I have always been in confusion about how to get started with security or pentest or somehow with a bug bounty. There are tons of resources available on the internet.
The Fact
The fact is there is no hard and fast rule or there is no standard course by following which you will get the tag of a security expert.
There is no defined way to become a security researcher.
Here at the end, I am also going to give you some resources about the get started but to be honest it will not help until you start with a practice or use it in your day-to-day life for learning purposes.
So what missing?
Resources will get the directions for learning. Let’s say you got one blog where the blogger explains everything steps by step and You decided to complete it in 7 days. Your approach SHOULD NOT be that once you finish with the whole tutorial you should start with researching it won’t help or probably you must have forgotten the things which you learned on day 1.
The Approach
Start performing practical from the first day. Whatever your learning start implementing those. Try to find the smallest loopholes. And trust me you won’t get it on Day 1. But with the practice, you will become to know how to find or where to find.
Where to do practice?
You can use any Bugbounty side where lots of products, apps, websites get listed to find bugs, vulnerabilities, etc. You can also use CTF (Capture the flag). I will not go in deep with these terminologies because you can find better explanations on google. You will also get a better guide on how to start with these platforms.
Don’t Forget your practice will give you a real security expert badge. Keep practicing.
Some resources to get start
https://github.com/nahamsec/Resources-for-Beginner-Bug-Bounty-Hunters
https://whoami.securitybreached.org/2019/06/03/guide-getting-started-in-bug-bounty-hunting/
https://infosecwriteups.com/guide-to-basic-recon-bug-bounties-recon-728c5242a115
Pentesting for n00bs is ELI5 hacking, designed for beginners who have never walked through a hack before. All 10 episodes:
Ep 1 - Legacy: https://youtu.be/JZN3JhoAdWo
Ep 2 - Lame: https://youtu.be/ntBkyid_u8Y
Ep 3 - Blue: https://youtu.be/xLI7OialKk4
Ep 4 - Devel: https://youtu.be/ODUDau7BPSY
Ep. 5 - Jerry: https://youtu.be/nF14K2VAVtw
Ep. 6 - Nibbles: https://youtu.be/8ulnQVFHcOE
Ep. 7 - Optimum: https://youtu.be/bTxnobhJ_b8
Ep. 8 - Bashed: https://youtu.be/5406MfOfXBc
Ep. 9 - Grandpa: https://youtu.be/3aASluoJ-iM
Ep. 10 - Netmon: https://youtu.be/8k-8aVwS0fk
Please feel free to post your doubt or suggestions below :slight_smile:
Thanks