Posts

Reflected XSS in bug bounty program {ScriptKiddie methodology Version}

Image
Methodology 1- As usual.. i strated from finding sub-domains using 7 methods - Sbfinder -d domain.com  - Sublist3r -d domain.com -b -t 50 -o sublist3r.txt  - amass enum -d domain.com -active -cidr 1.2.3.4/24,4.3.2.1/24 -asn 12345  - crtfinder  python crtfinder.py -u domain.com - using google dorks  - shodan manual search  - Github manual search Then save all this unique subdomains into --> all_subdomains.txt