These are my bug bounty notes that I have gathered from various sources, you can contribute to this repository too!
Arbitrary File Uploadarrow-up-right
CRLF Injectionarrow-up-right
Cross Site Request Forgery (CSRF)arrow-up-right
Cross Site Scripting (XSS)arrow-up-right
Denial of Service (DoS)arrow-up-right
Exposed Source Codearrow-up-right
Host Header Injectionarrow-up-right
Insecure Direct Object References (IDOR)arrow-up-right
Local File Inclusion (LFI)arrow-up-right
Mass Assignmentarrow-up-right
NoSQL Injection (NoSQLi)arrow-up-right
OAuth Misconfigurationarrow-up-right
Open Redirectarrow-up-right
Reflected File Download (RFD)arrow-up-right
Remote File Inclusion (RFI)arrow-up-right
Server Side Include Injection (SSI Injection)arrow-up-right
Server Side Request Forgeryarrow-up-right
SQL Injection (SQLi)arrow-up-right
Web Cache Deceptionarrow-up-right
Web Cache Poisoningarrow-up-right
Bypass 2FAarrow-up-right
Bypass 403arrow-up-right
Bypass 429arrow-up-right
Bypass Captchaarrow-up-right
Forgot Password Functionalityarrow-up-right
Register Functionality SOON!
CVEs 2021 (https://github.com/daffainfo/AllAboutBugBounty/blob/master/CVEs/2021)
CVEs 2022 (SOON)
CVEs 2023 (SOON)
Account Takeoverarrow-up-right
Broken Link Hijackingarrow-up-right
Business Logic Errorsarrow-up-right
Default Credentialsarrow-up-right
Email Spoofingarrow-up-right
JWT Vulnerabilitiesarrow-up-right
Tabnabbingarrow-up-right
Apache (HTTP Server)arrow-up-right
Confluencearrow-up-right
Grafanaarrow-up-right
HAProxyarrow-up-right
Jenkinsarrow-up-right
Jiraarrow-up-right
Joomlaarrow-up-right
Laravelarrow-up-right
Moodlearrow-up-right
Nginxarrow-up-right
WordPressarrow-up-right
Zendarrow-up-right
Scope Based Reconarrow-up-right
Github Dorksarrow-up-right
Google Dorksarrow-up-right
Shodan Dorksarrow-up-right
Tidy up the reconnaisance folder
Added more lesser known web attacks
Added CVEs folder
Writes multiple payload bypasses for each vulnerability
Payload XSS for each WAF (Cloudflare, Cloudfront, AWS, etc)
Payload SQL injection for each WAF (Cloudflare, Cloudfront)
Last updated 2 years ago