One Click to All Baisc Recon for Bug Bounty
文章介绍了信息收集技术(Recon)在漏洞赏金中的重要性,帮助扩大攻击面或直接发现漏洞。作者将漏洞狩猎分为两类:主应用狩猎(如XSS、IDOR等)和API狩猎(关注API接口的安全性)。 2025-10-10 11:0:49 Author: infosecwriteups.com(查看原文) 阅读量:36 收藏

All Recon with One Click

SIDDHANT SHUKLA

Read for Freee..ee.e

Rock Lee

🐺Hunters,

Hope my write-ups are simple and easily understandable for you even if your beginner.
If you found my write-ups helpful in your bug hunting journey you can send a token of appreciation with:

50 Claps, a comment and share everywhere

Introduction

Recon(or Reconassiance) referred as a information gathering technique on your target in Bug Bounty World. This technique heps bug bounty hunters more in expanding Attack Surface or even sometimes this can directly lead you to a Bug by exposure of sensitive data.

Types of Hunting

Most of the time, I came across two types of Bug Hunting by reading other Hunter’s write-up:

1. Main App Hunting

Those hunters who found bugs like XSS, IDOR, PII Data Leaks and Broken Access Control are the ones who loves to play with every button on website. This can be helpful to get ID’s which lead them to IDOR bugs. For finding Broken Access Control(BAC) bug they click understand the features with it’s priveleges to access the feature.


文章来源: https://infosecwriteups.com/one-click-to-all-baisc-recon-for-bug-bounty-295ac745d602?source=rss----7b722bfd1b8d--bug_bounty
如有侵权请联系:admin#unsafe.sh