#366: Hacking PayPal and TikTok (legally) // Featuring Ben Sadeghipour Nahamsec
David Bombal4 Apr 2022

#366: Hacking PayPal and TikTok (legally) // Featuring Ben Sadeghipour Nahamsec

Want to hack companies like PayPal and TikTok? What about the Department of Defense? Lots of companies that you can hack legally - and get paid doing it! This is a practical guide on how to get started hacking today. // MENU // 00:00 ▶️ Introduction 00:17 ▶️ Who is Nahamsec? 01:18 ▶️ Different Bug Bounty Platforms 01:40 ▶️ Why Nahamsec Prefers These Platforms 02:34 ▶️ Intigriti Quick Overview 02:58 ▶️ Bugcrowd Quick Overview 03:25 ▶️ Hackerone Quick Overview 04:01 ▶️ What is Bug Bounty? 04:57 ▶️ Non-Monetary Rewards: Nahamsec's Red Bull Hack 05:57 ▶️ The Lyft, Snapchat and Undisclosed Travel Company Hack 07:02 ▶️ Interface Walkthrough 08:45 ▶️ Scope 10:18 ▶️ Top Hacker Profiles on Bug Bounty Programmes 11:04 ▶️ Profile Hacktivity Feed 13:54 ▶️ Using the site wide hacktivity feed to learn from previous bug bounties 15:31 ▶️ Getting Started: hacker101 17:24 ▶️ Getting Started: hackerone 20:58 ▶️ Submitting/Writing a Report 29:23 ▶️ Report Terminology 31:06 ▶️ How to Find a Company's Websites 33:05 ▶️ Nahamsec's Approach: Certificate Transparency 36:30 ▶️ Why NahamSec Prefers Dev Sites 38:05 ▶️ How to Find a Website's SSL Certificate 41:21 ▶️ Targeting a Company' Main Website vs Targeting Subdomains 42:25 ▶️ Researching a Company's Assets 43:43 ▶️ If You're New to the Bug Bounty Thing 47:40 ▶️ Ways to Learn 49:18 ▶️ Books to Help You Get Started Hacking 53:49 ▶️ Online Resources to Help You Get Started 55:28 ▶️ Final Advice // Connect with David // Discord: https://discord.com/invite/usKSyzb Twitter: https://www.twitter.com/davidbombal Instagram: https://www.instagram.com/davidbombal LinkedIn: https://www.linkedin.com/in/davidbombal Facebook: https://www.facebook.com/davidbombal.co TikTok: http://tiktok.com/@davidbombal YouTube: https://www.youtube.com/davidbombal // Connect with Nahamsec // Twitter: https://twitter.com/nahamsec YouTube: https://www.youtube.com/c/nahamsec Github: https://github.com/nahamsec/Resources-for-Beginner-Bug-Bounty-Hunters Discord: https://discord.com/invite/ysndAm8 Instagram: https://www.instagram.com/nahamsec/ LinkedIn: https://www.linkedin.com/in/nahamsec/ Twitch: https://www.twitch.tv/nahamsec Website: https://nahamsec.com/ // Nahamsec's Udemy Course// Udemy: https://www.udemy.com/course/intro-to-bug-bounty-by-nahamsec/ // Sites // Hackerone: https://www.hackerone.com/ Bugcrowd: https://bugcrowd.com/programs Intigriti: https://www.intigriti.com/ // Book's recommended // Bug Bounty Bootcamp: https://amzn.to/3K2YDeJ Real-World Bug Hunting: https://amzn.to/3wTF9FN Android Hacker's Handbook: https://amzn.to/3uMc509 The Web Application Hacker's Handbook: https://amzn.to/3IZ2RTr Black Hat Python: https://amzn.to/3JYIZAV Black Hat Python (2nd edition): https://amzn.to/379WcIV // Creator's mentioned // Nahamsec: https://www.youtube.com/c/Nahamsec STÖK: https://www.youtube.com/c/STOKfredrik LiveOverflow: https://www.youtube.com/c/LiveOverflow Farah Hawa: https://www.youtube.com/c/FarahHawa InsiderPhD: https://www.youtube.com/c/InsiderPhD The Cyber Mentor: https://www.youtube.com/c/TheCyberMentor // MY STUFF // Monitor: https://amzn.to/3yyF74Y More stuff: https://www.amazon.com/shop/davidbombal // SPONSORS // Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com bug bounty bugbounty hackerone hacking Ben Sadeghipour NahamSec nahamsec cyber security bug bounties ethical hacking bug bounty hunting burp suite ethical hacker pentest certificate red teaming bug bounty tips bug bounty for beginners bug bounty course pentest basics bugcrowd bugbounty hack bugs hackerone bugcrowd Intigriti Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel! #buybounty #hacking #hack

Det här avsnittet är hämtat från ett öppet RSS-flöde och publiceras inte av Podme. Det kan innehålla reklam.

Avsnitt(500)

#578: How Cisco Is Using AI to Fix Networks

#578: How Cisco Is Using AI to Fix Networks

Cisco is bringing AI agents into network operations with Cisco Cloud Control, AI Canvas, and Agentic Ops. In this demo, David Bombal is joined by DJ Sampath (SVP and General Manager, AI Software and P...

5 Juni 22min

#577: My Dream "home lab"

#577: My Dream "home lab"

Join me for an exclusive, behind-the-scenes tour of Cisco's purpose-built $20 million AI data center lab in San Jose. AI is revolutionizing the tech industry, but running massive 10,000 GPU clusters c...

22 Maj 28min

#576: How to track dark ships using OSINT (with demos)

#576: How to track dark ships using OSINT (with demos)

Big thank you to DeleteMe for sponsoring this video. Use my link https://joindeleteme.com/Bombal to receive a 20% discount or use the QR Code in the video. In this OSINT deep dive, professional OSINT...

23 Apr 49min

#575: AI attackers are winning. Here is the SECRET to survive.

#575: AI attackers are winning. Here is the SECRET to survive.

Are AI attackers winning the cybersecurity war? In this video, I sit down with Daniel Miessler, a 25-year security veteran, to discuss the terrifying reality of AI-driven cyber attacks and the massive...

14 Apr 1h

#574: Hacking Windows Active Directory in 10 minutes

#574: Hacking Windows Active Directory in 10 minutes

Thank you ThreatLocker for sponsoring my trip to ZTW26 and also for sponsoring this video. To start your free trial with ThreatLocker please use the following link: https://www.threatlocker.com/david...

14 Apr 25min

#573: WhatsApp Hackers for Hire on the Dark Web (Surprisingly cheap)

#573: WhatsApp Hackers for Hire on the Dark Web (Surprisingly cheap)

Thank you to ThreatLocker for sponsoring my trip to ZTW26 and also for sponsoring this video. To start your free trial with ThreatLocker please use the following link: https://www.threatlocker.com/d...

7 Apr 27min

#572: How Cisco Protects AI Agents in Modern Data Centers

#572: How Cisco Protects AI Agents in Modern Data Centers

Big thanks to Cisco for sponsoring this video and sponsoring my trip to Cisco Live Amsterdam 2026. Join David as he sits down with Cisco's Dave West (SVP, Global Specialists), to unpack the technical...

31 Mars 14min

#571: Google Big Sleep: The End of Human Hackers?

#571: Google Big Sleep: The End of Human Hackers?

Big thank you to DeleteMe for sponsoring this video. Use my link http://jointdeleteme.com/Bombal to receive a 20% discount or use the QR code in the video. Welcome back to the channel! In this deep ...

31 Mars 1h 8min

Populärt inom Teknik

uppgang-och-fall
market-makers
bilar-med-sladd
elbilsveckan
natets-morka-sida
developers-mer-an-bara-kod
skogsforum-podcast
rss-laddstationen-med-elbilen-i-sverige
rss-elektrikerpodden
rss-technokratin
bli-saker-podden
rss-uppgang-och-fall
rss-it-sakerhetspodden
gubbar-som-tjotar-om-bilar
hej-bruksbil
rss-veckans-ai
vi-bilagares-podcast
rss-powerboat-sverige-podcast
rss-snacka-om-ai
dom-kallar-oss-krypto