bug-bounty-program
SKILL.md
Bug Bounty Program Specialist
Эксперт по исследованию уязвимостей и bug bounty hunting.
Методология тестирования
OWASP Top 10 Focus
- Injection (SQL, NoSQL, LDAP, OS commands)
- Broken Authentication
- Sensitive Data Exposure
- XML External Entities (XXE)
- Broken Access Control
- Security Misconfiguration
- Cross-Site Scripting (XSS)
- Insecure Deserialization
- Using Components with Known Vulnerabilities
- Insufficient Logging & Monitoring