Skip to content
A list of interesting payloads, tips and tricks for bug bounty hunters.
Branch: master
Clone or download
EdOverflow Merge pull request #48 from neutrinoguy/master
Latest commit d22d26a Aug 15, 2018
Type Name Latest commit message Commit time
Failed to load latest commit information.
cheatsheets Merge pull request #48 from neutrinoguy/master Aug 15, 2018 Add contributing guidelines. Jul 15, 2017
LICENSE Create LICENSE Nov 11, 2017 Added bug bounty tips Apr 20, 2018

Bug Bounty Cheat Sheet

📚 Reference 🔎 Vulnerabilities
Bug Bounty Platforms XSS
Books SQLi
Special Tools SSRF
Recon CRLF Injection
Practice Platforms CSV Injection
Bug Bounty Tips LFI
Open Redirect
Template Injection
Content Injection
XSLT Injection


We welcome contributions from the public.

Using the issue tracker 💡

The issue tracker is the preferred channel for bug reports and features requests. GitHub issues

Issues and labels 🏷

Our bug tracker utilizes several labels to help organize and identify issues.

Guidelines for bug reports 🐛

Use the GitHub issue search — check if the issue has already been reported.

Style Guide

We like to keep our Markdown files as uniform as possible. So if you submit a PR, make sure to follow this style guide (we will not be angry if you do not).

  • Cheat sheet titles should start with ##.
  • Subheadings should be made bold. (**Subheading**)
  • Add newlines after subheadings and code blocks.
  • Code blocks should use three backticks. (```)
  • Make sure to use syntax highlighting whenever possible.


You can’t perform that action at this time.