Reviewed channels and training

Bug bounty learning resources.

A reviewed watchlist for bug bounty workflow, web testing, exploit reasoning, lab practice, networking, and security foundations.

Six starting points

Recommended starting points.

No autoplay, embeds, tracking thumbnails, or mystery downloads. Every link opens the official publisher or creator source.

01 / Recon

Free Recon Course and Methodology For Bug Bounty Hunters

Build a repeatable recon loop before adding more tools.

NahamSec
Open resource ↗
02 / Recon

2024 Bug Bounty Recon Basics

A shorter entry point for organizing the first pass over an authorized target.

NahamSec
Open resource ↗
03 / Web

SQL Injection | Complete Guide

Pair the explanation with controlled labs and record each parser assumption.

Rana Khalil
Open resource ↗
04 / Foundation

How to Pass Your SY0-701 Security+ Exam in 2026

Use it to locate foundation gaps, not as a substitute for hands-on web testing.

Professor Messer
Open resource ↗
05 / Foundation

Security+ Study Group

Scenario questions expose weak vocabulary and networking assumptions quickly.

Professor Messer
Open resource ↗
06 / Practice

Web Security Academy learning paths

Turn a topic into a lab sequence with a visible completion path.

PortSwigger
Open resource ↗
Creator ledger

Choose by skill gap.

Professor Messer and Dion Training cover foundations. The other lanes focus on web research, exploitation, practice, and bug bounty workflow.

Selection policy

Selection is based on usefulness.

Suggest a resource →