No video

Finding Your First API Bug (NahamCon 2023)

  Рет қаралды 10,602

InsiderPhD

InsiderPhD

Күн бұрын

Пікірлер: 39
@goldengreengrass
@goldengreengrass Жыл бұрын
Thank you so much Katie for this video. I'm new to bug bounty and was confused where to start, this video gave me a scope where and which type of bugs I should look for. we need more helpful people like you who motivates the newly bug hunter. LOVE FROM LITHUANIA :)
@1ko9
@1ko9 Жыл бұрын
Thank you for this amazing presentation, it was really easy to follow and motivating 👏
@CraftPreneur
@CraftPreneur Жыл бұрын
thanks for this! always good content
@abdullahalmahmud446.6
@abdullahalmahmud446.6 Жыл бұрын
You're an amazing mam. Your content is captivating and your passion shines through. I'm always excited for your new uploads. Keep up the fantastic work. i am your subscriber from Bangladesh.
@evaristegl
@evaristegl Жыл бұрын
Thank you Katie:)
@thirumurugantm7073
@thirumurugantm7073 Жыл бұрын
Great explanation 👌
@happyjester
@happyjester Жыл бұрын
Thank you
@CapFilin
@CapFilin Жыл бұрын
Nice. Thank you
@Alexander007A
@Alexander007A Жыл бұрын
hey, Kattie.. can you tell me what the prerequisites for API HACKING?? what should I study for it?
@Thenileshpatil
@Thenileshpatil Жыл бұрын
WHEN I LIKE THIS VIDEO ITS TURNED PERFECT 300th BUT we love you 3000
@ghost5egy
@ghost5egy Жыл бұрын
Great
@Thenileshpatil
@Thenileshpatil Жыл бұрын
HEY YOU IAM FROM INDIA YOU ARE HELPING A LOT TO CYBERSECURITY STUDENTS PLEASE COME BACK WITH BOUNTY HUNTING TUTORIAL IN SIMPLE WAY WE WANT OLD YOU LOVE FROM INDIA 😇😇😇
@onisakura9
@onisakura9 10 ай бұрын
Love the video! 😁 Out of curiosity, what is that tool that structures your JSON in that graph? 9:01
@InsiderPhD
@InsiderPhD 9 ай бұрын
JSON Crack!
@onisakura9
@onisakura9 9 ай бұрын
Thanks 😁
@firosiam7786
@firosiam7786 Жыл бұрын
Tcm is offering free 7 day trial as part of there subscription model until 3rd July if anyone likes they have an api hacking course u can finish it in 7 days
@InsiderPhD
@InsiderPhD Жыл бұрын
Great tip, gutted I only saw it now :(
@firosiam7786
@firosiam7786 Жыл бұрын
@@InsiderPhD hope someone who needed it the most saw it and was able to take use of it 😇
@lowkeylyesmith
@lowkeylyesmith Жыл бұрын
I hope I can do that one day. I'm just getting to grips with the subject, but I have no idea where and how to start. I work in IT forensics and only have Python and Bash programming skills, but I have no idea about web development. Do you have any tips for a tutorial/book/course?
@InsiderPhD
@InsiderPhD Жыл бұрын
Try and implement a website you're familiar with in Django, just google what you don't know!
@katendemusa5747
@katendemusa5747 Жыл бұрын
Hey Katie please do more on APIs on a site that is live and secured. Do something that is challenging. Also how can i contact you for assistance. To lecture my bank team
@InsiderPhD
@InsiderPhD Жыл бұрын
Oh I have plans 🫡
@katendemusa5747
@katendemusa5747 Жыл бұрын
@@InsiderPhD how can I contact you to lecture my bank I.C.T Team
@serialkiller8783
@serialkiller8783 Жыл бұрын
can you share the slides ?
@InsiderPhD
@InsiderPhD Жыл бұрын
insider.phd/how_to_properly_own_apis_Redacted.pdf :)
@dwightschrute4056
@dwightschrute4056 Жыл бұрын
@@InsiderPhD Thank you for the slides! :)
@serialkiller8783
@serialkiller8783 Жыл бұрын
@8:02 which tool is that
@InsiderPhD
@InsiderPhD Жыл бұрын
JSon Crack
@user-er5sb9ju9h
@user-er5sb9ju9h 10 ай бұрын
please tell me, which tools is necessary in bug bounty
@InsiderPhD
@InsiderPhD 10 ай бұрын
Burp Suite
@HerbertEduardoFernandezTamayo
@HerbertEduardoFernandezTamayo 11 ай бұрын
In the minute 8.00 Katie mentions a tool to convert a json into a graph, what is the tool's name? does anybody know?
@InsiderPhD
@InsiderPhD 10 ай бұрын
JSON Crack! jsoncrack.com
@Exploit5lover
@Exploit5lover Жыл бұрын
Hey I am you fan 😎. I love all bug hunters . I am working very hard to find my first but I can't. Please anyone who reads: help me to find first
@AliYar-Khan
@AliYar-Khan Жыл бұрын
Can you suggest book for learning API hacking ?
@InsiderPhD
@InsiderPhD Жыл бұрын
There’s one that came out recently but to be honest I wouldn’t say it’s the best way to learn 🤔 I personally like apisecurity.io which has a weekly newsletter instead
@AliYar-Khan
@AliYar-Khan Жыл бұрын
@@InsiderPhD thanks ... Definitely will check it out
@TheCyberWarriorGuy
@TheCyberWarriorGuy Жыл бұрын
:)
@gwnbw
@gwnbw Жыл бұрын
Aint gonna find shit if the rest of the world is doing it.
Updated Beginners Guide to API Bug Bounty
30:05
InsiderPhD
Рет қаралды 13 М.
"Easiest" Beginner Bugs? Access Control and IDORs
31:46
InsiderPhD
Рет қаралды 19 М.
а ты любишь париться?
00:41
KATYA KLON LIFE
Рет қаралды 3,5 МЛН
Вы чего бл….🤣🤣🙏🏽🙏🏽🙏🏽
00:18
SPILLED CHOCKY MILK PRANK ON BROTHER 😂 #shorts
00:12
Savage Vlogs
Рет қаралды 49 МЛН
Hacking when all the bugs have been found?
18:53
InsiderPhD
Рет қаралды 5 М.
New OWASP API Top 10 for Hackers
29:43
InsiderPhD
Рет қаралды 9 М.
How Can Fuzzing Help You Find Hidden API Endpoints?
9:18
3 Real API Bugs I got a bounty for
17:43
InsiderPhD
Рет қаралды 9 М.
Finding Your First Bug: Manual IDOR Hunting
33:28
InsiderPhD
Рет қаралды 76 М.
API Hacking 101, w/ Dr. Katie Paxton-Fear | by Traceable AI
54:34
Traceable AI
Рет қаралды 46 М.
Finding Your First Bug: Choosing Your Target
32:32
InsiderPhD
Рет қаралды 160 М.
How To Do Recon: API Enumeration
56:12
InsiderPhD
Рет қаралды 59 М.
My Hacking Setup and How to Use It (Firefox/Burp Community)
28:28