Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Session on Bug Bounty #1

Open
0xhexbyte opened this issue Jul 6, 2019 · 0 comments
Open

Session on Bug Bounty #1

0xhexbyte opened this issue Jul 6, 2019 · 0 comments

Comments

@0xhexbyte
Copy link

Abstract

My talk will be about Bug Bounty, also k/a Web Application Penetration Testing.

About

My talk will be totally about bug bounty or professionally known as "Web Application Penetration Testing". I will be explaining the OWASP Top 10 vulnerabilities and show live demo of how to find and exploit them. Apart from this, I will also be explaining various tools used frequently in bug bounty process and demonstrate them, if time permits. Sharing all the resources I have used and I would prefer any beginner to, I will try to fill the audience with as much value as I will be able to in that particular time frame.

Pre-requisites

  • Required skills
    Basic understanding of web technologies such as HTML, CSS, JS.
    Exposure of Linux will be a plus.

  • Required setups
    One projector.
    Extension board for audience to plug their system, if required.

Expected duration

1.5 hours.

Level

Beginner to Intermediate

Resources

https://medium.com/@sangeeta.igit/resources-for-web-application-penetration-testing-95f64bb8333f
https://blog.sucuri.net/2019/01/owasp-top-10-security-risks-part-v.html
https://medium.com/@ehsahil/getting-started-in-bug-bounty-7052da28445a

Speaker Bio

I am Mrigendra Soni from Amity University Rajasthan. I have been into penetration testing for the past 7 months. I have worked in iOS Application Penetration Testing during my first year of college and after that I began working in web application penetration testing -OR- Bug Bounty. I have reported bugs to companies such as AngelList, DELL Technologies, StudyTonight and recently I reported my first ever bug to the Indian Government. I have also had the wonderful opportunity to speak at the Gurugram Cyber Police Internship Program 2019 about "Bug Bounty" and met some very amazing people there.

Currently I'm working as a Cyber Security Intern at StoryXpress, where my day to day task involve conducting penetration tests on their internal infrastructure and all their web applications.

- Can be done after the talk/workshop -

Include link to slides here

Include link to the video here

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant