Giter Club home page Giter Club logo

tbhm's Introduction

The Bug Hunter's Methodology (TBHM)

Welcome! This repo is a collection of

  • tips
  • tricks
  • tools
  • data analysis
  • and notes

related to web application security assessments and more specifically towards bug hunting in bug bounties.

The current sections are divided as follows:

Before You Get Hacking

Reconassiance

Application Analysis

Other

The goal of the project is to incorporate more up to date resources for bug hunters and web hackers to use during thier day-to-day work.

@jhaddix

History

Title Conference Version Link
How to Shot Web Defcon 23 1.0 Link
The Bug Hunter's Methodology xxx xxx Link
The Bug Hunter's Methodology xxx xxx Link
The Bug Hunter's Methodology xxx xxx Link
The Bug Hunter's Methodology xxx xxx Link

tbhm's People

Contributors

altonius avatar dokkillo avatar duckandc0v3r avatar jhaddix avatar myuyu avatar nahamsec avatar toufik-airane avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

tbhm's Issues

The maps project link is dead

I watched the presentation recently and tried looking into the maps project that is mentioned both in the video and the repo, but the "maps" github is a 404. Is the project dead, or has it be renamed ?

Update README.md

Is there any addition remaining in README.md? Or it is in making but missed an update? Sharing hereby a screenshot about the same.

image

Link in Philosophy tree is dead

One of the links in the Philosophy folder seems to redirect to the home page instead of the page mentioned straight from the markdown.

https://blog.bugcrowd.com/advice-for-writing-a-great-vulnerability-report/

Hackers, Assemble!

Hello,
I'm searching for like minded hackers to make a group.
If you have telegram, you can message me
my username: @gstar36901

Thanks!

Warning: If you're a newbie, please learn some basics, and then message me. We are a more advanced group and might not be suitable for you

Making a group

Hello,
I'm searching for like minded hackers to make a group.
If you have telegram, you can message me
my username: @gstar36901

Thanks!

Warning: If you're a newbie, please learn some basics, and then message me. We are a more advanced group and might not be suitable for you

Dead links in README.md

The links in the "Before You Get Hacking" section are broken:
Learning Resources
Content Creators and Influencers

xss-hack and CSRF

Hello Jhaddix
Your tools are amazing.
could you please suggest me the repo which could help me to install javascript keylogger on victims browser and could log every keystrokes even outside of the site which he clicked.
Like Victim is browsing yahoo.com and facebook.com. at a time. and An attacker send a malicious URL which onvisit inject javascript keylogger into victims browser. like Mozilla or Uc browser etc. and when victim visit his facebook message box to send message or yahoo.com to mail someone. The keystrokes will be sent to the attacker.

I would be glad for your soon reply.

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.