bug bounty the complete guide 2020

  • Course level: Beginner


Welcome to  Bug Bounty For Beginners Course. This course covers web application attacks and how to earn bug bounties. This course is highly practical and is made on Live websites it’s very helpful when you start your bug hunting journey.

No special skills are required as the course covers everything from the very basics.

You will start as a beginner with no hands-on experience in bug bounty hunting and Penetration testing.

Who this course is for:

  • Anyone else wants to get Halloffames and Rewards from companies for reporting bugs.

What Will I Learn?

  • How to start Bug Bounty as a beginner
  • Priority of Bugs
  • Hall of Fames
  • Rewards
  • How to Report bugs
  • This course helps you to Get Your First Bounty minimum of $100(Hardwork Needed)

Topics for this course

75 Lessons

Bug Bounty for Beginners

Lesson 0:Bug Bounty Training00:00:00
Lesson 1: Bug Bounty Training00:00:00
Lesson 1 (Contd): Bug Bounty Training00:00:00
Lesson 2: Setting DVWA00:00:00
Lesson 3: Deploying PHP00:00:00
Lesson 4: Deprecated PHP00:00:00
Lesson 5: .SQL attack00:00:00
Lesson 6: Password Hash00:00:00
Lesson 7: Unknown Language00:00:00
Lesson 8: Manipulating Hardcoded Password00:00:00
Lesson 9: Coding00:00:00
Lesson 10: Attack via Signup Page| Bug Bounty Training00:00:00
Lesson 11: HTML secrets00:00:00
Lesson 12: What you need to know before hacking00:00:00
Lesson 13: #1 Auto complete Enabled00:00:00
Lesson14: #2 Concurrent Logins Vulnerability00:00:00
Lesson 15: #3 Remember Me Feature Vulnerability00:00:00
Lesson16: #4 No Anti-Automation00:00:00
Lesson 17: #5 Weak Password Policy00:00:00
Lesson 18: #6 No Account Lockout00:00:00
Lesson 19: #7 Insecure Password Storage00:00:00
Lesson20:#8 Information Disclosure Through Comments00:00:00
Lesson 21: Bug Bounty Step By Step00:00:00
Lesson 22: #9 No Two Factor Authentication00:00:00
Lesson 23: #10 Vulnerable Change Password Page00:00:00
Lesson24: #11 User Enumeration00:00:00
Lesson 25: #12 Directory Indexing00:00:00
Lesson 26: #13 Third Party Domain Vulnerability 10,000$ Bounty00:00:00
Lesson 27: #14 Password Field is set to Text00:00:00
lesson 28: #15 robots.txt Information Disclosure00:00:00
Lesson 29: #16 Weak Input Validation00:00:00
Lesson 30: How to become Cyber Security expert in 20 hours in 202000:00:00
Lesson 31: Burp Suite Install00:00:00
Lesson 33: Sensitive Information in GET Request00:00:00
Lesson 32: Sensitive Information Sent in Clear Text00:00:00
Lesson 34: Understanding Session IDs00:00:00
Lesson 35: Cross Site Request Forgery (CSRF)00:00:00
Lesson 36: SessionID not changed on Logon00:00:00
Lesson 37: Weak Session Length00:00:00
Lesson 39: Reusability of Your work00:00:00
Lesson41: Weak Session Expiry00:00:00
Lesson 42: Weak Session Randomness00:00:00
Lesson 43: Session ID can be Preset00:00:00
Lesson:44 | Login As Anyone and Everyone00:00:00
Lesson 45: Version Disclosure in Headers & Response00:00:00
Lesson 46: Default Configuration Files00:00:00
Lesson 47: A little abt Default configuration |bug bounty tutorials00:00:00
Lesson 48: Reflected XSS Understanding00:00:00
Lesson 49: Cross Site Scripting BYPSS00:00:00
Lesson 50: Playing with XSS Payloads-00:00:00
Lesson 51: ZAP Proxy setup00:00:00
Lesson 52: Finding XSS using ZAP Easily00:00:00
Lesson 53: Cross site Scripting00:00:00
Lesson 54: Cookie is Not Encrypted00:00:00
Lesson 55: Cookie HTTP Only Not Set00:00:00
Lesson 56: Cookie Attribute Secure Not Set00:00:00
Lesson: 57 Cookie Path Not Set00:00:00
Lesson 58: Cookie Sub-domain not set00:00:00
Lesson 59: Unvalidated redirects and Forwards00:00:00
Lesson 60: Cross Frame Scripting00:00:00
Lesson 61: Click Jacking POC00:00:00
Lesson 62: HTML Injection00:00:00
Lesson63: Polygot XSS poc00:00:00
Lesson 64: Command Injection00:00:00
Lesson 65:Bug Bounty PoC Practicals00:00:00
Lesson66: Local File Inclusion00:00:00
Lesson 67: LFI Payloads Automation00:00:00
Lesson 68: 100 Bug Bounty Lessons00:00:00
Lesson 69: Domain Takeover00:00:00
Lesson 70. Insecure Direct Object Reference IDOR00:00:00
Lesson 71: Bug Bounty Payloads Explanation00:00:00
Lesson: 72 SQL Injection Basics00:00:00
Lesson 73: SQL Injection Automation Pending00:00:00
Lesson74 SQLinjection automation tool one web security00:00:00
Lesson:75 SQL Injection Authention Bypass00:00:00
bug bounty
45 £

Enrolment validity: Lifetime


  • Basic Computer Knowledge
  • Internet Connection
  • Laptop/Computer
  • Curious to Learn