DEV Community

Discussion on: From beginner to submitting 5 reports to HackerOne

Collapse
 
gaurav_00000 profile image
Gaurav

I am security researcher at bugcrowd but same like all got duplicate can you help me related to CTF I find much but got much resources but can't understand where to start like in bug bounty I learner from p4 to P1 but here is no idea what to do ?

Collapse
 
pirateducky profile image
pirateducky

I think the most important thing in bug hunting is sticking with a target, choosing one vulnerability and sticking with that one throughout the application seems to be what most bug hunters suggest. Also, use the application as a regular user and keep in mind all endpoints you see, this will give you a good layout of the application and the functions that run in the back-end. I'm still looking for my first valid bug as well but let's keep trying and learning! If you have any tips I'd love to hear them as well!