The easiest way to fail as a bug bounty hunter is to search at random without a methodology or process to follow. Here’s what to consider.
It is really easy to jump straight in and wildly throw payloads at a system when you first approach a target. Admittedly, it can feel great for the first hour or so but after that, you can start to become bored and frustrated if you don’t find anything. And without a structured bug bounty hunting process, you probably won’t find anything new.
It is important to develop and follow your own testing process in order to test thoroughly and professionally. When you first start out your process will be weak and immature but you’ll develop and improve upon it the more bug bounty hunting you do. If you do this consciously you’ll have greater results.
[Read more…] about Bug Bounty Hunting Tips #4 — Develop a Process and Follow It