Hacker News

46

Show HN: I built a site that maps the web from a bounty hunter's perspective

I am not seeing the long term, what is the value of this over a Shodan API key? They both crawl public IPs and explore subdomains for exposed resources.

Short term, if you have limited the view to companies only with bug bounty programs, it seems useful if you want to complete a bug bounty but don't know where to start. But the mapping of public resources has already been done.

I think showing URLs with sensitive params exposed, services using default creds, or some extra value add over a commodity scanner would be valuable. But then you would just be running a bug bounty/ pentesting AI service for bigger enterprises.

by hexadec1774470748
Hey, cool project! We run a bug bounty at Mitigata. If you're looking to add more targets, I'd be happy to connect you with the right person if that's useful.
by Areena_281774529931
I like the idea but the fake scarcity really puts me off. Most technical people are usually very wary of it, and that seems like your target audience.
by rmonvfer1774471855
By time I got signed in, I missed the early adopter spots. Any chance you could open up a couple more?
by freeplay1774467981
[dead]
by Taipan_Enigma1774466109
[dead]
by AmelieQiao1774517777
[flagged]
by dailoxxxx1774345635
[flagged]
by QubridAI1774469958