounty Programs - Yappare, Bugcrowd's LevelUp 2017

Bugcrowd via YouTube

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Discover effective strategies for uncovering valuable vulnerabilities in established bug bounty programs through this insightful conference talk from Bugcrowd's LevelUp 2017. Learn how to approach recently joined programs that have been active for months, gaining valuable insights from the presenter's personal experiences and methodologies. Explore the differences between private and ongoing programs, understand the importance of swift action, and delve into techniques for navigating potential duplication issues. Gain a deeper understanding of program backgrounds, multiple testing approaches, and business considerations that can lead to successful bug submissions. Examine real-world examples and learn how to leverage user agent chains and mobile site testing to maximize your chances of finding hidden gems in older bug bounty programs.

Syllabus

Intro
About Me
Why this topic
Tips and Tricks
Private vs Ongoing
Private Bounty Email
Why you need to be fast
Issues in the first program
Difference between private and ongoing program
My approach
High potential of duplication
Main section
Understanding the background
Multiple tests
Duplicates
Business
Business Examples
Duplicate Submission
Duplicate Accepted
User Agents Chain
Mobile Site
I will dip em

Taught by

Bugcrowd

Reviews

Start your review of Finding Hidden Gems in Old Bug Bounty Programs - Yappare, Bugcrowd's LevelUp 2017

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.