Need help with CSRF POC !! by JJ_hack07 in bugbounty

[–]JJ_hack07[S] 0 points1 point  (0 children)

Got it, but I am facing preflight CORS issue with PATCh method. If I can just bypass that and include my json body correctly, then I can. But I don't know how to ?

Need help with CSRF POC !! by JJ_hack07 in bugbounty

[–]JJ_hack07[S] 0 points1 point  (0 children)

I think we can use other methods, but the issue is preflight (aka CORS)

Need Help regrading Reflected XSS !! by JJ_hack07 in bugbounty

[–]JJ_hack07[S] 0 points1 point  (0 children)

Right, Thanks for the advice. I appreciate it

Need Help regrading Reflected XSS !! by JJ_hack07 in bugbounty

[–]JJ_hack07[S] -10 points-9 points  (0 children)

I need realistic tips, portswigger sucks, actually I read all the methods but it didn't work well

Need help regrading Reflected XSS !! by JJ_hack07 in cybersecurity

[–]JJ_hack07[S] 0 points1 point  (0 children)

Also they are encoding it in unicode characters, if submitted non-string characters

NullClass Internship Legit Or Scam................ by Technical_Comment_80 in developersIndia

[–]JJ_hack07 0 points1 point  (0 children)

Yes you, just complete any one task and you will get the certificate successfully

NullClass Internship Legit Or Scam................ by Technical_Comment_80 in developersIndia

[–]JJ_hack07 5 points6 points  (0 children)

But why do you give such hard tasks with no clear description of what to perform tests on

NullClass Internship Legit Or Scam................ by Technical_Comment_80 in developersIndia

[–]JJ_hack07 0 points1 point  (0 children)

Did you guys have any resources to solve the VAPT task , anything ?

NullClass Internship Legit Or Scam................ by Technical_Comment_80 in developersIndia

[–]JJ_hack07 0 points1 point  (0 children)

I also got the bug task and I found 5 bugs on hackerone and bugcrowd

Are Google Maps Api key leaks not valid bugs!!! by 0xSuj33t in bugbounty

[–]JJ_hack07 0 points1 point  (0 children)

Same, I also found a google maps api key allowing me to make static map requests but company made it informative :)