As a Bug Bounty Hunter, what is the single most valuable resource (course, blog, cert, book) that has boosted your skills the most?
Book: @vickieli7‘s BBB + @yaworsk‘s WH101 + RWBH Blogs: @InfoSecComm
Courses: @OffensiveHunter + @NahamSec + @HusseiN98D + @theXSSrat
Platform: @PortSwigger‘s @WebSecAcademy + @snyff ‘s @PentesterLab + @zseano‘s @BugBountyHunt3r
PS: Got all of them for free;)
Methodologies: Reconnaissance: @Jhaddix + @harshbothra_ + @zseano
YouTube Channels: @InsiderPhD + @codingo_ + @stokfredrik
Computer Science Fundamentals: @geeksforgeeks
Getting started in BBH: https://www.youtube.com/watch?v=hDYqWZ11njU
Top 25 Server-Side Request Forgery (SSRF) Dorks
- ?dest={target}
- ?redirect={target}
- ?uri={target}
- ?path={target}
- ?continue={target}
- ?url={target}
- ?window={target}
- ?next={target}
- ?data={target}
- ?reference={target}
- ?site={target}
- ?html={target}
- ?val={target}
- ?validate={target}
- ?domain={target}
- ?callback={target}
- ?return={target}
- ?page={target}
- ?feed={target}
- ?host={target}
- ?port={target}
- ?to={target}
- ?out={target}
- ?view={target}
- ?dir={target}
Follow Me: Shakhawat Hossain :)