官术网_书友最值得收藏!

Choosing Your Hunting Ground

When you're deciding what bug bounty programs you'd like to participate in, it's nice to have a baseline of information about your options – an offering company's report-submission process, submission success rate, the attack surface of the sites in question, and more. Luckily, that information is typically easy to find based on the type of company, its size, the nature of its reward program (third-party marketplace, in-house), and its public statements and documentation.

This chapter will cover how to evaluate marketplaces, programs, and companies and gauge their promise as productive engagements. It will also cover how to zero-in on the areas of web applications where you're most likely to find bugs. At the end of it, you'll know what programs to participate in, why, and how you can make the most of your target application – all while ensuring you color within the lines of your agreed-upon rules of engagement.

主站蜘蛛池模板: 湘乡市| 昌平区| 阿拉尔市| 朝阳区| 横山县| 通海县| 宝丰县| 青浦区| 威信县| 磐安县| 平罗县| 鲁山县| 泽普县| 阳信县| 延津县| 凤山市| 云梦县| 当雄县| 康马县| 汾阳市| 鹤壁市| 蒙山县| 西盟| 界首市| 岑溪市| 惠州市| 简阳市| 苍梧县| 灵宝市| 永和县| 怀安县| 通州区| 车致| 故城县| 池州市| 出国| 汉阴县| 昭平县| 弋阳县| 高阳县| 资中县|