mirror of
https://github.com/xalgord/My-Methodologies.git
synced 2024-11-10 06:04:20 +00:00
2.3 KiB
2.3 KiB
✍️ Tips and Write-ups
Bug Bounty Handbook: (https://gowthams.gitbook.io/bughunter-handbook/)
Bug Bounty Tips: (https://gowsundar.gitbook.io/book-of-bugbounty-tips/)
- https://kingcoolvikas.medium.com/how-i-was-able-to-see-sensitive-information-on-one-of-the-indias-best-school-website-5800b5ab834c
- https://ajaksecurity.medium.com/how-to-become-a-successful-bug-bounty-hunter-in-2023-f3c1499959da
- https://bxmbn.medium.com/
- https://infosecwriteups.com/bug-bounty-hunting-methodology-tools-tips-tricks-blogs-books-6f84cda7ce34
Subdomain Enumeration
The best terminal-based subdomain scanner tools to find subdomains
- AMASS
- SubBrute
- Knock
- DNSRecon
- Sublist3r
- AltDNS
- Axiom
- Haktrails
- Anubis
- Lepus
- subfinder
Subdomain Enumeration Guide
Writeup About XSS Finding
Writeup about SQL Injection
403 Bypass tool:
{% embed url="https://github.com/Dheerajmadhukar/4-ZERO-3" %}
Filter Subdomains:
awk -F[/.] 'NF > 5' subdomains.txt
Sort unique domains based on their content length
cat cl.txt | awk '{print $NF, $0}' | sort -u -k1,1 | cut -d' ' -f2-