Building a SAAS, and some automations

public
3 min read
Building a SAAS, and some automations
Photo by Team Nocoloco / Unsplash

Table of contents

This past week was very busy. I went to Paris with my co-founder of ReWorker to meet a lot of coworking spaces and negotiate partnerships with them, and I also built a lot of new features on the app.

That week was more focused on my SAAS than working on Bug Bounty stuff so I will talk more here about that for this AituWeek.

I also thought a lot about what to do with bug bounty and my automation stuff, what to automate, and what to do manually.

ReWorker

I'm pretty happy that I built this app. A lot of people now love it and we wanted to launch some videos for our social networks. So we went to Paris to make videos and also to negotiate partnerships with them.

It was very useful to talk to a lot of coworking space to better understand what to do with the app, and where to put our focus. It finally comes that the main feature should be the community. Being able to meet new people and coworkers. A lot of people always work alone and want to meet new people.

So we are going to put our focus on it, creating a good community around the people who work online and solo, and make events in our partner spaces. Also making the possibility for the users to know who is working where to meet other coworkers and create possibilities.

I needed to change a lot of the app, and it's now better. I changed all the UI for something more clear, and beautiful. If you want to check the project you can go to https://reworker.app

Building a SAAS

Creating a project like that takes time. A lot of time. And for the moment, it's not rewarding in terms of money. But, it's very interesting as this is totally different from doing bug bounty hunting.

I'm learning a lot of new stuff, in development, in business, and how stuff works. It can help me in bug hunting too, to maintain automation or simply to better understand how apps work. With the dev hat, I know how to build stuff the best way, and with the hacker hat, it's how to break stuff. You don't need to dev to be good at hacking, but it's helpful for sure.

And making it with someone else helps a lot to delegate some tasks that I'm not good at like contacting people, making partnerships, etc ...

Automation and understanding stuff

I've always loved to understand how stuff works. That's why hacking was so fascinating for me. When I was at school I loved understanding maths and hard stuff. That's why I always try to go deep into the stuff I'm working on.

As I told you previously, I'm focusing now more on client-side stuff and how the browser works, I'm learning a lot by reading the doc and some books. I'm not an expert, but I love to learn new stuff so I will see how it goes in the future!

I started to automate a lot of stuff, like automatically accepting invitations and scanning everything, and I finally came back on it as it's not really the way I want to hunt. Finding a lot of low-hanging fruits can be cool and rewardful but that's not what I want to do.

So I will continue automating stuff, and helping me in a lot of aspects. And I will more automate regarding some programs I want to focus on. For instance, monitoring some pages, or javascript for changes, and being the first to know if there is something but only on a few programs and not on every program.

Last week, my friend @pwnwithlove found with @brumens a pretty nice bug on a big public program. I'm so proud of her and it reminds me that there are still bugs everywhere, even on big programs that were created a long time ago.

It's where I want to put my focus.

This week will be more back on hunting stuff, finishing my automation, and going on a program I wanted to hunt on for a long time.

So have a nice week too!

Ideas / Notes / Resources

  • The book "The Tangled Web", that is pretty old but very nice for learning how browsers worked and it gives you a good overview
  • A masterclass was given by Mizu on the Critical Thinking Discord. You need a membership to access it, but it was very nice and useful to understand how domloggerpp works!
Aituglo

Aituglo

Paris
The author of this blog, a bug bounty hunter and security researcher that shares his thoughts about the art of hacking.