Hello Bug hunters | security researchers | penetration testers,
Welcome to my channel today I'm going to explain the importance of finding a fresh target for bug bounty which limits the possibility of having duplicates and other issues.
There are various methods used to find fresh targets for bug bounty and they are basically divided into two parts in my context
OFFICIAL BUG BOUNTY PROGRAMS | THIRD PARTY SITES
NON-OFFICIAL BOUNTY PROGRAMS | EXTERNAL PROGRAMS
We will focus on using some queries to locate both program types the first query is geared towards official bounty programs.
intext:Launched on jan 2021 site:hackerone.com
This query help locate new programs lurking around on hackerone.com which gives researchers a good chance of finding sleek bugs since they are just starting out.
You can modify the query to suite the need add some interesting keywords to make it find what ever you are looking for.
The second query is focused on another third party site called intigriti and the query looks like this: intext:up to € site:intigriti.com
This shows information related to various bug bounty programs on the web application in relation to the researchers need.
Now we are going to look closely at the non-official program or external program which i really love because it deviates from the crowd and most researcher are not looking towards that direction.
The query we are going to use is simple and it looks like this intext:bug bounty site:com Bitcoin
This tells google to look for the text "bug bounty' in sites that ends with .com and also having bitcoin too so its more like looking for cryptocurrency sites that host a silent bug bounty program and also pay in bitcoins.
Sharing is caring!!!
Ещё видео!