πŸ‡ΈπŸ‡¦ ROOD | GOAT
πŸ‡ΈπŸ‡¦ ROOD | GOAT

@0x_rood

6 Tweets 2 reads Jan 23, 2023
Best 5 repositories for bug hunters and penetration tester | Thread
#bugbounty #bugbountytips #infosec
1- keyhacks
KeyHacks shows ways in which particular API keys found on a Bug Bounty Program can be used, to check if they are valid.
github.com
2- can-i-take-over-xyz
searching for the name of the service you are targeting in the issues tab. That way you can see the on-going discussion and more detailed steps on how to claim the subdomain you are after.
github.com
3- DOMXSS Wiki
The DOMXSS Wiki is a Knowledge Base for defining sources of attacker controlled inputs and sinks which potentially could introduce DOM Based XSS issues.
github.com
4- HowToHunt
Collection of methodology and test case for various web vulnerabilities.
github.com
5- bug_bounty_checklist
best checklist if you're start hunting or pentest
github.com

Loading suggestions...