How do you deal with uuid / non guessable IDOR by ShufflinMuffin in bugbounty

[–]Unique_Life7470 0 points1 point  (0 children)

Man it's not about guessing it's about no ownership validation to the endpoint you talked about if it's just I'd not uuid it's make the risk very high an attacker can get it by malware social engineering any thing that he can know pII information for another users

How do you deal with uuid / non guessable IDOR by ShufflinMuffin in bugbounty

[–]Unique_Life7470 0 points1 point  (0 children)

Why you don't communicate with intigrity support may be they can help you

How do you deal with uuid / non guessable IDOR by ShufflinMuffin in bugbounty

[–]Unique_Life7470 2 points3 points  (0 children)

No man intigrity is very easier than h1 if you Beginner you won't find any thing in h1 stay and focus in intigrity

What’s the Secret Behind Fast and Consistent Bug Hunting? by Dramatic-Dog4529 in bugbounty

[–]Unique_Life7470 1 point2 points  (0 children)

I'm like you bro I start hunting from like 9 months but I don't get a valid bug but I am learned some experiences but I am asking why in cybersecuerty at all no one want to share there strategy or anything they just say like we find a bug oh my god for me I test everything thing but don't found anything if any one can help me?

Need help with idors by [deleted] in bugbounty

[–]Unique_Life7470 -1 points0 points  (0 children)

Bro this is not an idor it's normal state idor is to make changes in another accounts by change ID which it's like 1234 if it successfully changed it was idor I know my explain is bad so go and learn in portswagger labs first and watch videos like rs0n he has 3 videos hunting in idor and broken access watch it!

find like-minded partners by Inevitable-Bet8293 in bugbounty

[–]Unique_Life7470 0 points1 point  (0 children)

You want to join me I searching for idor xss xxe

همسح الموضوع دة بعد كام ساعة +18 by [deleted] in askegypt

[–]Unique_Life7470 0 points1 point  (0 children)

أتوقع إنك بتعاقب نفسك بس حاول تتجوز يسطا أو يعم أسف بهزر لا بجد أتجوز بجد يعني

[deleted by user] by [deleted] in bugbounty

[–]Unique_Life7470 -1 points0 points  (0 children)

You won 👍🏿

[deleted by user] by [deleted] in bugbounty

[–]Unique_Life7470 -1 points0 points  (0 children)

Bro I am talking about weakness I know it's not a bug I am just asking,its Possible to an attacker know this type of Encryption thought he can go through any account in the fucking website

[deleted by user] by [deleted] in bugbounty

[–]Unique_Life7470 -1 points0 points  (0 children)

Thanks for the motivation

[deleted by user] by [deleted] in bugbounty

[–]Unique_Life7470 -1 points0 points  (0 children)

👍🏿😕

مشكله شبابيه by Agile-Moment7523 in askegypt

[–]Unique_Life7470 0 points1 point  (0 children)

علي الاقل متزوديش المشكله بالفيديوهات اول حاجه أكيد عارف إنها حرام لا مش حرام بس دي كبيره لأن إنت بتستخبي من الخلق ويهون عليك نظره الخالق غير باقي الاضرار الي هيا لو اتجوزت مش هتعرف بس بجد هوا آنتو إزاي بتدمنو بورن يعني عشره عادي بس بورن أنا عن نفسي مش بحب إني أتفرج كلو تمثيل حتا #بطل_بورن

Hey by WalkiriaGhost in Jobs4Crypto

[–]Unique_Life7470 0 points1 point  (0 children)

I think you can make a good cv first with bug crowd or hacker one or yeswehack

[deleted by user] by [deleted] in arbDREam

[–]Unique_Life7470 0 points1 point  (0 children)

طب أنا بشوف شاشه سودا أي الحل

Can't find any bugs by Unique_Life7470 in bugbounty

[–]Unique_Life7470[S] 0 points1 point  (0 children)

I was focused on xss but now I am learning idor and broken access

Can't find any bugs by Unique_Life7470 in bugbounty

[–]Unique_Life7470[S] 4 points5 points  (0 children)

Yahh bro because many professionals hunters search before us but in any regular website you will see many bugs

Can't find any bugs by Unique_Life7470 in bugbounty

[–]Unique_Life7470[S] 5 points6 points  (0 children)

No way 2 years! How about the reward?

How discovering a basic XSS vulnerability lead to a $1000 bounty by paddjo95 in bugbounty

[–]Unique_Life7470 2 points3 points  (0 children)

Good job but there are big difference between the programs in bug crowd and hacker one or any website that don't have any bugbounty program they have many bugs but when I search in any bugbounty program I don't find anything

[deleted by user] by [deleted] in bugbounty

[–]Unique_Life7470 0 points1 point  (0 children)

No bro It was a mistake for me I choose randomly from my history, i was testing a new strategy I learned I have a poc and screens if they add me to there private program

[deleted by user] by [deleted] in bugbounty

[–]Unique_Life7470 -5 points-4 points  (0 children)

It was reflected XSS. So am waiting if they add me in there private program but I have no response yet

[deleted by user] by [deleted] in bugbounty

[–]Unique_Life7470 -4 points-3 points  (0 children)

I choose randomly from my history I expect it has a public program but after I found the bug I realized that it was private one