Uploaded May 2026 | Updated September 2026, 1 day ago
Most bug bounty videos teach you to start with subdomain enumeration, JavaScript scraping, and wordlist content discovery. Three hours later you have a spreadsheet and zero leads worth chasing. In 2026, my recon collapsed into three things. The application, my proxy, and a way of reading what I see. This video walks through the exact process I run on every new target, why traditional recon stopped paying, and the patterns that pull broken access control bugs out on almost every program.
π― Get My Full Caido For Hackers Course: hhub.io/AMRCAIDO
π‘ Support AmrSec on Patreon:
patreon.com/AmrSec
π₯ Join Our Community:
Discord: discord.gg/nxHKyJTy3h
π Resources
Video Article: amrelsagaei.com/how-i-do-recon-in-2026
β Become a Channel Member:
youtube.com/@AmrSecOfficial/join
β οΈ Disclaimer
This channel is for educational purposes only. The goal is to teach cybersecurity, ethical hacking, and red team/blue team skills through real tools, techniques, and experience. Always hack ethically. π«‘
π Timestamps
00:00 Introduction
01:08 Why I Stopped?
05:30 How to Split a Target Into Surfaces
08:05 Understand How, Why, and When
09:39 Reading an App Like a Hacker
14:51 The Pattern Library in Your Head
16:20 What Developers Think Is Hard
19:00 Why I Don't Collect JavaScript Files Anymore
21:10 One Whole World I Didn't Touch
21:45 Conclusion
Follow AmrSec
LinkedIn: linkedin.com/in/amrelsagaei
Twitter/X: twitter.com/amrelsagaei
Instagram: instagram.com/amrelsagaei
#BugBounty #Recon #WebSecurity #EthicalHacking #AmrSec
Most bug bounty videos teach you to start with subdomain enumeration, JavaScript scraping, and wordlist content discovery. Three hours later you have a spreadsheet and zero leads worth chasing. In 2026, my recon collapsed into three things. The application, my proxy, and a way of reading what I see. This video walks through the exact process I run on every new target, why traditional recon stopped paying, and the patterns that pull broken access control bugs out on almost every program.
π― Get My Full Caido For Hackers Course: hhub.io/AMRCAIDO
π‘ Support AmrSec on Patreon:
patreon.com/AmrSec
π₯ Join Our Community:
Discord: discord.gg/nxHKyJTy3h
π Resources
Video Article: amrelsagaei.com/how-i-do-recon-in-2026
β Become a Channel Member:
youtube.com/@AmrSecOfficial/join
β οΈ Disclaimer
This channel is for educational purposes only. The goal is to teach cybersecurity, ethical hacking, and red team/blue team skills through real tools, techniques, and experience. Always hack ethically. π«‘
π Timestamps
00:00 Introduction
01:08 Why I Stopped?
05:30 How to Split a Target Into Surfaces
08:05 Understand How, Why, and When
09:39 Reading an App Like a Hacker
14:51 The Pattern Library in Your Head
16:20 What Developers Think Is Hard
19:00 Why I Don't Collect JavaScript Files Anymore
21:10 One Whole World I Didn't Touch
21:45 Conclusion
Follow AmrSec
LinkedIn: linkedin.com/in/amrelsagaei
Twitter/X: twitter.com/amrelsagaei
Instagram: instagram.com/amrelsagaei
#BugBounty #Recon #WebSecurity #EthicalHacking #AmrSec










