Skip to content

[BC-32320] Updates to Bugcrowd Methodology Taxonomy - Website testing, and Internal Infrastructure#23

Merged
adarshaks91 merged 14 commits intomainfrom
new-methodologies
Aug 20, 2025
Merged

[BC-32320] Updates to Bugcrowd Methodology Taxonomy - Website testing, and Internal Infrastructure#23
adarshaks91 merged 14 commits intomainfrom
new-methodologies

Conversation

@adarshaks91
Copy link
Contributor

@adarshaks91 adarshaks91 commented Aug 19, 2025

Adding methodologies for internal infrastructure and active directory testing.

original commits

@adarshaks91 adarshaks91 requested a review from Copilot August 19, 2025 07:22

This comment was marked as outdated.

adarshaks91 and others added 4 commits August 19, 2025 12:55
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
@adarshaks91 adarshaks91 requested a review from Copilot August 19, 2025 07:31

This comment was marked as outdated.

adarshaks91 and others added 2 commits August 19, 2025 13:13
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
@adarshaks91 adarshaks91 requested a review from Copilot August 19, 2025 10:33

This comment was marked as outdated.

Copy link
Contributor

@fedetaglia fedetaglia left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

can we use the snakecase on the methodologies files to match the other files?

active_directory.json
internal_network.json

thls

Copy link
Contributor

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull Request Overview

This PR adds two new security testing methodologies for Bugcrowd's methodology taxonomy: Internal Network Penetration Testing and Active Directory Testing. The changes also update the JSON schema to support additional characters (ampersands and colons) and numbers in pattern validation to accommodate the new methodology content.

  • Adds comprehensive internal network penetration testing methodology covering reconnaissance, protocol assessment, and vulnerability identification
  • Adds specialized Active Directory testing methodology with focus on privilege escalation and lateral movement techniques
  • Updates JSON schema patterns to support new characters and numbering in methodology content

Reviewed Changes

Copilot reviewed 3 out of 3 changed files in this pull request and generated no comments.

File Description
schema.json Updates regex patterns to allow ampersands, colons, and numbers in titles and keys
methodologies/internal_network.json New comprehensive methodology for internal network penetration testing
methodologies/active_directory.json New specialized methodology for Active Directory security testing
Comments suppressed due to low confidence (2)

Tip: Customize your code reviews with copilot-instructions.md. Create the file or learn how to get started.

@adarshaks91 adarshaks91 merged commit f8aa588 into main Aug 20, 2025
3 checks passed
@adarshaks91 adarshaks91 deleted the new-methodologies branch August 20, 2025 07:41
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants