3 Real API Bugs I got a bounty for

Поділитися
Вставка
  • Опубліковано 4 січ 2025

КОМЕНТАРІ • 33

  • @jub0bs
    @jub0bs Рік тому +11

    I'm only here for the cute animated Katie avatar! 🤩
    Seriously, though: thanks for sharing your hacking stories with us.

  • @ramkumar-lc1st
    @ramkumar-lc1st 9 місяців тому +2

    I immensely benefit from your videos!! I have a question? Is there age factor for Bugbounty i m in mid 30s,, can i be successful if i work Hard at this age!! Already got basics!!

    • @Hhhhh-v9z6c
      @Hhhhh-v9z6c 12 днів тому

      Bruh. Age don't Even matter. Find Bugs get recognition. 🎉

  • @harshraj5771
    @harshraj5771 Рік тому +1

    Thank you katie your videos are really helpful for us please make full video on READ THE DOCS .

  • @iosifcastrucci-o7v
    @iosifcastrucci-o7v 6 місяців тому +1

    Love your videos ! I’ve a simple question, in your opinion for someone( like me , 32 old) wants to start hacking in 2024 ( bug hunting ) , a learning path ?

  • @fokyewtoob8835
    @fokyewtoob8835 Рік тому +15

    Katie I just want you to know your videos helped me find my first bug a few weeks ago and I got paid $5k after that my life is changed I know I can actually make money doing this thank you so much and God bless you for real

    • @InsiderPhD
      @InsiderPhD  Рік тому +4

      That’s amazing well done man, that’s a fantastic first bounty 💪 keep at it and I’m sure you’ll be earning $$$$

    • @fokyewtoob8835
      @fokyewtoob8835 Рік тому +2

      @@InsiderPhD yes ma’am just wanted you to know that what you do does make a difference in peoples lives if you ever doubt yourself about that, I’m living proof haha again thanks and have a great one ☝️

    • @josetranscriptionist7927
      @josetranscriptionist7927 Рік тому

      yes thanks to katie, but i havent found a bug that got paid yet, all of the bugs i found was p5, where are you hunting and what kind of bugs are you looking for?

    • @fokyewtoob8835
      @fokyewtoob8835 Рік тому

      @@josetranscriptionist7927 I’m hunting on mobile apps and looking for api bugs like idors on them etc

    • @fokyewtoob8835
      @fokyewtoob8835 Рік тому

      @@josetranscriptionist7927 check out Katie’s video on mobile bug bounty on android with gent motion. Specifically that video is what led to me getting my first bounty. Hope this helps and good luck friend

  • @camelotenglishtuition6394
    @camelotenglishtuition6394 Рік тому

    Thanks for giving back to the community

  • @Progressive_Entrepreneur
    @Progressive_Entrepreneur 20 днів тому

    Love the cartoon play to this

  • @miteshvalvi1170
    @miteshvalvi1170 Рік тому +2

    please full video

  • @amoh96
    @amoh96 Рік тому +4

    Thank you katie im beginner im focus on xss csrf & blind xss any any advice give me to help me level up my skills thank you alot

    • @InsiderPhD
      @InsiderPhD  Рік тому +3

      Make sure you’re not getting tunnelvisioned on those bugs, learn the signs of a few others so you can adapt on the fly. Write some JavaScript projects to better learn the language.

  • @Death_User666
    @Death_User666 Рік тому

    Please make more

  • @CyberAbyss007
    @CyberAbyss007 Рік тому

    Thank you! 🙂 I'll need to go back and find your other GraphQL videos.

  • @MFoster392
    @MFoster392 Рік тому

    Great video thank you these really do help :)

  • @gem0x00
    @gem0x00 Рік тому

    I cannot understand the csp bypasses and dangling payloads in xss can you recommend resources and labs

  • @pratiksubedi3952
    @pratiksubedi3952 Рік тому

    I am really interested in finding How did you cause the error in the first part??

  • @superfish4603
    @superfish4603 8 місяців тому

    Not sure if intentional or not but you are leaking the target you against for the 1st bug in one of your screenshots.

  • @jxkz7
    @jxkz7 Рік тому

    Can you give me road map to become bug bounty hunter

  • @AhmedSamir-ty3vo
    @AhmedSamir-ty3vo Рік тому

    what did you do to cause an error in the GraphQL bug ?

    • @InsiderPhD
      @InsiderPhD  Рік тому +1

      I think initially I just sent a malformed query and we were trying to get Java deserialisation, until we pivoted to nested json and poped it as an application level dos

  • @shashikiran00
    @shashikiran00 Рік тому

    Katie Am Expecting How To Find Waf Bypass Xsa Businesses P1 Bug's like. Account Takeover , SQL INJECTION

    • @InsiderPhD
      @InsiderPhD  Рік тому

      P1 bugs the easiest ones are account takeovers, usually because a password reset is bugged, you can generate a token for any account or you can reset any account with a valid token

  • @Welshpatriots
    @Welshpatriots 4 місяці тому

    Katie you are the best keep hacking

  • @aga1nstall0dds
    @aga1nstall0dds Рік тому

    cool anime!!!

  • @مطبخمنى-ر6ط
    @مطبخمنى-ر6ط Рік тому

    أستمر اتمنى لك التوفيق والنجاح أنا صديقه جديده في انتظارك احلى لايك

  • @kiirapookii
    @kiirapookii Рік тому

    *our bugs are not interesting enough