Breadcrumb
  1. Training
  2. Education & Training Catalog
  3. Hack The Box
  4. HTB Certified Bug Bounty Hunter (HTB CBBH)

HTB Certified Bug Bounty Hunter (HTB CBBH)

The Bug Bounty Hunter Job Role Path is for individuals who want to enter the world of Bug Bounty Hunting with little to no prior experience. This path covers core web application security assessment and bug bounty hunting concepts and provides a deep understanding of the attack tactics used during bug bounty hunting. Armed with the necessary theoretical background, multiple practical exercises, and a proven bug bounty hunting methodology, students will go through all bug bounty hunting stages, from reconnaissance and bug identification to exploitation, documentation, and communication to vendors/programs. Upon completing this job role path, you will have become proficient in the most common bug bounty hunting and attack techniques against web applications and be in the position of professionally reporting bugs to a vendor.

Course Overview

Overall Proficiency Level
2 - Intermediate
Course Catalog Number
CBBH
Course Prerequisites
  • Interpreting a letter of engagement and having intermediate knowledge around web application, web service and API penetration testing
  • Knowledge around web application, web service and API underpinnings
  • Conducting web application/web service static and dynamic analysis
  • Conducting web application, web service and API vulnerability identification and analysis
  • Conducting manual and automated exploitation of various vulnerability classes
  • Professionally communicating and reporting vulnerabilities
Training Purpose
Skill Development
Specific Audience
All
Delivery Method
Online, Instructor-Led
Online, Self-Paced
  • Online, Instructor-Led
  • Online, Self-Paced

Learning Objectives

  • Bug Bounty Hunting processes and methodologies
  • Web application/web service static and dynamic analysis
  • Information gathering techniques
  • Web application, web service and API vulnerability identification and analysis
  • Manual and automated exploitation of various vulnerability classes
  • Vulnerability communication and reporting

Framework Connections

The materials within this course focus on the NICE Framework Task, Knowledge, and Skill statements identified within the indicated NICE Framework component(s):

Feedback

If you would like to provide feedback on this course, please e-mail the NICCS team at NICCS@mail.cisa.dhs.gov. Please keep in mind that NICCS does not own this course or accept payment for course entry. If you have questions related to the details of this course, such as cost, prerequisites, how to register, etc., please contact the course training provider directly. You can find course training provider contact information by following the link that says “Visit course page for more information...” on this page.

Last Published Date: