Bug Bounty
The difference between a bounty hunter who lives off bounties and one who files duplicates for two years is scope discipline + recon depth, not “more payloads.” These notes are about the workflow.
Pages
How I read a program before touching anything
- Read scope twice. Out-of-scope assets and severities are footnoted.
- Search the program name on disclosed reports — public Hacker1/Bugcrowd reports tell you the bar.
- Skim recent CVEs of any software the program lists as in-scope.
- Then start recon.