Lock in $30 Savings on PRO—Offer Ends Soon! ⏳
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
Hunting Bugs In Real Life
Search
akshat singhal
September 23, 2020
Technology
0
99
Hunting Bugs In Real Life
akshat singhal
September 23, 2020
Tweet
Share
Other Decks in Technology
See All in Technology
チーリンについて
hirotomotaguchi
6
2.1k
Amazon Quick Suite で始める手軽な AI エージェント
shimy
0
930
AWS re:Invent 2025で見たGrafana最新機能の紹介
hamadakoji
0
440
Lookerで実現するセキュアな外部データ提供
zozotech
PRO
0
180
20251219 OpenIDファウンデーション・ジャパン紹介 / OpenID Foundation Japan Intro
oidfj
0
230
AWS re:Invent 2025~初参加の成果と学び~
kubomasataka
0
150
Sansanが実践する Platform EngineeringとSREの協創
sansantech
PRO
2
950
たまに起きる外部サービスの障害に備えたり備えなかったりする話
egmc
0
330
100以上の新規コネクタ提供を可能にしたアーキテクチャ
ooyukioo
0
130
AWS運用を効率化する!AWS Organizationsを軸にした一元管理の実践/nikkei-tech-talk-202512
nikkei_engineer_recruiting
0
130
GitHub Copilotを使いこなす 実例に学ぶAIコーディング活用術
74th
3
3.6k
SQLだけでマイグレーションしたい!
makki_d
0
1.1k
Featured
See All Featured
Git: the NoSQL Database
bkeepers
PRO
432
66k
Build The Right Thing And Hit Your Dates
maggiecrowley
38
3k
CSS Pre-Processors: Stylus, Less & Sass
bermonpainter
359
30k
Learning to Love Humans: Emotional Interface Design
aarron
274
41k
How To Speak Unicorn (iThemes Webinar)
marktimemedia
1
340
Rails Girls Zürich Keynote
gr2m
95
14k
Intergalactic Javascript Robots from Outer Space
tanoku
273
27k
The Pragmatic Product Professional
lauravandoore
37
7.1k
Building the Perfect Custom Keyboard
takai
1
660
Test your architecture with Archunit
thirion
1
2.1k
Building Flexible Design Systems
yeseniaperezcruz
330
39k
ラッコキーワード サービス紹介資料
rakko
0
1.7M
Transcript
None
BUG BOUNTY WEBINAR
HUNTING BUGS IN REAL LIFE Akshat Singhal
Who am I • Bug crowd Top 700 Researcher –
All Time • Blogger • Bug Bounty Hunter • Speaker • Lifelong learner
@Akshat05623019 @akshat-singhal-90141716b @honeyakshat999 Get In Touch At @AkshatSinghal1 @AkshatSinghal @honeyakshat999
None
None
None
STORED DOM REFLECTED
None
None
SQL injection is a web security vulnerability that allows an
attacker to interfere with the queries that an application makes to its database.
▪ admin’—
None
None
TYPES HORIZONTAL VERTICAL
None
None
None
CSRF + XSS --> Account Takeover User enum.
+ IDOR --> All users compromise
None
None