官术网_书友最值得收藏!

Differences between a bug bounty and a client-initiated pentest

Before we jump into the core details, let's first understand these two mindsets: 

  • Bug bounty pentest mindset
    • The aim is to find vulnerabilities that have an impact and fetch a good bounty
    • A complete assessment of the application doesn't need to be done
    • One bug is enough to qualify for a bounty
    • All the vulnerabilities in the application are not reported, only the ones found
    • There are no particular timelines; it can be done at the pentester's convenience
  • Client-initiated pentest mindset:
    • The aim is to ensure that all the application processes and functionalities are tested
    • There is a limited timeline in which the whole application needs to be audited
    • There is no bounty or rewards
    • There is a need to ensure that all the vulnerabilities found by a scanner are validated and reported
    • There is a need to also scope the entire application by understanding all the inter-dependencies and ensure that endpoints are well protected, since there will be times when the backend applications, such as support, will not be made available to bug bounty hunters, but will be in a client-initiated assessment
  • Common points in both the mindsets:
    • Must have the presence of mind to chain multiple vulnerabilities and cause a high impact on the underlying application
    • Also, ensure that the attacker is aware of all the endpoints of that particular application
    • Scoping of the entire application's presence and testing all the endpoints to find flaws

Take a moment to think about the differences between the two approaches. I'm sure you will agree that there needs to be two totally different mindsets while performing the pentest.

主站蜘蛛池模板: 林西县| 措勤县| 英吉沙县| 邳州市| 准格尔旗| 宁安市| 盖州市| 中宁县| 云安县| 军事| 灌阳县| 凤阳县| 班戈县| 逊克县| 海阳市| 南投县| 贡觉县| 额尔古纳市| 综艺| 旌德县| 凤山县| 桃园市| 木里| 拜泉县| 新田县| 独山县| 金昌市| 鹿邑县| 安福县| 临汾市| 金寨县| 招远市| 将乐县| 加查县| 丁青县| 商水县| 兰溪市| 广饶县| 会泽县| 绥宁县| 昌乐县|