官术网_书友最值得收藏!

Choosing Your Hunting Ground

When you're deciding what bug bounty programs you'd like to participate in, it's nice to have a baseline of information about your options – an offering company's report-submission process, submission success rate, the attack surface of the sites in question, and more. Luckily, that information is typically easy to find based on the type of company, its size, the nature of its reward program (third-party marketplace, in-house), and its public statements and documentation.

This chapter will cover how to evaluate marketplaces, programs, and companies and gauge their promise as productive engagements. It will also cover how to zero-in on the areas of web applications where you're most likely to find bugs. At the end of it, you'll know what programs to participate in, why, and how you can make the most of your target application – all while ensuring you color within the lines of your agreed-upon rules of engagement.

主站蜘蛛池模板: 东乡族自治县| 通许县| 右玉县| 雷州市| 菏泽市| 故城县| 五家渠市| 徐水县| 石景山区| 天水市| 独山县| 双牌县| 诏安县| 蒙山县| 本溪市| 麟游县| 望江县| 巧家县| 海阳市| 临洮县| 阿鲁科尔沁旗| 安康市| 舒城县| 环江| 盐城市| 洛宁县| 织金县| 开江县| 错那县| 乾安县| 广昌县| 封开县| 温泉县| 霍林郭勒市| 湘阴县| 德庆县| 浮梁县| 洮南市| 大兴区| 兴和县| 晋州市|