- Bug Bounty Hunting Essentials
- Carlos A. Lozano Shahmeer Amir
- 148字
- 2021-06-10 18:35:31
Writing title of a report
The report title is the first thing that the program owner looks at and notices about your report. The report title should be explicit and to the point. If the report title has emotional involvement to it, it is often not considered as a positive factor by the program owners. The title is the first impression about your report that the program owners get and it is what shows the level of maturity of the reporter and their experience. A straightforward title should be the starting point of your report. The following are a few examples of bad report titles:
- Urgent! SQL injection found
- Attention! Critical vulnerability
- Very critical account takeover flaw
The following are some examples of to how you can craft your title better:
- Union-based SQL injection in developer's portal
- Hostile subdomain takeover in admin.xyz.com
- Account takeover using password reset token
推薦閱讀
- CTF實(shí)戰(zhàn):技術(shù)、解題與進(jìn)階
- 特種木馬防御與檢測(cè)技術(shù)研究
- 網(wǎng)絡(luò)安全應(yīng)急管理與技術(shù)實(shí)踐
- 黑客攻防入門(mén)秘笈
- 數(shù)字安全藍(lán)皮書(shū):本質(zhì)屬性與重要特征
- 同態(tài)密碼學(xué)原理及算法
- 網(wǎng)絡(luò)安全三十六計(jì):人人該懂的防黑客技巧
- Testing and Securing Android Studio Applications
- 信息安全案例教程:技術(shù)與應(yīng)用(第2版)
- INSTANT Kali Linux
- 物聯(lián)網(wǎng)信息安全技術(shù)
- Web安全攻防從入門(mén)到精通
- Kali Linux無(wú)線網(wǎng)絡(luò)滲透測(cè)試詳解
- 5G網(wǎng)絡(luò)安全規(guī)劃與實(shí)踐
- ATT&CK與威脅獵殺實(shí)戰(zhàn)