#bugbountytip #bugbountytips
Bug bounty TIP:
With Burp create a rule to replace Host’s value with ‘localhost’. Then brute force files/directories => you could bypass WAF and find out Juicy stuff.