Bagley: Automated tool for reconnaissance and vulnerability detection in Bug Bounty environments

Impacto

Downloads

Downloads per month over past year



Fresco Perales, Víctor (2022) Bagley: Automated tool for reconnaissance and vulnerability detection in Bug Bounty environments. [Trabajo Fin de Grado]

[thumbnail of FRESCO PERALES 54083_VICTOR_FRESCO_PERALES_Bagley_1398832_1824372398 (1).pdf]
Preview
PDF
Creative Commons Attribution Non-commercial.

1MB


Abstract

Bug Bounties are monetary rewards that companies pay to independent security researchers when they successfully find and report an exploitable vulnerability. A bounty for a critical vulnerability in a big company can reach the equivalent to a year’s salary in Spain, and this amount is not defined by the complexity of the bug, but by the impact of it. This means that very simple to find and exploit bugs that affect critical infrastructure can report a very big amount of money if the person who finds it is in the right place, in the right moment. The goal of this project is to build and maintain an automated tool that runs on its own, in a Virtual Private Server and is able to perform reconnaissance and detect these simple vulnerabilities in a target. It also implements a communication interface over Discord, so that the researcher can operate it at any moment with any device and find out immediately if something is discovered, making it the perfect tool for assisting bug hunters.


Item Type:Trabajo Fin de Grado
Additional Information:

Trabajo de Fin de Grado en Ingeniería Informática, Facultad de Informática UCM, Departamento de Arquitectura de Computadores y Automática, Curso 2021/2022.

Directors:
Directors
Vázquez-Poletti, José Luis
Subjects:Sciences > Computer science
Título de Grado:Grado en Ingeniería Informática
ID Code:74611
Deposited On:19 Sep 2022 15:52
Last Modified:19 Sep 2022 15:52

Origin of downloads

Repository Staff Only: item control page