Johan Carlsson Profile picture
Father and developer during the day, looking for bugs at night 🐞. Using Twitter for infosec only
Sep 7, 2022 7 tweets 3 min read
Yesterday I made it into top 5 on @GitLab bug bounty program 🥳, at the same time crossing 100k in bounties from the same.

Some people are asking me how to get started or where and what to look for. I thought I could share a practical guide if anyone care for a thread [1/6] The easiest way to find out what to look for is the latest security release. See what others are finding at the moment, usually there are more bugs of the same type present [2/6]

about.gitlab.com/releases/2022/…