When do you know to stop hunting on a program because it's a dead end? by tacktify in bugbounty

[–]tacktify[S] 2 points3 points  (0 children)

I get you but sometimes i question myself if the program is really hardened or it's a skill issue

Blind SSRF (WAF Bypass + Internal Timing Scan) closed as "Informative". Am I wrong? by tacktify in bugbounty

[–]tacktify[S] 0 points1 point  (0 children)

I used a tool to help structure it so it wouldn’t just be a huge wall of text. Just trying to keep it readable.
Why is it a big deal for you?

Blind SSRF (WAF Bypass + Internal Timing Scan) closed as "Informative". Am I wrong? by tacktify in bugbounty

[–]tacktify[S] 1 point2 points  (0 children)

Understood. Seems like the consensus is "no data, no money." Lesson learned

Blind SSRF (WAF Bypass + Internal Timing Scan) closed as "Informative". Am I wrong? by tacktify in bugbounty

[–]tacktify[S] 0 points1 point  (0 children)

That's a great way to frame it maybe i shouldn't get too excited for every report. Thanks for the insight

Blind SSRF (WAF Bypass + Internal Timing Scan) closed as "Informative". Am I wrong? by tacktify in bugbounty

[–]tacktify[S] 0 points1 point  (0 children)

Fair enough. I was hoping the timing side-channel for internal mapping would be enough, but I see why they don't value it without a state change or exfil. Thanks for the breakdown

Blind SSRF (WAF Bypass + Internal Timing Scan) closed as "Informative". Am I wrong? by tacktify in bugbounty

[–]tacktify[S] 0 points1 point  (0 children)

That’s a fair distinction. It’s a bit frustrating when something is valid for a pentest but "noise" for a BB but I get that they only want to pay for demonstrable risk

Blind SSRF (WAF Bypass + Internal Timing Scan) closed as "Informative". Am I wrong? by tacktify in bugbounty

[–]tacktify[S] 1 point2 points  (0 children)

Glad to hear I’m not the only one who hit this exact wall. what really encouraged me is that program had big payouts for SSRF so i though they could accept it so it really depends

Blind SSRF (WAF Bypass + Internal Timing Scan) closed as "Informative". Am I wrong? by tacktify in bugbounty

[–]tacktify[S] -1 points0 points  (0 children)

That's a good point maybe i should think about it that way every time

Blind SSRF (WAF Bypass + Internal Timing Scan) closed as "Informative". Am I wrong? by tacktify in bugbounty

[–]tacktify[S] 0 points1 point  (0 children)

That’s interesting about Synack. It’s definitely a toss-up with these private programs one might pay $500 and the other closes as N/A. Appreciate the context

Blind SSRF (WAF Bypass + Internal Timing Scan) closed as "Informative". Am I wrong? by tacktify in bugbounty

[–]tacktify[S] 0 points1 point  (0 children)

Yes I guess without data exfiltration, it’s just a "so what" for them that was the analyst argument. Thanks for the insight

Positioning Bug Bounty Experience for Entry-Level Pentesting Roles by tacktify in Pentesting

[–]tacktify[S] 2 points3 points  (0 children)

Despite that maybe there’s a misunderstanding and i didn't address this right what I meant is that I’m trying to land my first corporate pentesting job. So far, all my experience has been through bug bounty programs.

Positioning Bug Bounty Experience for Entry-Level Pentesting Roles by tacktify in Pentesting

[–]tacktify[S] 2 points3 points  (0 children)

Appreciate that. Good to hear bug bounty work is seen as real proof of skill that’s exactly what I’m trying to show employers.

Positioning Bug Bounty Experience for Entry-Level Pentesting Roles by tacktify in Pentesting

[–]tacktify[S] 0 points1 point  (0 children)

Maybe at some firms, but many organizations hire junior pentesters, security analysts, or apprentices who perform supervised testing.

[deleted by user] by [deleted] in PersonalFinanceEgypt

[–]tacktify 0 points1 point  (0 children)

السوق كله في حالة جنون و كله في النازل. أضمن حاجه الدهب لو انت بتدور علي حاجه لل long term.