Practical Bug Bounty

Поділитися
Вставка

КОМЕНТАРІ • 91

  • @samha1513
    @samha1513 5 місяців тому +7

    TCM is recommended to anyone with little to no knowledge about cybersecurity in general. I’m preparing for OSCP and didn’t know where to start but tcm made is super easy.

  • @jasperthetom
    @jasperthetom 11 місяців тому +18

    This free video covers a lot more topics than a course. I really appreciate what you guys are doing. I really like watching your videos. Love from India Sir.

  • @4b5urd.
    @4b5urd. 11 місяців тому +8

    I"ve got a subscription to TCM Academy but I just wanted to show some love here. You guys are awesome. Thanks for all you do for the community

  • @Erubius37
    @Erubius37 11 місяців тому +58

    Taking the PJWT (the relevant cert for this course) tomorrow! Massively excited to put what I’ve learned to the test!

  • @siddharthraychaudhuri7250
    @siddharthraychaudhuri7250 11 місяців тому +5

    Thanks, guys. I bought the Pnpt and a 3 month membership mainly for this course, during the sale. Thought I'd be able to complete it too with PNPT. Kinda overestimated myself and am still working through PEH. 10th March my monthly subscription ends, and I don't think I can afford it anymore. Was really sad that this one will remain incomplete. At least now I know that even if my subscription ends, I can still cover some part of the curriculum because of this upload.😢

    • @agp436
      @agp436 9 місяців тому

      How's is the tcm Security Courses?? Are they worth it in terms of skills and do they provide practical lab to practice??

  • @husseindhooma5816
    @husseindhooma5816 11 місяців тому +2

    Thank you, Heath, for providing us with this amazing information, we all need to learn the Practical aspects of Bug Bounty especially for some of us that would like to earn some extra cash.

  • @زيادساميخلف
    @زيادساميخلف 5 місяців тому +2

    Best course for a bug bounty I have seen for now

  • @martinlastname8548
    @martinlastname8548 11 місяців тому +4

    Currently doing the PNPT. Enjoying it. More so than the PEN-200

  • @dhruvildesai8378
    @dhruvildesai8378 11 місяців тому +2

    Thank you, Heath, for providing us with this amazing information!

    • @adarshsingh4693
      @adarshsingh4693 9 місяців тому

      What you learned after completing this ?

  • @bikramshiwakoti
    @bikramshiwakoti 11 місяців тому +1

    Can't believe this premium content available for free

  • @MFoster392
    @MFoster392 11 місяців тому +5

    Awesome, I'm doing this on the TCM website right now. :)

    • @Manas0_0
      @Manas0_0 11 місяців тому +2

      Is this the exact first part of that website course?

    • @MFoster392
      @MFoster392 11 місяців тому

      Yes this is the first half of the practical bug bounty he also has a free complete course on ethical hacking if you're wanting to be a Penetration Tester ua-cam.com/users/results?search_query=practical+ethical+hacking+-+the+complete+course @@Manas0_0

  • @Resh7374
    @Resh7374 7 місяців тому +3

    Awesome video guys, thanks. Ill be coming over to your website to take some training soon.

    • @TCMSecurityAcademy
      @TCMSecurityAcademy  7 місяців тому

      Awesome! Here's a link to our bug bounty course: www.tcm.rocks/pbb-y

  • @_CryptoCat
    @_CryptoCat 11 місяців тому +4

    Let's go! 🔥

  • @soanzin
    @soanzin 10 місяців тому +3

    I have a doubt. IF the scope says that automation tools are not allowed, is this related only for vuln scanners or to all other tools, like directory/asset discovery. Tools like ffuf, gobuster, etc.

  • @anonyghost7422
    @anonyghost7422 11 місяців тому +1

    Heath with another fat W taking care of the noobs (like me) !

  • @TravelWithMufaa
    @TravelWithMufaa 10 місяців тому +1

    Hey.... Dear,
    Can I run this BugBounty-v1.1 LAB on my Windows OS...???

  • @ibtesamRicky
    @ibtesamRicky 8 місяців тому

    Thanks always for the free content. Can we get the Detection engineering for beginners course content please? Thank you!

  • @butler_NA
    @butler_NA 11 місяців тому

    I love this! Thank you so much!

  • @johnsnow1062
    @johnsnow1062 11 місяців тому

    Great resource for 2024

  • @reab111
    @reab111 4 місяці тому

    Using curl on APIs in room 5 returns generic error, regardless if I copy the command from the room or try with credentials from tutorial (those creds are not visible to me).
    {"status":"error","message":"Required fields missing"}
    Tried resetting the lab and db with init.php still nothing. Time stamp: 4:12:28
    Edit: For anyone that has this problem, json username and password fields were missing double quotes

  • @szicario
    @szicario 5 місяців тому

    im really weak in web apps compared to network, this is incredibly helpful. Thank you. Is the TCM course for practical bug bounty more in depth than this youtube video?

  • @javierarzon4853
    @javierarzon4853 11 місяців тому

    Love your Videos......awesome

  • @eliote_nature
    @eliote_nature 6 місяців тому

    i want to give italian kiss to this course>>>>>😗

  • @fuzelmultani2290
    @fuzelmultani2290 11 місяців тому

    i love you TCM.

  • @yooyoo2903
    @yooyoo2903 6 місяців тому

    Please upload the full course

  • @BongzandTakudzwa
    @BongzandTakudzwa 11 місяців тому

    Thank you Heath

  • @carsmadness8555
    @carsmadness8555 8 місяців тому +1

    i have a question. in the rules for azena program.
    it said request_header: X-Intigriti-Username: {Username}
    how to add it?

  • @meh.7539
    @meh.7539 11 місяців тому

    @16:40 I thought the dog snoring in the background was mine.

  • @khadijaijaz6428
    @khadijaijaz6428 6 місяців тому

    Is it a full detail course on bug bounty?

  • @PandaXpress668
    @PandaXpress668 4 місяці тому

    Question - what makes an "automated tool"? Wouldn't brute forcing count as an automated tool? Great video by the way, thanks.

  • @andrewthurstenson3359
    @andrewthurstenson3359 7 місяців тому +3

    If anyone else ran into an error when setting up the lab stating "'172.20.0.4' is not allowed to connect to this MySQL server in /var/www/html/db.php". I was able to resolve this by removing the volumes for the mysql container, bb-db, in the compose file

  • @fatcat3513
    @fatcat3513 4 місяці тому

    I wish I could start hacking so I can make money to subscribe to this course 🤦‍♂️

  • @echolon-m8i
    @echolon-m8i 10 місяців тому

    Very awesome Content

  • @saminbinhumayun858
    @saminbinhumayun858 10 місяців тому

    If there is scope given in bb program do we need to do directory bruteforcing?

    • @orionblu3
      @orionblu3 9 місяців тому

      Brute force the domain that's in scope at a rate that won't flood the programs defense team

  • @gandalfthegrey2777
    @gandalfthegrey2777 9 місяців тому

    I am having a problem, I cannot open the Lab locally, what is the local host port it's running on? In the video he just went to localhost without any port or IP

  • @AbdelrahmanMagdy-ny9wy
    @AbdelrahmanMagdy-ny9wy 6 місяців тому

    im having trouble with the api labs, server keeps responding with missing fields and i didn't manipulate the prepared requests, i copy pasted them into my terminal.

  • @d3crypt_m3
    @d3crypt_m3 6 місяців тому

    Capstone folder is missing in Google drive link

  • @sammydammy-r4k
    @sammydammy-r4k 5 місяців тому

    thanks for the great video
    however, i cannot access the lab as my kali linux keep saying i cant install docker-compose
    any alternative guys

  • @hpr992
    @hpr992 2 місяці тому

    Hello Heath/others/comments, I need help with Burpsuite, feel free to to send advice my way, but it just won’t work for me. If it’s a server thing, I’d understand, but I have the certificate and everything installed in my Linux machine, yet it still won’t work, advice? I’d appreciate it.
    Edit: I have figured out what to do, but do you have to keep manually forwarding traffic? Wish there was an automatic way.

    • @01_r25
      @01_r25 19 днів тому

      if want to intercept, it will be needing to manually forward req

  • @youtubeshort2068
    @youtubeshort2068 11 місяців тому +1

    How to download lab ?

  • @abdulmalik_1_2_0_5
    @abdulmalik_1_2_0_5 10 місяців тому

    Please sir hope you are having a wonderful time
    How can i get the course lab sur

  • @bigman2788
    @bigman2788 11 днів тому

    where to go from here?

  • @cj7j
    @cj7j 12 днів тому

    Cool !

  • @NISHITHTRIVEDI-vh7bn
    @NISHITHTRIVEDI-vh7bn 3 місяці тому

    2:40 is it free??

  • @ellerionsnow3340
    @ellerionsnow3340 11 місяців тому

    Aye!

  • @I_hu85ghjo
    @I_hu85ghjo 8 місяців тому +3

    1:50:00

  • @tiknikalsupport
    @tiknikalsupport 11 місяців тому

  • @shivakumarmv4249
    @shivakumarmv4249 9 місяців тому

    This video is more detailed about Burpsuite...

  • @johnsnow1062
    @johnsnow1062 11 місяців тому

    Cool

  • @I_hu85ghjo
    @I_hu85ghjo 8 місяців тому +1

    4:29:14

  • @MariaMunoz-w7h
    @MariaMunoz-w7h 4 місяці тому +1

    Can you really make money out of bug bounty??

    • @TCMSecurityAcademy
      @TCMSecurityAcademy  4 місяці тому +1

      You can! Amount will vary but it is possible to make money off bug bounty.

    • @MariaMunoz-w7h
      @MariaMunoz-w7h 4 місяці тому

      @@TCMSecurityAcademy Thanks, what course in you website do you recommend to start, i am a freshman in cybersecurity and networking, another question is is true that Most programs follow a "first-to-report" rule, meaning only the first hacker to discover and report a specific vulnerability gets the reward.. thanks for answering

  • @Thirumurug0xan
    @Thirumurug0xan 11 місяців тому

    30,362

  • @Glocksxaks
    @Glocksxaks 3 місяці тому

    when i run the curl command to get information, i get a 403 error, i tried bypassing this with the “-c cookie.txt” option, but the results aren’t satisfactory. anyone else experiencing this?

  • @Dimitrilev
    @Dimitrilev 6 місяців тому

    please upload the other half.@TCMSecurityAcademy

  • @surajgimba4157
    @surajgimba4157 11 місяців тому

  • @I_hu85ghjo
    @I_hu85ghjo 8 місяців тому +1

    2:55:43

  • @I_hu85ghjo
    @I_hu85ghjo 8 місяців тому

    2:20:00

  • @I_hu85ghjo
    @I_hu85ghjo 8 місяців тому +1

    3:37:00