Пікірлер
@ileanabarrionuevo94
@ileanabarrionuevo94 3 ай бұрын
Everyone should come to Ekoparty <3
@jxkz7
@jxkz7 4 ай бұрын
Great videos
@Gray3ther
@Gray3ther 4 ай бұрын
Was that Gollum in his incognito voice near the end of the Q&A? Good to hear he's out of his cave! 😂 Great talk. Awesome guy!
@jaydevsolanki1047
@jaydevsolanki1047 3 жыл бұрын
It's been a year in big bounty and I am still looking for my first bug 🐞
@m0niruzzaman
@m0niruzzaman 3 жыл бұрын
Excellent ♥️
@andreslauga
@andreslauga 3 жыл бұрын
Great! This helped me a lot! Thanks Mathias :)
@domaincontroller
@domaincontroller 3 жыл бұрын
26:02 DOM XSS, all these functions are extremely dangerous 26:33 innerHTML some safe javasScript scripts, DOMpurify.sanitize, parse JSON 28:28 Using safe functions safely 29:54 Safe Client-Side JSON Handling 31:48 Sandboxing, advertising, I hate security, iFrame sandboxing
@IMWATCHING501
@IMWATCHING501 3 жыл бұрын
everytime I hear 'mental health' my dick goes limp.
@MH-tw1qi
@MH-tw1qi 4 жыл бұрын
👍🌹🌹
@DavidPerez-dt9nb
@DavidPerez-dt9nb 4 жыл бұрын
But somehow experience should be considered against time taken, since time taken by someone like me who is a total noob cant be compared to the time taken for more experienced bounty hunters
@sillydadddy
@sillydadddy 4 жыл бұрын
Awesome talk
@pentestical
@pentestical 4 жыл бұрын
Still up to date! Frans Rosén is a great speecher
@ronnyj4179
@ronnyj4179 4 жыл бұрын
0 days? lol thats not "oh". it's zero days.
@andreslauga
@andreslauga 4 жыл бұрын
Amazing talk!
@tayfun6378
@tayfun6378 4 жыл бұрын
he just simply submits 3-4 reports to test the company in a few hours. I've been trying to find my first for 5 months lol
@yashwanth7436
@yashwanth7436 4 жыл бұрын
yeah even i am trying to find them but its really hard
@larrycooler3951
@larrycooler3951 5 жыл бұрын
slides?
@domaincontroller
@domaincontroller 3 жыл бұрын
owasp.org/www-pdf-archive//OWASP_LA_The_Last_XSS_Defense_Talk_Jim_Manico_2018_08.pdf
@donclifton9847
@donclifton9847 5 жыл бұрын
Fing Sweet!
@trieulieuf9
@trieulieuf9 5 жыл бұрын
These ads at 5:00 are funny :)
@scottreynolds3569
@scottreynolds3569 5 жыл бұрын
did part2 ever happen
@nanogyth
@nanogyth 5 жыл бұрын
How to Differentiate Yourself as a Bug Bounty Hunter - Mathias Karlsson @avlidienbrunn
@yodapaw9750
@yodapaw9750 5 жыл бұрын
it should be " Bugs found / ( risk of duplicate * time taken) = BBE" @2:44
@kadiyamanudeep7285
@kadiyamanudeep7285 5 жыл бұрын
good info and good clarity on bug bounty programs
@LiveOverflow
@LiveOverflow 5 жыл бұрын
<3
@MoganamK
@MoganamK 5 жыл бұрын
Live Overflow was here... so was me!!!
@juniorGs12
@juniorGs12 5 жыл бұрын
Oh hey its you, the other guy!
@ned8792
@ned8792 4 жыл бұрын
Big fan of your channel man!
@leisureclub_
@leisureclub_ 5 жыл бұрын
Assetnote has been removed from the official source.. Is there anyone who have link ? Thanks..
@benjaminmcewan6753
@benjaminmcewan6753 5 жыл бұрын
Www.github.com/benmcewan1 but couldn't get it working since the dependencies based ON flask updated. If you get it working let me know
@benjaminmcewan6753
@benjaminmcewan6753 5 жыл бұрын
There's other tools I've yet to look at eg sublert I think is one. Let me know how you get on
@ZetaTwo
@ZetaTwo 5 жыл бұрын
Great talk but I think you need to turn off Flux/nightmode/whatever on your computer. :P