Skip to main content
Back to course
Log in
Get started
Someone wanted to learn this too, so Grasp built them a personal learning path.
Create your own
Bug bounty hunter learning path
ยท
Module 12
Pivoting, Reporting, & Professional Practice
1
Network Evasion Techniques: Pivoting, Port Forwarding, and Tunneling
Explain the concepts of pivoting, port forwarding, and tunneling in a compromised network.
2
Pivoting with Chisel and SSH
Use tools like `chisel` or `ssh` to pivot from a compromised host into an internal network.
3
Credential Re-use for Lateral Movement
Perform lateral movement by reusing compromised credentials (e.g., Pass-the-Hash).
4
Defining Pen Test Essentials: Objectives, Scope, and RoE
Define the objectives, scope, and Rules of Engagement (RoE) for a professional penetration test.
5
Navigating Bug Bounty Policies and Scopes
Effectively navigate and interpret bug bounty program policies and scopes.
6
Crafting Actionable Vulnerability Reports
Write a clear and actionable vulnerability report that includes a description, impact, and remediation steps.
7
CVSS Scoring: A Hands-on Approach
Assign a CVSS score to a vulnerability based on its technical characteristics and impact.
8
Crafting Your Reconnaissance Strategy
Develop a personal methodology for approaching a new target in a bug bounty or penetration testing engagement.
End of course,
Back to course
Previous module
Privilege Escalation & Post-Exploitation
Next module