2021-02-04 00:08:28 +00:00
|
|
|
# All about bug bounty
|
2021-02-08 11:35:49 +00:00
|
|
|
These are my bug bounty notes that I have gathered from various sources, you can contribute to this repository too!
|
2021-02-04 00:08:28 +00:00
|
|
|
|
2021-07-21 15:38:57 +00:00
|
|
|
![](https://img.shields.io/github/issues/daffainfo/AllAboutBugBounty)
|
|
|
|
![](https://img.shields.io/github/forks/daffainfo/AllAboutBugBounty)
|
|
|
|
![](https://img.shields.io/github/stars/daffainfo/AllAboutBugBounty)
|
|
|
|
![](https://img.shields.io/github/last-commit/daffainfo/AllAboutBugBounty)
|
|
|
|
|
2021-02-04 00:08:28 +00:00
|
|
|
## List
|
2021-02-08 11:35:49 +00:00
|
|
|
- [Business Logic Errors](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Business%20Logic%20Errors.md)
|
2021-02-09 10:29:07 +00:00
|
|
|
- [Cross Site Request Forgery (CSRF)](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Cross%20Site%20Request%20Forgery.md)
|
2021-02-04 00:08:28 +00:00
|
|
|
- [Cross Site Scripting (XSS)](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Cross%20Site%20Scripting.md)
|
|
|
|
- [Denial of Service (DoS)](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Denial%20Of%20Service.md)
|
2021-07-18 12:33:02 +00:00
|
|
|
- [Exposed Source Code](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Exposed%20Source%20Code.md)
|
2021-02-04 00:08:28 +00:00
|
|
|
- [Host Header Injection](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Host%20Header%20Injection.md)
|
2021-07-21 15:38:57 +00:00
|
|
|
- [Insecure Direct Object References (IDOR)](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Insecure%20Direct%20Object%20References.md)
|
|
|
|
- Local File Inclusion (SOON)
|
|
|
|
- [NoSQL Injection](https://github.com/daffainfo/AllAboutBugBounty/blob/master/NoSQL%20Injection.md)
|
|
|
|
- SQL Injection (SOON)
|
|
|
|
- [OAuth Misconfiguration](https://github.com/daffainfo/AllAboutBugBounty/blob/master/OAuth%20Misconfiguration.md)
|
|
|
|
- [Open Redirect](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Open%20Redirect.md)
|
2021-02-08 11:35:49 +00:00
|
|
|
- [Web Cache Poisoning](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Web%20Cache%20Poisoning.md)
|
2021-02-04 00:08:28 +00:00
|
|
|
|
|
|
|
## List Bypass
|
|
|
|
- [Bypass 2FA](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Bypass/Bypass%202FA.md)
|
|
|
|
- [Bypass 403](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Bypass/Bypass%20403.md)
|
2021-04-28 21:24:44 +00:00
|
|
|
- [Bypass 304](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Bypass/Bypass%20304.md)
|
2021-11-13 23:21:02 +00:00
|
|
|
- [Bypass 429](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Bypass/Bypass%20429.md)
|
2021-02-04 00:08:28 +00:00
|
|
|
- [Bypass Captcha](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Bypass/Bypass%20Captcha.md)
|
|
|
|
- [Bypass Rate Limit](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Bypass/Bypass%20Rate%20Limit.md)
|
|
|
|
|
|
|
|
## List CMS
|
|
|
|
- [WordPress](https://github.com/daffainfo/AllAboutBugBounty/blob/master/CMS/WordPress.md)
|
|
|
|
|
|
|
|
## List Framework
|
|
|
|
- [Laravel](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Framework/Laravel.md)
|
2021-07-21 15:38:57 +00:00
|
|
|
- [Zend](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Framework/Zend.md)
|
2021-02-04 00:08:28 +00:00
|
|
|
|
|
|
|
## Miscellaneous
|
2021-02-09 02:15:31 +00:00
|
|
|
- [Account Takeover](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Misc/Account%20Takeover.md)
|
2021-02-09 10:29:07 +00:00
|
|
|
- [Broken Link Hijacking](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Misc/Broken%20Link%20Hijacking.md)
|
2021-07-30 10:43:35 +00:00
|
|
|
- [Default Credentials](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Misc/Default%20Credentials.md)
|
2021-02-09 10:29:07 +00:00
|
|
|
- [Email Spoofing](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Misc/Email%20Spoofing.md)
|
|
|
|
- [JWT Vulnerabilities](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Misc/JWT%20Vulnerabilities.md)
|
|
|
|
- [Mass Assignment](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Misc/Mass%20Assignment.md)
|
2021-02-09 02:15:31 +00:00
|
|
|
- [Password Reset Flaws](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Misc/Password%20Reset%20Flaws.md)
|
2021-02-09 10:29:07 +00:00
|
|
|
- [Tabnabbing](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Misc/Tabnabbing.md)
|
2021-07-21 15:38:57 +00:00
|
|
|
|
|
|
|
## Technologies
|
2021-11-13 23:21:02 +00:00
|
|
|
- [Grafana](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Technologies/Grafana.md)
|
|
|
|
- [HAProxy](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Technologies/HAProxy.md)
|
2021-07-21 15:38:57 +00:00
|
|
|
- [Jira](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Technologies/Jira.md)
|
|
|
|
- [Jenkins](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Technologies/Jenkins.md)
|
|
|
|
- [Moodle](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Technologies/Moodle.md)
|
2021-11-13 23:21:02 +00:00
|
|
|
- [Moodle](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Technologies/Nginx.md)
|
2021-02-04 00:08:28 +00:00
|
|
|
|
|
|
|
## Reconnaissance
|
2021-02-09 02:15:31 +00:00
|
|
|
- [Scope Based Recon](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Recon/Scope.md)
|
|
|
|
- [Github Dorks](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Recon/Github%20Dorks.md)
|
|
|
|
- [Google Dorks](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Recon/Google%20Dorks.md)
|
|
|
|
- [Shodan Dorks](https://github.com/daffainfo/AllAboutBugBounty/blob/master/Recon/Shodan%20Dorks.md)
|
2021-02-04 00:08:28 +00:00
|
|
|
|
2021-07-18 12:33:02 +00:00
|
|
|
## Coming Soon!
|