Tutelr Infosec Private Limited
Certification in Bug Bounty Hunting
IT & Software (Computer Science & IT)
Shortlisted by 49+ Students
Location: Chennai
Duration: 3 MONTH
Regular / Offline
Average Fees: ₹ 82000
Highlights Bug Bounty programs are for researchers and cybersecurity professionals to test their skills on a variety of targets online and get paid if they find any vulnerabilities in the application. It is a penetration testing program that rewards for finding bugs and ways to exploit. Cyber Security is next Big thing. There are many people who are learning how to develop web application and yet only a few are learning to secure those applications. This course is designed so that you can learn to secure web applications even if you don't know how to design or develop a web app.
Syllabus
Module Description
TEST CASE - Common Low Priority Bugs
Clickjacking
Missing SPF/DMARC Record
Open Redirection
Lack of Email Notification & Verification
Mail Server Misconfiguration
Missing HTTP Only Cookie Flag
No Rate Limiting
Captcha Bypass
Missing Authentication
Parameter Pollution
TEST CASE - Access Control Issues
Path traversal
Information Disclosure
Information Exposure Through an Error Message
Information Exposure Through Debug Information
Privilege Escalation
Improper Access Control
Improper Authentication
Disallowed Robots file Access
TEST CASE - Injection
Client-Side Template Injection
Server-Side Template Injection
SQL Injection
OS Command Injection
XML Injection
XML RPC
PHP Code Injection
HTML Injection
TEST CASE - High Risk Bugs
Cross site scripting
JSONHijacking
Wordpress | Joomla | Drupal Bugs
CMS Vulnerability Analysis
Remote Code Execution
Critical File Found
File Inclusion (LFI /RFI)
File Upload Vulnerabilities
Directory Traversal
CORS
Script Source Code Disclosure
HTTP Parameter Pollution Attack
Subdomain Takeover
Documenting & Reporting Vulnerability
TEST CASE - Encryption Flaws
Improper Certificate Validation
Cleartext Transmission of Session Token
Encrypted Cookies
Cleartext Storage of Sensitive Information
Missing Encryption of Sensitive Data
Cryptographic Issue (Generic)
TEST CASE - Authorization & Authentication
Improper Authorization & Authentication
Insufficient Session Expiration & Session Fixation
Issues with OAuth Redirection & Permissions
Insecure Direct Object Reference (IDOR)
Misconfigured Login pages
Bypass Single factor & Two factor Authentication
Account Take Over
Account Lockout Cross Site Request Forgery (CSRF)
Server Side Request Forgery (SSRF)
DNS Zone Transfer
TEST CASE - Sensitive Data Exposure
Internal IP Disclosure
Path Disclosure
Token Disclosure in URL
EXIF Geolocation Data
User Enumeration
Server Configuration
Private API key Disclosure
Sensitive Configuration Files
How Promilo Works for Students
College Search Made Easy, Find the Right College for You in Minutes, Not Months!
Search your Career Goal
Discover courses, internships, and jobs that sync with your goals.
Register for Free
Get access to premium features and connect directly with experts. You're all set!
Book a Free Meeting
Schedule a free online meeting or talk to experts Jump into a meeting with pro-experts. We got you!
Stack Up Rewards
Your time is valuable, and we appreciate every moment you spend with us. That's why we continue to reward you for your engagement.