Thread 🧵:📷 Here is how I Do my Recon fast automated bugbounty 1) we are not using any kind of paid serverice to do automation 🔥 2) We use shell.cloud.google.com/ for hacking open terminal 3) Get List of your target form different hacking programs 4) Install httpx , subfinder , notify , anew , nuclei form github 5) Go in Teligram -> search for BotFather -> Creat a new bot -> search for @getidsbot 6) copy bot api key provided by botfather and chatid form getidsbot 7) creat a file by name config.yaml telegram: - id: "bugs" telegram_api_key: "Api form botfather" telegram_chat_id: "ID form getidsbot" telegram_format: "{{data}}" telegram_parsemode: "Markdown" 8) Write a bash script subdomain.sh while true; do subfinder -silent -dL domains.txt -all | anew subdomains2.txt | notify -pc ./config.yaml; sleep 10800; done 9) every 8 hr lunch your bash script command - bash subdomain.sh 10) Httpx -l subdomains2.txt -o httpsub.txt 11) Creat private nuclei templets 12) creat necleiout.sh while true; do nuclei -l httpsub.txt -t ~/Private-Nuclei-Templates/ | anew fuzzresultnuclei9.txt | notify -pc ./provider-config.yaml; sleep 3600; done 13) You can creat similar script for different tools and run it once you get something new you will indidatly get notified on teligram bot report faster no duplicay Thanks for your support ❤🔥 #infosec #bugbountytips #Hacking
With the help of the cloud shell we can do much faster than Vmware, or virtual box installed kali tool. Collected much faster or quicker than or not if someone don't have that much amount to buy the vps use cloud shell.
Great video brother and i have one doubt..the script is running every 8hr once so that we need to turn on the cloud shell at that time or it is all automated?
You can check from anywhere. When you are chilling with your friends your system will test the bug's and all for you anf and send you to your telegram discord, slack anywhere which you want. 😅