
Learn to hack legally for rewards on HackerOne by focusing on web app bugs, including login impersonation, metadata exposure, credential disclosure, and hands-on demos.
Explore how insecure login and weak session management enable an attacker to impersonate a user by exploiting session identifiers, illustrating the severe consequences and a practical demo.
Demonstrates how an attacker impersonates a user by exploiting insecure session management. Comparing non authenticated and authenticated session ids via a cookies manager reveals how identical ids enable unauthorized access.
Explore how metadata hides sensitive information from attackers and how passwords and credentials can reside in file comments across doc, docx, and pdf formats, demonstrated with exif tool extraction.
Demonstrates metadata extraction with exif tool on documents hosted on a domain, revealing hidden credentials and sensitive data in metadata, illustrating risk of sensitive data exposure.
Examine how login forms protect credentials by enforcing https, compare redirects from http to https, and test both login and signup flows for disclosure vulnerabilities.
Demonstrates https enforcement protects login credentials by redirecting http to https, while sign up may lack enforcement, allowing credentials to be exposed via Burp Suite during testing.
Explore insecure password changes and how failure to invalidate sessions after a password change leaves attackers with ongoing access; learn to test and enforce proper session invalidation.
Demonstrates testing for a secure password change within broken session management, showing that changing a password does not invalidate the old session, leaving attacker access intact.
Explore dictionary attack concepts and countermeasures, including captchas and login thresholds, to prevent automated password guessing. Learn how to evaluate threshold settings and report vulnerabilities ethically for rewards.
Demonstrate a dictionary attack on a web login by cycling email and password attempts, noting no captcha, and revealing when accounts remain unblocked after 15 tries.
This course presents the next five bugs that really work on HackerOne, including insecure session management, metadata leakage, credential disclosure, age cps enforcement, insecure password change, and dictionary attacks.
This course is the follow-up to one of my previous courses – Start Hacking at HackerOne. We will continue our bug hunting journey and you will learn about the next 5 bugs that have been successful for me for years!
HackerOne is a big opportunity for you. At HackerOne you can legally hack some of the biggest companies (Twitter, Uber, Yahoo, Coinbase, Slack, etc.), and you can get paid for your findings. You can earn for example $100, $1,000 or $10,000 per one bug. It’s just amazing. All you need are Internet connection and knowledge.
Yes, you need knowledge and this is exactly what I’m going to give you in this course. I’m one of the top hackers at HackerOne (among more than 100,000 registered hackers), and I really know how to make money out there. If you want to keep hacking and making money at HackerOne, then this course is just for you.
You will learn about the next 5 bugs that I recommend you to play with (these bugs have been successful for me for years). Here are these bugs:
1. How to Impersonate a User via Insecure Log In
2. Sensitive Information in Metadata
3. Disclosure of Credentials
4. Insecure Password Change
5. Dictionary Attack
For every single bug there is a DEMO so that you can see how to find these bugs step-by-step in practice.
Do you want to make money in bug bounty programs? Let’s enroll to this course and continue our exciting journey.
-------------------------------------------------------------------------------------------------------------------------------------------------------------------------
Course Rating: ★★★★★
"Great course! Clear explanation and awesome demos. Thank you."
- Adel Boutine, Independent Security Researcher
Course Rating: ★★★★★
"keep this great job up"
- Jan, Student
Course Rating: ★★★★★
"Clear articulation of security bugs."
- Cecil Su, Director
-------------------------------------------------------------------------------------------------------------------------------------------------------------------------