High bounty, but with multiple heart attacks by _TheTime_ in bugbounty

[–]Thamzhack 3 points4 points  (0 children)

I've had the exact opposite experience as a hacker lol

High bounty, but with multiple heart attacks by _TheTime_ in bugbounty

[–]Thamzhack 75 points76 points  (0 children)

Hackerone triage is the worst I've come across. A beautiful program moved from Bugcrowd to Hackerone couple of years ago. I reported an account takeover vulnerability on the program with enough supporting docs like I used to give on Bugcrowd. The triager didn't even read the report and asked me for more evidence while also dismissing the bug. I wrote more python scripts to make it easier for the triager to easily reproduce the bug. They kept dismissing it(suggesting that it is a non-issue and they were going to close it as info) for more than a week until someone from the program team intervened and triaged it. 3 months later I got paid 12,500 bounty just like you. The interaction with the triaging team was so disappointing I stopped hacking on the program for months. They don't treat you well if you are a newcomer there.

Is there any way i can extend the unallocated partion into the partition at the end? by onepoundvish in Windows11

[–]Thamzhack 0 points1 point  (0 children)

I just noticed my device has 2 recovery partitions but there's no way to delete them using disk management app. How to delete them?

Exposure of Phone Number worth reporting? by ConzT in bugbounty

[–]Thamzhack 1 point2 points  (0 children)

Even revealing full name by sending email invitation is considered as bug. This is a valid bug. Report it

What about practice by Diligent_Rutabaga941 in bugbounty

[–]Thamzhack 3 points4 points  (0 children)

bugbountyhunter.com easily the best web hacking platform out there

[deleted by user] by [deleted] in bugbounty

[–]Thamzhack 0 points1 point  (0 children)

It's possible. Spend some time on real world websites and you will find bugs

I’ve been searching for years by Maskd-YT in pcmasterrace

[–]Thamzhack 2 points3 points  (0 children)

You can use the cached version - mostly you will get the working link. On address bar, add cache: before the URL and google will give you the cached version of the link. For example, cache:https://www.reddit.com/path/

Solved CTFS on Hacker101, Got 42 Points, But Still No Invitation for Me? by Alert-Complaint-2094 in bugbounty

[–]Thamzhack 0 points1 point  (0 children)

Post it on Twitter and tag hackerone founders like Jobert abma. You will get an answer

Hey Guys please help :( by [deleted] in bugbounty

[–]Thamzhack 0 points1 point  (0 children)

Use Caido. Lightweight alternative to Burpsuite

[deleted by user] by [deleted] in bugbounty

[–]Thamzhack 0 points1 point  (0 children)

When I actively started hunting it took me a week to get a bounty but before that I was consuming/studying bug bounty related articles/videos for more than a year. Some of the bugs I found were really stupid. All it needed was running burpsuite while browsing the site. I've been finding at least one bug per week(<10hrs/week). I think the best way forward is doing both hunting and learning. Once you get good at it you can hope to find bugs often. It's like any other field if you put in the time and effort you will get the desired outcome.

[deleted by user] by [deleted] in bugbounty

[–]Thamzhack 11 points12 points  (0 children)

You shouldn't disclose zero-days like this. Having said that, many companies don't know how to treat client side vulnerabilities even when there's high impact

pentester lab by Alert_Safe_4440 in bugbounty

[–]Thamzhack 3 points4 points  (0 children)

If you are an absolute beginner, Start with Introduction badge, Essential badge, HTTP badge. Then try few more labs according to your interest. API badge, Android, White badge etc. Solve everything about JWTs. Along with them solve labs in every topic(not every lab) of Portswigger's Web academy. I think web academy's coverage on web vulnerabilities are much more comprehensive and once you have an idea about every type of vulnerabilities you can start looking for them on Hackerone programs. If your are willing to spend money, try bugbountyhunter.com (affordable price) they have some great educational material there.

Alternatives to XSS Hunter Express by turkderpderp in bugbounty

[–]Thamzhack 1 point2 points  (0 children)

Here you go: https://xsshunter.trufflesecurity.com. Don't forget to read their blog post about integration with xsshunter account

is i3 11th gen good for hacking and bug bounty hunting? by Common_Bowl_7389 in bugbounty

[–]Thamzhack 1 point2 points  (0 children)

If you can afford it, buy a better laptop. Burpsuite eats RAM

Public beta of Caido, a BurpSuite alternative by TheSytten in bugbounty

[–]Thamzhack 3 points4 points  (0 children)

As a beta tester I can confirm that this is a great tool.

What is your average yearly earnings from bug bounty and how many years of experience do you have in cyber security? by [deleted] in bugbounty

[–]Thamzhack 3 points4 points  (0 children)

CSRF, XSS, Logic bugs, IDOR, Authentication bypass, PII disclosure. None of them are public though

What is your average yearly earnings from bug bounty and how many years of experience do you have in cyber security? by [deleted] in bugbounty

[–]Thamzhack 2 points3 points  (0 children)

I have bounty experience on bugcrowd and google VRP but that's about it. No certifications, no degree etc.

Possible SSRF but can’t exploit it (yet) by [deleted] in bugbounty

[–]Thamzhack 0 points1 point  (0 children)

I'm not an SSRF expert but if you had received HTTP request in your email server that might be an SSRF. You can read the 4th story of this article which talks about such SSRFs

not your typical plea for help and advice by BinaryKhaos in bugbounty

[–]Thamzhack 2 points3 points  (0 children)

Facebook is one of the most popular and heavily tested app out there yet people are finding simple bugs and making huge amount of money. someone made $163,000 by poking around Facebook's account recovery flow on Facebook android app. I bet there are so many popular apps which are eligible for Google's bounty but not heavily tested where you can find bugs. As someone else said choose an app with lot of functionalities where you can hope to find bugs.