Interested in going full-time bug bounty? Check out our blueprint!

Episodes

March 30, 2023

Episode 13: How to Find a Good BBP + Acropalypse + ZDI

Episode 13: In this episode of Critical Thinking - Bug Bounty Podcast we talk about how to determine if a bug bounty program is good or not from the policy page. We also cover some news including Acropalypse, ZDI's Pwn2Own Co...

Listen to the Episode
March 23, 2023

Episode 12: JHaddix on Hacker->Hacker CISO, OG Hacking Techniques,…

Episode 12: In this episode of Critical Thinking - Bug Bounty Podcast we talk with Jason Haddix about his eclectic hacking techniques, Hacker -> Hacker CISO life, and some crazy vulns he found. This episode is chock full of a...

Listen to the Episode
March 16, 2023

Episode 11: CV$$, Web Cache Deception, and SSTI

Episode 11: In this episode of Critical Thinking - Bug Bounty Podcast we talk about CVSS (the good, the bad, and the ugly), Web Cache Deception (an underrated vuln class) and a sick SSTI Joel and Fisher found. Follow us on tw...

Listen to the Episode
March 9, 2023

Episode 10: The Life of a Full-Time Bug Bounty Hunter + BB News + Rep…

Episode 10: In this episode of Critical Thinking - Bug Bounty Podcast we talk about what its like to be a full-time bug bounty hunter, a tonne of bug bounty news, and some great report summaries from Justin’s two mentees: Kod...

Listen to the Episode
March 2, 2023

Episode 9: Headless Browser SSRF & RebindMultiA Tool Release + Web3 B…

Episode 9: In this episode of Critical Thinking - Bug Bounty Podcast we talk about Headless Browser SSRF and drop a tool called RebindMultiA. Joel also walks us through a web3 bug and we cover some bug bounty news from the pa...

Listen to the Episode
Feb. 22, 2023

Episode 8: PostMessage Bugs, CSS Injection, and Bug Drops

Episode 8: In this episode of Critical Thinking - Bug Bounty Podcast we drop some critical bugs which leak raw credit card info. We also discuss some CSS Injection & PostMessage related techniques. It's a short one but a good...

Listen to the Episode
Feb. 16, 2023

Episode 7: PortSwigger Top 10, TruffleSecurity Drama, and More!

Episode 7: In this episode of Critical Thinking - Bug Bounty Podcast we talk about PortSwigger's Top 10 Web Hacking Techniques of 2022 (link below), some drama surrounding TruffleSecurity's XSS Hunter, and, as always, some gr...

Listen to the Episode
Feb. 9, 2023

Episode 6: Mobile Hacking Attack Vectors with Teknogeek (Joel Margoli…

Episode 6: In this episode of Critical Thinking - Bug Bounty Podcast we sit down with mobile hacking legend Joel Margolis and get the scoop on his approach to popping bugs on Android. Follow us on twitter at: @ctbbpodcast We'...

Listen to the Episode
Feb. 2, 2023

Episode 4: H1-407 Event Madness & Takeaways Part 2 w/ Special Guest S…

Episode 4: In this episode of Critical Thinking - Bug Bounty Podcast we have part two of our series on the H1-407 HackerOne Live Hacking Event. This time, we have a special guest SpaceRaccoon ( @spaceraccoonsec ) talking abou...

Listen to the Episode
Feb. 2, 2023

Episode 5: AI Security, Hacking WiFi, the New XSS Hunter, and more

Episode 5: In this episode of Critical Thinking - Bug Bounty Podcast we talk about the new XSS Hunter, MD5 collisions and using ChatGPT for security, and much more! Follow us on twitter at: @ctbbpodcast We're new to this podc...

Listen to the Episode
Jan. 26, 2023

Episode 3: H1-407 Event Madness & Takeaways Part 1

Episode 3: In this episode of Critical Thinking - Bug Bounty Podcast we talk about some of the interesting things we’ve learned from participating in HackerOne's H1-407 Live Hacking event. We cover decompiling binaries in var...

Listen to the Episode
Jan. 18, 2023

Episode 2: Exploit Writing & Automation / Do you need to know how to …

Episode 2: In this episode of Critical Thinking - Bug Bounty Podcast we talk about exploit writing/automation, some new tools released in the industry (Of-CORS), the age old question of "Do you have to know how to program to ...

Listen to the Episode
Jan. 9, 2023

Episode 1: Introductions, Bug Bounty Reports, and BB Tips

Episode 1: In this episode of Critical Thinking - Bug Bounty Podcast, Joel Margolis (aka 0xteknogeek) and Justin Gardner (aka Rhynorater) cover introductions, a couple of cool bug bounty reports, and some really helpful BB Ti...

Listen to the Episode