Bug Bounty Reports Discussed

Bug Bounty Reports Discussed

By Grzegorz NiedzielaTechnology
Download on the App Store

Bug Bounty Reports Discussed episodes

  • Accidentally finding a $50,000 vulnerability - Augusto Zanellato - Bug Bounty Reports Discussed #2
    ✉️ Sign up for the newsletter: https://mailing.bugbountyexplained.com/

    This podcast is an interview with Augusto Zanellato, the hacker who submitted report with a GitHub rest API token leaked which had access to Shopify's Github account. It was reported on Hackerone to Shopify and Augusto got $50,000 for it. The best thing is that he didn't even look for a security issue.

    Link to the report explained: https://youtu.be/TOgIgD0KUVs
    The report on Hackerone: https://hackerone.com/reports/1087489
    Subscribe to Bug Bounty Reports Explained on YouTube: https://www.youtube.com/c/BugBountyReportsExplained/

    Augusto's media:
    https://twitter.com/auguzanellato
    https://hackerone.com/augustozanellato?type=user
    https://github.com/augustozanellato
    27 min
  • Finding bugs in Google VRP without recon - David Schütz - BBRD #01
    The video with David's bug: https://youtu.be/miQvovD3c04
    Original writeup: https://bugs.xdavidhu.me/google/2021/04/05/i-built-a-tv-that-plays-all-of-your-private-youtube-videos/

    ✉️ Sign up for the newsletter to receive the best hacking info right to your inbox: https://mailing.bugbountyexplained.com/

    In this episode I interview David Schütz, the 19-years old Google VRP hacker who constantly finds bugs in functionalities we use often like private videos on YouTube. We talk about his career, learning process, methodology, tooling and many more aspects that might help beginner bug bounty hunters.
    53 min

About Bug Bounty Reports Discussed

From the publisher's feed

From Bug Bounty Reports Discussed podcast you can learn from the best bug bounty hunters in the world. I ask them about their methodologies, tools they use, the advice they give to beginners and many…