Bug Bounty: Content Discovery on Large Scope Like a Pro! | 2024

Поділитися
Вставка
  • Опубліковано 11 вер 2024
  • Are you ready to take your content discovery game to the next level? In my latest video, I dive deep into how you can approach large-scope targets like a pro using the powerful tool, meg by tomnomnom. If you’ve ever felt overwhelmed by the sheer size of your target or unsure where to start, this guide is for you. I'll walk you through the entire process, from setting up meg on your machine to leveraging it for massive content discovery. Whether you're dealing with a sprawling web application or multiple subdomains, I'll show you how to uncover hidden endpoints and juicy files that others might miss. Perfect for both beginners and seasoned hunters looking to refine their approach, this video is packed with practical tips and real-world examples. Don’t just scratch the surface-learn how to dig deep and find the gold in your next engagement.
    Website: bepractical.tech
    Telegram: telegram.me/be...
    Previous Video: • Testing XSS Tools On T...
    The Art Of Web Reconnaissance:
    www.udemy.com/...
    Hacking Windows with Python from Scratch: www.udemy.com/...
    The Ultimate Guide to Hunt Account Takeover:
    www.udemy.com/...

КОМЕНТАРІ • 36

  • @SecureByBhavesh
    @SecureByBhavesh Місяць тому +2

    informative!

  • @MustafaGains
    @MustafaGains Місяць тому

    Thx am gonna check it out this tool will be really helpful to go around ip block by or rate limits when doing content discovery especially when u have a big worldlist

  • @jawathossainrian
    @jawathossainrian Місяць тому +4

    20K Special When

  • @paritoshthakur9537
    @paritoshthakur9537 27 днів тому +1

    Bro your website is not working it shows 522 error in response and no cookies are stored in order to establish stable connection 😅

  • @RSKRescueEquipmentInfo
    @RSKRescueEquipmentInfo Місяць тому

    Still the best author on youtube

  • @navinpari419
    @navinpari419 29 днів тому

    Please post a video about your approach on the target

  • @ayushmanngupta7027
    @ayushmanngupta7027 26 днів тому

    What is the difference between Ffuf and meg , If we get block then we can use with proxychains ???

  • @Free.Education786
    @Free.Education786 Місяць тому +1

    Thanks, brother, 🎉❤ but I guess it's a useless tool 🔧 because it needs wordlists pathlists, and even after providing all this, I failed to find the vulnerable endpoints and parameters like aspx?id=0 or php?id=0 Better to use parampram, parameth, katana, collector, carridi, etc. Thanks 🎉❤

    • @BePracticalTech
      @BePracticalTech  Місяць тому

      @@Free.Education786 It is a good tool to do a quick recon on large scope targets

  • @amanshah2110
    @amanshah2110 Місяць тому +2

    Bro which terminal are you using.

  • @abdulx01
    @abdulx01 Місяць тому

    Bro, bring some advance xss techniques to find xss.

  • @Indian-muslim-boy-i5o
    @Indian-muslim-boy-i5o 21 день тому

    Bhai wordpress ki site mai post per xss script dalne kaam kar raha hai tum jara dekho na, or hackerone mai report step by step kaise likhna padega kuch batuo yaar

  • @Indian-muslim-boy-i5o
    @Indian-muslim-boy-i5o 21 день тому

    Bhai kesi bhi site mai, profile photo ki jagah php shell upload ho raha hai wo bug haga na, mai jayada padai likha nhi hu english mai kaise report likhna hai hame nhi aata bahut problem ho raha, report submit kardiya hu hackerone mai, lekkin wo log step by step likhne ko kahe Raha likh nhi saka kia karu kuch batuo yaar

  • @mateinone5656
    @mateinone5656 Місяць тому

    Hello, may you please make a video on how to bypass 403 to access a file or directory?

    • @BePracticalTech
      @BePracticalTech  Місяць тому

      I have already created some videos on this. Please take a look at them
      ua-cam.com/video/mxSJp_4mVJ0/v-deo.htmlfeature=shared

  • @om3726
    @om3726 Місяць тому

    Hi bro can you please make a video on what to do after finding subdomains

  • @harishs8608
    @harishs8608 Місяць тому

    Make a video about vps server for bug bounty

  • @Eazi_boii
    @Eazi_boii Місяць тому

    How do you submit a vulnerability to a company that doesn't have a bounty program?

  • @TonyVarghese-b5f
    @TonyVarghese-b5f Місяць тому

    katana and meg doing the same thing but different menthod .am i right ?

  • @navinpari419
    @navinpari419 29 днів тому

    what is the use of VPS?

  • @the_py_coder
    @the_py_coder Місяць тому

    Which vps you are using

  • @M41Jams
    @M41Jams 9 днів тому

    Brother please send me your background wallpaper

  • @roggaming9138
    @roggaming9138 Місяць тому

    Can you share your methodology

    • @BePracticalTech
      @BePracticalTech  Місяць тому

      I'll keep this in mind for my upcoming videos😉😉

  • @navaneethgovindaprabhu6635
    @navaneethgovindaprabhu6635 Місяць тому

    -o error

  • @shashiacademy
    @shashiacademy Місяць тому

    hi bhai aapk video dekh ka aacha laga bro mujha burp ka related aap se kuch help cahiya thi please agar meri help kar de ge to maa aapka aabhari rahu ga

    • @BePracticalTech
      @BePracticalTech  Місяць тому

      send a mail at learnthepracticalway@gmail.com

    • @shashiacademy
      @shashiacademy Місяць тому

      @@BePracticalTech bahiya i have send you the mail please kindly help if you can