<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/css" href="https://static.getpodpage.com/public/css/xml_stylesheet.47dff0f81931.css"?>
<urlset
  xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"
  xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
<url><loc>https://www.criticalthinkingpodcast.io/</loc><lastmod>2026-03-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-168-the-doctor-is-in-devtools/</loc><lastmod>2026-04-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-167-stealing-bugs-with-valeriy-shevchenko/</loc><lastmod>2026-03-26</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-166-rez0s-top-claude-skill-secrets/</loc><lastmod>2026-03-19</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-165-protobuf-hacking-ai-powered-bug-hunting-and-self-improving-claude-workflows/</loc><lastmod>2026-03-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-164-tommy-devoss-from-black-hat-to-bug-bounty-legend/</loc><lastmod>2026-03-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-163-best-technical-takeaways-from-portswigger-top-10-2025/</loc><lastmod>2026-03-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-162-hackerone-training-ai-on-bug-bounty-data/</loc><lastmod>2026-02-26</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-161-cross-consumer-attacks-dtmf-tone-exfil/</loc><lastmod>2026-02-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-160-cloudflare-zero-days-mail-unsubscribing-for-xss/</loc><lastmod>2026-02-06</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-159-avoiding-downgrades-on-google-cloud-vrp-with-cote-and-darby-hopkins/</loc><lastmod>2026-01-29</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-159-avoiding-downgrades-on-google-cloud-vrp-with-cote-and-darby-hopkins-1/</loc><lastmod>2026-02-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-158-10hr-marathon-hack-along-recap-300k-client-side-bugs/</loc><lastmod>2026-01-22</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-158-10hr-marathon-hack-along-recap-300k-client-side-bugs-1/</loc><lastmod>2026-02-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-157-crushing-pwn2own-h1-with-kernel-driver-exploits/</loc><lastmod>2026-01-15</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-156-chill-ama-from-bugbountyforum/</loc><lastmod>2026-01-08</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-155-2025-hacker-stats-2026-goals/</loc><lastmod>2026-01-03</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-154-starting-a-pentesting-company-on-top-of-bug-bounty/</loc><lastmod>2026-01-03</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-153-hacking-the-robots-of-the-future-hardware-ai-and-bug-bounties-with-matt-brown/</loc><lastmod>2025-12-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-152-geminijack-and-agentic-security-with-sasi-levi/</loc><lastmod>2025-12-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-151-client-side-advanced-topics/</loc><lastmod>2025-12-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-150-aspnet-mvc-patterns-popping-oracle-identity-and-esoteric-subdomain-enumeration/</loc><lastmod>2025-11-27</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-149-defcon-debrief-ai-vulns-unicode-weirdness-and-wild-vulnerability-chains/</loc><lastmod>2025-11-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-148-mcp-hacking-guide/</loc><lastmod>2025-11-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-147-stupid-simple-hacking-workflow-tips/</loc><lastmod>2025-11-06</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-146-hacking-horror-stories/</loc><lastmod>2025-10-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-145-gr3pmes-secret-bug-bounty-note-taking-methodology/</loc><lastmod>2025-10-23</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-144-googles-top-ai-hackers-busfactor-and-monke/</loc><lastmod>2025-10-16</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-143-new-cohost-client-side-gadgets-lhe-meta-instant-global-admin-in-entra/</loc><lastmod>2025-10-09</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-142-gr3pmes-full-time-hunting-journey-update-insane-ai-research-and-some-light-news/</loc><lastmod>2025-10-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-141-hacking-the-pod-google-docs-0-day-react-createelement-exploits-with-nick-copi-7urb/</loc><lastmod>2025-09-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-140-crit-research-lab-update-client-side-tricks-galore/</loc><lastmod>2025-09-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-139-james-kettle-pwning-in-prod-how-to-do-web-security-research/</loc><lastmod>2025-09-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-138-caido-tools-and-workflows/</loc><lastmod>2025-09-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-137-how-we-do-ai-assisted-whitebox-review-new-cspt-gadgets-and-tools-from-slcyber/</loc><lastmod>2025-08-28</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-136-hacking-cluely-ai-prod-sec-and-how-to-not-get-sued-with-jack-cable/</loc><lastmod>2025-08-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-135-akamais-ryan-barnett-on-wafs-unicode-confusables-and-triage-stories/</loc><lastmod>2025-08-14</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-134-xbow-ai-hacking-agent-and-human-in-the-loop-with-diego-djurado/</loc><lastmod>2025-08-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-133-building-hacker-communities-bug-bounty-village-getdisclosed-and-the-lhe-squad/</loc><lastmod>2025-07-31</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-132-archive-testing-methodology-with-mathias-karlsson/</loc><lastmod>2025-07-24</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-131-christmas-in-july-hacking-style-sl-cyber-writeups-bug-bounty-metastrategy-and-orphan/</loc><lastmod>2025-07-17</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-130-minecraft-hacks-to-google-hacking-star-valentino/</loc><lastmod>2025-07-10</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-129-is-this-how-bug-bounty-ends/</loc><lastmod>2025-07-03</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-128-new-research-in-blind-ssrf-and-self-xss-and-how-to-architect-source-code-review-ai-bot/</loc><lastmod>2025-06-26</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-127-drama-pdf-as-js-chaos-bounty-profile-apps-and-more/</loc><lastmod>2025-06-19</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-126-hacking-ai-series-vulnus-ex-machina-part-3/</loc><lastmod>2025-06-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-125-how-to-win-live-hacking-events/</loc><lastmod>2025-06-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-124-bug-bounty-lifestyle-less-hacking-time/</loc><lastmod>2025-05-29</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-123-hacking-ai-series-vulnus-ex-machina-part-2/</loc><lastmod>2025-05-23</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-122-we-won-googles-ai-hacking-event-in-tokyo-main-takeaways/</loc><lastmod>2025-05-15</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-121-slonsers-image-injection-0-day-ato-new-caido-collab-plugin/</loc><lastmod>2025-05-08</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-120-spaceraccoon-from-day-zero-to-zero-day/</loc><lastmod>2025-05-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-119-abusing-iframes-from-a-client-side-hacker/</loc><lastmod>2025-04-17</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-118-hacking-happy-hour-0days-on-tap-and-sqli-shots/</loc><lastmod>2025-04-10</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/hacking-ai-series-vulnus-ex-machina-part-1/</loc><lastmod>2025-04-03</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-116-auth-bypasses-and-google-vrp-writeups/</loc><lastmod>2025-03-27</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-115-mentee-to-career-hacker-mokusou-so-sakaguchi/</loc><lastmod>2025-03-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-114-single-page-application-hacking-playbook/</loc><lastmod>2025-03-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/best-technical-takeaways-from-portswigger-top-10-2024/</loc><lastmod>2025-03-06</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-112-interview-with-ciaran-cotter-critical-lab-researcher-h1-irish-ambassador/</loc><lastmod>2025-02-27</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-111-how-to-bypass-dompurify-in-bug-bounty-with-kevin-mizu/</loc><lastmod>2025-02-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-110-oauth-gadget-correlation-and-common-attacks/</loc><lastmod>2025-02-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-109-creative-recon-alternative-techniques/</loc><lastmod>2025-02-06</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-108-how-to-hack-salesforce-servicenow-and-other-saas-products-with-aaron-costello/</loc><lastmod>2025-01-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-107-bypassing-cross-origin-browser-headers/</loc><lastmod>2025-01-23</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-106-announcing-our-new-cohost/</loc><lastmod>2025-01-16</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-105-best-critical-thinking-moments-from-2024/</loc><lastmod>2025-01-09</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-104-2024-hacker-stats-2025-goals/</loc><lastmod>2025-01-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-103-getting-ansi-about-unicode-normalization/</loc><lastmod>2024-12-27</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-102-building-web-hacking-micro-agents-with-jason-haddix/</loc><lastmod>2024-12-19</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-101-ctbb-hijacked-rez0__-on-ai-attack-vectors-with-johann-rehberger/</loc><lastmod>2024-12-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/ep-100-8-fav-bugs-of-2024-farewell-joel-hello-shift-cursor-of-hacking/</loc><lastmod>2024-12-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-99-back-to-the-basics-web-fundamental-to-100k-a-year-in-bug-bounty/</loc><lastmod>2024-11-28</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-98-team-82-sharon-brizinov-the-live-hacking-polymath/</loc><lastmod>2024-11-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-97-bcrypt-hash-input-truncation-mobile-device-threat-modeling/</loc><lastmod>2024-11-14</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-96-cookies-caching-with-matanber/</loc><lastmod>2024-11-07</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-95-attacking-chrome-extensions-with-matanber-big-impact-on-the-client-side/</loc><lastmod>2024-11-07</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-94-zendesk-fiasco-the-ctbb-naughty-list/</loc><lastmod>2024-10-24</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-93-a-chat-with-dr-bouman-life-as-a-hacker-and-a-doctor/</loc><lastmod>2024-10-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-92-saml-xpath-confusion-chinese-dns-poisoning-and-ai-powered-403-bypasser/</loc><lastmod>2024-10-10</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-91-zero-to-lhe-in-9-months-feat-gr3pme/</loc><lastmod>2024-10-03</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-90-5k-clickjacking-encryption-oracles-and-cursor-for-pocs/</loc><lastmod>2024-09-26</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-89-the-untapped-bug-bounty-landscape-of-iot-w-matt-brown/</loc><lastmod>2024-09-19</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-88-news-tools-and-writeups/</loc><lastmod>2024-09-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-87-hacker-wife-mariah-garder-on-bug-bounty-mentality-and-relationships/</loc><lastmod>2024-09-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-86-the-x-correlation-between-frans-rce-research-drop/</loc><lastmod>2024-08-29</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-85-practical-applications-of-defcon-32-web-research/</loc><lastmod>2024-08-22</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-84-0xlupin-takeaways-from-googles-las-vegas-bugswat/</loc><lastmod>2024-08-15</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-83-brainstorming-proxy-plugins/</loc><lastmod>2024-08-08</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-82-part-time-bug-bounty/</loc><lastmod>2024-08-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-81-crushing-client-side-on-any-scope-with-matanber/</loc><lastmod>2024-07-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-80-pwn2own-vs-h1-live-hacking-event-feat-sinsinology/</loc><lastmod>2024-07-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-79-the-state-of-css-injection-leaking-text-nodes-html-attributes/</loc><lastmod>2024-07-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-78-less-writing-more-hacking-reporting-efficiency-techniques/</loc><lastmod>2024-07-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-77-bug-bounty-mental-practical-tips-for-staying-sharp-motivated/</loc><lastmod>2024-07-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/critical-thinking-bug-bounty-podcast/episode-76-match-replace-http-proxies-most-underrated-feature/</loc><lastmod>2024-06-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-75-rerun-of-the-og-bug-bounty-king-frans-rosen/</loc><lastmod>2024-06-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/critical-thinking-bug-bounty-podcast/episode-74-supply-chain-attack-primer-popping-rce-without-an-http-request-feat-0xlupin/</loc><lastmod>2024-06-06</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-73-sandboxed-iframes-and-waf-bypasses/</loc><lastmod>2024-05-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-72-research-tldrs-smuggling-payloads-in-well-known-data-types/</loc><lastmod>2024-05-23</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-71-more-vdp-chats-ai-bias-bounty-strats-with-keith-hoodlet/</loc><lastmod>2024-05-16</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-70-smuggling-data-and-bypasses-all-around/</loc><lastmod>2024-05-09</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-69-johan-carlsson-3-month-check-in-on-full-time-bug-bounty/</loc><lastmod>2024-05-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-68-htmx-ss-with-mathias/</loc><lastmod>2024-04-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-67-vdps-accidental-program-vs-hacker-debate-part-2/</loc><lastmod>2024-04-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-66-cdn-cgi-resarch-intent-to-ship-and-louis-vuitton/</loc><lastmod>2024-04-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-65-motivation-and-methodology-with-sam-curry-zlz/</loc><lastmod>2024-04-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-64-net-remoting-cdn-attack-surface-and-recon-vs-main-app/</loc><lastmod>2024-03-28</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-63-jhaddix-returns/</loc><lastmod>2024-03-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-62-frontend-language-oddities/</loc><lastmod>2024-03-14</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-61-a-hacker-on-wall-street-jr0ch17/</loc><lastmod>2024-03-07</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-60-our-take-on-portswiggers-top-10-web-hacking-techniques-of-2023/</loc><lastmod>2024-02-29</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-59-bug-bounty-gadget-hunting-hackers-intuition/</loc><lastmod>2024-02-22</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-58-youssef-sammouda-client-side-ato-war-stories/</loc><lastmod>2024-02-15</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-57-live-hacking-event-inside-scoop-h1-305/</loc><lastmod>2024-02-08</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-56-using-data-science-to-win-bug-bounty-mayonaise-aka-jon-colston/</loc><lastmod>2024-02-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-55-popping-wordpress-plugins-methodology-braindump/</loc><lastmod>2024-01-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-54-white-box-formulas-vulnerable-coding-patterns/</loc><lastmod>2024-01-19</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/500kyr-as-full-time-bug-hunter-content-creator-nahamsec/</loc><lastmod>2024-01-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-52-best-technical-content-from-year-1-of-ctbb-podcast/</loc><lastmod>2024-01-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-51-hacker-stats-2023-2024-goals/</loc><lastmod>2023-12-28</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-50-mathias-fall-in-a-well-karlsson-bug-bounty-prophet/</loc><lastmod>2023-12-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-49-getting-live-hacking-event-invites-bug-bounty-collab-with-nagli/</loc><lastmod>2023-12-14</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-48-mvh-defcon-black-badge-googler-sam-erb/</loc><lastmod>2023-12-08</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-47-csp-research-iframe-hopping-and-client-side-shenanigans/</loc><lastmod>2023-12-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-46-the-saml-ramble/</loc><lastmod>2023-12-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-45-the-og-bug-bounty-king-frans-rosen/</loc><lastmod>2025-02-16</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-44-url-parsing-auth-bypass-magic/</loc><lastmod>2023-11-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/critical-thinking-bug-bounty-podcast/episode-43-caido-the-up-and-coming-http-proxy/</loc><lastmod>2023-11-03</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-42-renniepak-interview-intigriti-lhe-recap/</loc><lastmod>2023-10-27</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-41-mini-masterclass-attack-vector-ideation/</loc><lastmod>2023-10-19</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-40-bug-bounty-mentoring/</loc><lastmod>2023-10-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-39-the-art-of-architectures/</loc><lastmod>2023-10-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-38-mobile-hacking-maestro-sergey-toshin/</loc><lastmod>2023-10-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-37-tokyo-hacking-interview-with-0xlupin/</loc><lastmod>2023-09-22</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-36-bug-bounty-ethics-ct-exclusive-bug-reports/</loc><lastmod>2023-09-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-35-king-of-collaboration-douglas-day/</loc><lastmod>2023-09-07</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-34-program-vs-hacker-debate/</loc><lastmod>2023-08-31</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-33-the-master-of-hacker-showtell-inti-de-ceukelaire/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-32-the-great-write-up-low-down/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-31-alex-chapman-the-man-of-many-crits/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-30-recon-legend-shubs-from-burgers-to-bounties/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-29-live-episode-with-sean-yeoh-assetnote-engineer/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-28-surfin-with-csrfs/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-27-top-7-esoteric-web-vulnerabilities/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-26-client-side-quirks-browser-hacks/</loc><lastmod>2023-08-29</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-25-2xmvh-multi-million-dollar-hacker-inhibitor181/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-24-ai-hacking-with-daniel-miessler-and-rez0/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-23-hacker-loadouts/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-22-chipping-away-at-hardware-hacking/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-21-chill-chat-with-legendary-dod-hacker-corben-leo/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-20-hacker-brain-hacks-overcoming-bug-bountys-mental-tolls/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-19-audit-code-earn-bounties-part-2-zip-snip-sitecore-and-more/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-18-audit-code-earn-bounties/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-17-la-live-chat-with-five-legendary-hackers/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-16-the-hackers-toolkit/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-15-the-israeli-million-dollar-hacker/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-14-mobile-hacking-dynamic-analysis-w-frida-random-hacker-stuff/</loc><lastmod>2023-11-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-13-how-to-find-a-good-bbp-acropalypse-zdi/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-12-jhaddix-on-hacker-gthacker-ciso-og-hacking-techniques-and-crazy-reports/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-11-cv-web-cache-deception-and-ssti/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-10-the-life-of-a-full-time-bug-bounty-hunter-bb-news-reports-from-mentees/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-9-headless-browser-ssrf-rebindmultia-tool-release-web3-bug/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-8-postmessage-bugs-css-injection-and-bug-drops/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-7-portswigger-top-10-trufflesecurity-drama-and-more/</loc><lastmod>2023-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-6-mobile-hacking-attack-vectors-with-teknogeek-joel-margolis/</loc><lastmod>2023-08-17</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-4-h1-407-event-madness-takeaways-part-2-w-special-guest-spaceraccoon/</loc><lastmod>2023-08-17</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-5-ai-security-hacking-wifi-the-new-xss-hunter-and-more/</loc><lastmod>2023-08-17</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-3-h1-407-event-madness-takeaways-part-1/</loc><lastmod>2023-08-17</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-2-exploit-writing-automation-do-you-need-to-know-how-to-program-to-hack/</loc><lastmod>2023-08-17</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episode-1-introductions-bug-bounty-reports-and-bb-tips/</loc><lastmod>2023-08-17</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/aaron-costello/</loc><lastmod>2025-01-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/alex-chapman/</loc><lastmod>2024-12-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/alex-rice/</loc><lastmod>2026-02-19</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/ariel-garcia/</loc><lastmod>2025-07-31</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/ben-sadeghipour/</loc><lastmod>2024-01-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/brandyn-murtagh/</loc><lastmod>2024-10-03</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/c/</loc><lastmod>2025-02-27</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/ciaran-cotter/</loc><lastmod>2025-02-27</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/darby-hopkins/</loc><lastmod>2026-01-29</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/diego-jurado/</loc><lastmod>2025-08-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/douglas-day/</loc><lastmod>2023-10-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/dr-jonathan-bouman/</loc><lastmod>2024-10-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/emile-fugulin/</loc><lastmod>2023-11-03</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/eugene-lim-1/</loc><lastmod>2025-05-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/eugene-lim/</loc><lastmod>2025-05-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/frans-rosen-1/</loc><lastmod>2024-06-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/harley-kimball/</loc><lastmod>2025-07-31</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/hypr/</loc><lastmod>2026-01-15</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/jack-cable/</loc><lastmod>2025-08-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/james-kettle/</loc><lastmod>2025-09-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/jasmin-landry/</loc><lastmod>2024-03-07</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/jason-haddix/</loc><lastmod>2024-03-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/johan-carlsson/</loc><lastmod>2024-05-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/johann-rehberger/</loc><lastmod>2024-12-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/jonathan-dunn/</loc><lastmod>2026-04-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/jon-colston/</loc><lastmod>2024-02-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/joseph-thacker-1/</loc><lastmod>2024-12-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/keith-hoodlet/</loc><lastmod>2024-05-16</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/kevin/</loc><lastmod>2025-02-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/kevin-mizu/</loc><lastmod>2025-02-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/matanber/</loc><lastmod>2024-07-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/mathias-karlsson/</loc><lastmod>2023-12-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/matt-brown/</loc><lastmod>2024-09-19</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/michael-cote/</loc><lastmod>2026-01-29</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/nagli/</loc><lastmod>2024-12-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/nick-copi/</loc><lastmod>2025-09-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/rene-de-sain-renni/</loc><lastmod>2023-10-10</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/roni-carta/</loc><lastmod>2024-06-06</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/ryan-barnett/</loc><lastmod>2025-08-14</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/sam-curry/</loc><lastmod>2024-04-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/sam-erb/</loc><lastmod>2023-12-07</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/sasi-levi/</loc><lastmod>2025-12-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/sharon-brizinov/</loc><lastmod>2024-11-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/shubs/</loc><lastmod>2024-12-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/sina-kheirkhah/</loc><lastmod>2024-07-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/so/</loc><lastmod>2025-03-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/so-sakaguchi/</loc><lastmod>2025-03-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/tommy-devoss/</loc><lastmod>2026-03-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/valentino/</loc><lastmod>2025-07-10</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/valeriy-shevchenko/</loc><lastmod>2026-03-26</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/vitor-falcao/</loc><lastmod>2025-10-16</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/youssef-sammouda/</loc><lastmod>2024-02-15</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/guests/zak-bennett/</loc><lastmod>2025-05-15</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/people/justin-gardner-rhy/</loc><lastmod>2023-10-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/people/joseph-thacker-rez/</loc><lastmod>2025-02-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/100th-episode-giveaways/</loc><lastmod>2026-02-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/critical-research-lab/</loc><lastmod>2026-02-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/critical-thinking-referral-program/</loc><lastmod>2026-02-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/cashout/</loc><lastmod>2026-02-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/discord-landing/</loc><lastmod>2026-03-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/full-time-hunters-guild/</loc><lastmod>2026-02-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/how-to-go-full-time-bug-bounty/</loc><lastmod>2026-02-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/whoami/</loc><lastmod>2026-02-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/wf/</loc><lastmod>2026-02-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/follow/</loc><lastmod>2026-03-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/episodes/</loc><lastmod>2026-03-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/reviews/</loc><lastmod>2026-03-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/contact/</loc><lastmod>2026-03-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/about/</loc><lastmod>2026-03-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/</loc><lastmod>2026-03-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/csrfing-on-some-audio-waves/</loc><lastmod>2026-04-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/xssdoctor-client-side-path-traversal-research-ep168/</loc><lastmod>2026-04-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/trying-some-iot-hacking-is-definitely-worth-your-time/</loc><lastmod>2026-03-31</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/rez0-told-us-everything-about-his-claude-hacking-agents/</loc><lastmod>2026-03-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/postmessagego-brrrrr/</loc><lastmod>2026-03-27</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/stealing-bugs-with-valeriy-shevchenko-ep-167/</loc><lastmod>2026-03-26</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/if-a-key-is-undefined-do-we-need-to-send-it/</loc><lastmod>2026-03-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-unexplainable-180k-bug-that-bought-him-a-gtr/</loc><lastmod>2026-03-23</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/and-theres-still-no-such-thing-as-a-secure-system/</loc><lastmod>2026-03-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/building-claude-skills-as-a-bug-bounty-hunter-ep-166/</loc><lastmod>2026-03-19</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/new-feature-head-start-if-you-know-the-target-well-enough/</loc><lastmod>2026-03-17</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-easiest-way-to-500k-a-year-is/</loc><lastmod>2026-03-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/bad-reproduction-steps-can-cost-you-money/</loc><lastmod>2026-03-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/protobuf-hacking-ai-powered-bug-hunting-and-self-improving-claude-workflows-ep-165/</loc><lastmod>2026-03-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/1-byte-diff-leaking-cross-site-data/</loc><lastmod>2026-03-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/stable-income-or-higher-highs-and-lower-lows/</loc><lastmod>2026-03-09</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/why-did-hackerone-decrease-its-bounties/</loc><lastmod>2026-03-08</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/is-h1-using-our-reports-to-train-llms/</loc><lastmod>2026-03-06</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/tommy-devoss-from-black-hat-to-bug-bounty-legend-ep-164/</loc><lastmod>2026-03-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/if-theres-a-vuln-move-the-camera/</loc><lastmod>2026-03-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/why-is-ai-training-in-hackerones-terms-is-it-still-there/</loc><lastmod>2026-03-03</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/taking-over-someones-alexa-with-a-laser/</loc><lastmod>2026-03-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/how-many-devices-a-pro-hardware-hacker-needs/</loc><lastmod>2026-02-28</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/hardware-flaw-vs-software-flaw-in-hardware/</loc><lastmod>2026-02-27</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/best-technical-takeaways-from-portswigger-top-10-2025-ep-163/</loc><lastmod>2026-02-26</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-bug-bounty-maturity-framework-can-really-take-programs-to-the-next-level/</loc><lastmod>2026-02-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/special-skills-special-bounties/</loc><lastmod>2026-02-24</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/incremental-idors-are-common-bet-youve-never-seen-incremental-tokens/</loc><lastmod>2026-02-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/hackerone-training-ai-on-bug-bounty-data-ep-162/</loc><lastmod>2026-02-19</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/an-exploit-made-in-heaven/</loc><lastmod>2026-02-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/innerhtml-can-make-your-xss-run/</loc><lastmod>2026-02-15</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/is-it-even-a-bypass-if-they-left-you-an-extra-key/</loc><lastmod>2026-02-14</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/cross-consumer-attacks-dtmf-tone-exfil-ep-161/</loc><lastmod>2026-02-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/null-origin-iframe-trick/</loc><lastmod>2026-02-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/this-makes-no-sense-at-all-but-thanks-chrome/</loc><lastmod>2026-02-10</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/wafs-cannot-win-this-battle/</loc><lastmod>2026-02-08</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/did-you-know-that-java-annotations-run-at-compile-time/</loc><lastmod>2026-02-07</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/cloudflare-zero-days-mail-unsubscribing-for-xss-ep160/</loc><lastmod>2026-02-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/dns-record-doesnt-exist-but-the-next-does/</loc><lastmod>2026-02-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/lesson-learned-old-tech-deserves-a-hack-too/</loc><lastmod>2026-02-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/pwning-in-3-minutes-reverse-imposter-syndrome/</loc><lastmod>2026-01-31</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/avoiding-downgrades-on-google-cloud-vrp-with-michael-cote-and-darby-hopkins-ep-159/</loc><lastmod>2026-01-29</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/supporting-the-git-scheme-enables-so-much/</loc><lastmod>2026-01-28</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/hacking-ai-can-be-more-than-convincing-it-to-get-hacked/</loc><lastmod>2026-01-26</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/give-me-2-ways-of-doing-something-ill-find-the-third/</loc><lastmod>2026-01-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/300k-meta-client-side-bugs-10hr-marathon-hack-along-recap-ep-158/</loc><lastmod>2026-01-22</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/arbitrary-file-read-as-a-service/</loc><lastmod>2026-01-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/policy-level-mitigation-strats/</loc><lastmod>2026-01-19</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/my-kids-friends-think-im-a-criminal/</loc><lastmod>2026-01-17</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/crushing-pwn2own-h1-with-kernel-driver-exploits-ep-157/</loc><lastmod>2026-01-16</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/conditional-breakpoints-are-underrated/</loc><lastmod>2026-01-15</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/break-the-schools-safety-app-for-good-reasons/</loc><lastmod>2026-01-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/pro-tip-for-js-analysis-with-ai/</loc><lastmod>2026-01-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/justin-was-using-ffuf-like-a-caveman/</loc><lastmod>2026-01-09</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/chill-ama-from-bugbountyforum-ep-156/</loc><lastmod>2026-01-09</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/how-to-get-fired-as-a-pentester/</loc><lastmod>2026-01-07</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/2025-hacker-stats-2026-goals-ep-155/</loc><lastmod>2026-01-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/16yo-gr3pme-accidentally-killed-the-server/</loc><lastmod>2026-01-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/a-hack-that-should-only-exist-in-games/</loc><lastmod>2025-12-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/admin-here-no-alert-needed/</loc><lastmod>2025-12-27</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/starting-a-pentesting-company-on-top-of-bug-bounty-ep-154/</loc><lastmod>2025-12-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/zero-interaction-full-cameramic-access-whats-the-scariest-bug-youve-ever-found/</loc><lastmod>2025-12-24</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/this-makes-you-a-better-hacking-partner/</loc><lastmod>2025-12-22</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/better-target-insight-easier-hacks/</loc><lastmod>2025-12-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/hacking-the-robots-of-the-future-hardware-ai-and-bug-bounties-with-matt-brown-ep153/</loc><lastmod>2025-12-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/never-too-late-to-start-a-good-habit/</loc><lastmod>2025-12-15</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/pay-attention-to-these-details-to-be-a-better-hacker-take-better-notes/</loc><lastmod>2025-12-14</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/cool-syntax-confusion-tips-from-ywh/</loc><lastmod>2025-12-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/geminijack-and-agentic-security-with-sasi-levi-ep-152/</loc><lastmod>2025-12-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/reality-check-on-going-full-time-on-bug-bounty/</loc><lastmod>2025-12-10</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/ai-bugs-can-be-so-simple-they-feel-wrong/</loc><lastmod>2025-12-09</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/sneak-peek-at-what-its-like-to-be-rhynos-mentee/</loc><lastmod>2025-12-06</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/client-side-advanced-topics-ep-151/</loc><lastmod>2025-12-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/client-vs-server-side-which-one-is-your-favourite/</loc><lastmod>2025-12-03</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/this-is-how-a-hacker-gets-their-handle/</loc><lastmod>2025-12-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/50-bonus-on-a-critical-vuln-busfactor-minified-javascript/</loc><lastmod>2025-11-29</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/aspnet-mvc-patterns-popping-oracle-identity-and-esoteric-subdomain-enumeration-ep-150/</loc><lastmod>2025-11-27</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/smuggling-from-url-hash-directly-into-an-event-handler/</loc><lastmod>2025-11-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-god-token-whos-going-to-find-the-next-one/</loc><lastmod>2025-11-23</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/when-the-context-bypasses-the-waf-for-you/</loc><lastmod>2025-11-22</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-meta-for-performing-at-live-hacking-events/</loc><lastmod>2025-11-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/defcon-breakdown-wildcards-passkeys-and-dom-clobbering-and-more-ep-149/</loc><lastmod>2025-11-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/over-50-of-the-reports-by-himself-were-so-proud-of-you-brandyn/</loc><lastmod>2025-11-19</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/promisqroute-is-a-new-technique-to-jailbreak-llms-by-triggering-downgrade/</loc><lastmod>2025-11-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/this-means-we-can-all-create-our-own-hackbots-right-now/</loc><lastmod>2025-11-16</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/mcp-hacking-guide-ep-148/</loc><lastmod>2025-11-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/reverse-engineering-cves-with-ai-this-is-a-hackers-dream/</loc><lastmod>2025-11-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/clientserver-balance-does-not-exist-when-everything-runs-on-the-client-cool-bug/</loc><lastmod>2025-11-09</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/being-a-full-time-hunter-does-not-have-to-mean-8h-of-bug-bounty-per-day/</loc><lastmod>2025-11-07</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/stupid-simple-hacking-workflow-tips-ep-147/</loc><lastmod>2025-11-06</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-struggle-of-stripping-down-a-payload-we-all-love/</loc><lastmod>2025-11-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/comparing-gadget-linking-with-redstone-kinda-makes-sense/</loc><lastmod>2025-11-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/imagine-being-so-good-that-bugs-find-you/</loc><lastmod>2025-11-03</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/7urb0-hacked-the-pod-instead-of-prepping-for-it/</loc><lastmod>2025-11-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/executing-code-from-a-yaml-file/</loc><lastmod>2025-10-31</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/hacker-horror-stories-halloween-special-ep-146/</loc><lastmod>2025-10-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/fancytracker-is-justins-new-favourite-tool-to-detect-postmessage-listeners/</loc><lastmod>2025-10-28</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/critical-thinking-bug-bounty-podcast/videos/great-post-by-jorian-you-can-find-this-post-and-a-lot-more-at-httpslabctbbshow/</loc><lastmod>2025-10-26</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-secret-is-to-not-quit/</loc><lastmod>2025-10-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/gr3pmes-secret-bug-bounty-note-taking-methodology-ep-145/</loc><lastmod>2025-10-23</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/sharing-knowledge-helps-the-community-grow/</loc><lastmod>2025-10-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/h1-hacker-milestone-rewards-lets-get-them-all/</loc><lastmod>2025-10-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/googles-top-ai-hackers-busfactor-and-monke-ep-144/</loc><lastmod>2025-10-16</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/your-worst-mistake-is-not-trying/</loc><lastmod>2025-10-15</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/how-james-pwned-akamai-theres-so-much-cool-stuff-in-old-research-papers/</loc><lastmod>2025-10-14</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/a-look-into-james-thought-process-and-methodology-what-a-masterclass/</loc><lastmod>2025-10-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/sharing-knowledge-is-the-best-way-to-learn/</loc><lastmod>2025-10-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/how-james-kettles-desync-research-started/</loc><lastmod>2025-10-09</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/new-cohost-client-side-gadgets-lhe-meta-instant-global-admin-in-entra-ep-143/</loc><lastmod>2025-10-09</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/caido-tricks-highlighting-top-level-navigation/</loc><lastmod>2025-10-06</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/caido-tricks-never-worry-about-updating-your-cookies-again/</loc><lastmod>2025-10-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/caido-tricks-search-only-recent-requests/</loc><lastmod>2025-10-03</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/gr3pmes-full-time-hunting-journey-update-insane-ai-research-and-some-light-news-ep-142/</loc><lastmod>2025-10-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/caido-tricks-drop-your-friends-a-bug/</loc><lastmod>2025-10-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/caido-tricks-command-palette-and-workflows/</loc><lastmod>2025-09-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/this-is-how-you-become-a-true-ai-master/</loc><lastmod>2025-09-27</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/hacking-the-pod-google-docs-0-day-react-createelement-exploits-with-nick-copi-7urb0-ep-141/</loc><lastmod>2025-09-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/just-a-sick-hackery-way-of-using-ai/</loc><lastmod>2025-09-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/you-should-not-be-afraid-of-hacking-google/</loc><lastmod>2025-09-23</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/exploiting-an-impossible-cache-deception-with-cspt/</loc><lastmod>2025-09-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/crit-research-lab-update-client-side-tricks-galore-ep-140/</loc><lastmod>2025-09-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/35k-for-a-universal-transferable-jailbreak/</loc><lastmod>2025-09-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/wafs-vs-payloads-this-battle-win-never-end/</loc><lastmod>2025-09-15</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/ryans-self-inflicted-xss/</loc><lastmod>2025-09-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/james-kettle-pwning-in-prod-how-to-do-web-security-research-ep-139/</loc><lastmod>2025-09-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/wafs-live-in-a-sources-world-bug-hunters-live-in-a-sinks-world/</loc><lastmod>2025-09-10</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/should-programs-let-us-hack-without-wafs/</loc><lastmod>2025-09-09</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/caido-tools-and-workflows-ep-138/</loc><lastmod>2025-09-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/giving-up-because-of-ai-think-again/</loc><lastmod>2025-09-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/critical-thinking-bug-bounty-podcast/videos/are-we-heading-to-a-hackerless-hacking-future-full-episode-httpsyoutuberva8ibyogj0/</loc><lastmod>2025-08-31</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/critical-thinking-bug-bounty-podcast/videos/we-can-finally-see-the-intelligence-in-ai-watch-the-episode-here-httpsyoutuberva8ibyogj0/</loc><lastmod>2025-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/how-we-do-ai-assisted-whitebox-review-new-cspt-ep-137/</loc><lastmod>2025-08-28</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/critical-thinking-bug-bounty-podcast/videos/how-xbow-works-is-incredible-watch-the-episode-here-httpsyoutuberva8ibyogj0/</loc><lastmod>2025-08-27</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/critical-thinking-bug-bounty-podcast/videos/xbow-url-attack-type-hack-watch-the-episode-here-httpsyoutuberva8ibyogj0/</loc><lastmod>2025-08-26</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/hacking-cluely-ai-prod-sec-and-how-to-not-get-sued-with-jack-cable-ep-136/</loc><lastmod>2025-08-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/helping-yall-is-what-keeps-us-going/</loc><lastmod>2025-08-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/critical-thinking-bug-bounty-podcast/videos/from-dupes-to-making-a-living-from-bug-bounties-full-episode-httpsyoutubeni-exmlxma4/</loc><lastmod>2025-08-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/have-you-tried-their-ctf-at-defcon-tell-us-how-you-did/</loc><lastmod>2025-08-16</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/akamais-ryan-barnett-on-wafs-unicode-confusables-and-triage-stories-ep-135/</loc><lastmod>2025-08-15</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/this-is-how-and-why-the-bug-bounty-village-was-created/</loc><lastmod>2025-08-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/xbow-ai-hacking-agent-and-human-in-the-loop-with-diego-jurado-ep-134/</loc><lastmod>2025-08-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/command-injection-in-vertex-ai/</loc><lastmod>2025-08-03</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-ai-infinite-money-glitch/</loc><lastmod>2025-08-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/building-hacker-communities-bug-bounty-village-getdisclosed-and-the-lhe-squad-ep-133/</loc><lastmod>2025-07-31</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/free-after-use-or-web-cache-deception/</loc><lastmod>2025-07-29</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/nesting-tags-to-break-sanitisers/</loc><lastmod>2025-07-28</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/hacker-x-ai-vs-hacker-ai/</loc><lastmod>2025-07-26</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/exploiting-fetchlater-with-redirect-chaining/</loc><lastmod>2025-07-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/archive-testing-methodology-with-mathias-karlsson-ep132/</loc><lastmod>2025-07-24</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/clever-way-to-weaponise-ai-retrieval-systems/</loc><lastmod>2025-07-22</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/obs-websockets-to-rce-research/</loc><lastmod>2025-07-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/this-is-how-you-bypass-ip-allow-lists/</loc><lastmod>2025-07-19</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/reverse-engineering-json-request-bodies-with-caido-shift/</loc><lastmod>2025-07-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/sl-cyber-writeups-metastrategy-orphaned-github-commits-ep-131/</loc><lastmod>2025-07-17</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/url-normalization-gone-wrong/</loc><lastmod>2025-07-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/minecraft-hacks-to-google-hacking-star-valentino-ep-130/</loc><lastmod>2025-07-10</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-ultimate-double-clickjacking-poc/</loc><lastmod>2025-07-09</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/sometimes-all-you-have-to-do-is-ask-and-its-not-the-first-time-we-say-this/</loc><lastmod>2025-07-07</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/hack-rest-reset-peak-performance/</loc><lastmod>2025-07-06</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/you-need-to-see-this-uuid-trick/</loc><lastmod>2025-07-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/is-this-how-bug-bounty-ends-ep-129/</loc><lastmod>2025-07-03</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/this-is-what-full-time-bug-bounty-really-means/</loc><lastmod>2025-06-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/poc-embedding-pages-data-theft/</loc><lastmod>2025-06-26</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/new-research-in-blind-ssrf-and-self-xss-and-how-to-architect-source-code-review-ai-bots-ep-128/</loc><lastmod>2025-06-26</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/csrf-command-execution-in-mcp/</loc><lastmod>2025-06-24</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/drama-pdf-as-js-chaos-bounty-profile-apps-and-more-ep-127/</loc><lastmod>2025-06-19</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/hacking-ai-series-vulnus-ex-machina-part-3-ep-126/</loc><lastmod>2025-06-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/how-to-win-live-hacking-events-ep-125/</loc><lastmod>2025-06-06</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/balancing-bug-bounty-freedom-with-hacking-time-ep-124/</loc><lastmod>2025-05-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/hacking-ai-series-vulnus-ex-machina-part-2-ep123/</loc><lastmod>2025-05-23</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/just-patch-the-binary-what-the/</loc><lastmod>2025-05-17</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/watch-learn-looking-back-at-the-aws-event/</loc><lastmod>2025-05-16</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/we-won-googles-ai-hacking-event-in-tokyo-main-takeaways-ep122/</loc><lastmod>2025-05-15</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/bring-back-full-disclosure/</loc><lastmod>2025-05-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/slonsers-image-injection-0-day-ato-new-caido-collab-plugin-ep-121/</loc><lastmod>2025-05-08</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/spaceraccoon-from-day-zero-to-zero-day-ep120/</loc><lastmod>2025-05-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/abusing-iframes-from-a-client-side-hacker-ep-119/</loc><lastmod>2025-04-17</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/hacking-happy-hour-0days-on-tap-and-sqli-shots-ep-118/</loc><lastmod>2025-04-14</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/vulnus-ex-machina-ai-hacking-part-1-ep-117/</loc><lastmod>2025-04-14</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/auth-bypasses-and-google-vrp-writeups-ep-116/</loc><lastmod>2025-04-14</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/mentee-to-career-hacker-mokusou-so-sakaguchi-ep-115/</loc><lastmod>2025-04-14</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/trick-for-popping-xss-on-ai-apps/</loc><lastmod>2025-03-17</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/ai-hacking-kinda-feels-like-social-engineering/</loc><lastmod>2025-03-16</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/clever-trick-for-bypassing-sop/</loc><lastmod>2025-03-16</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/single-page-application-hacking-playbook-ep-114/</loc><lastmod>2025-03-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/polluting-llm-memory-for-future-exploits/</loc><lastmod>2025-03-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/playing-with-dompurifys-text-output/</loc><lastmod>2025-03-10</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/ep-113-best-technical-takeaways-from-portswigger-top-10-2024/</loc><lastmod>2025-03-06</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/a-shortcut-for-inspecting-the-sanitize-function/</loc><lastmod>2025-03-03</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/bug-bounty-101-identifying-dompurify-in-blind-scenarios/</loc><lastmod>2025-03-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/ep-112-interview-with-ciaran-cotter-monkehack-critical-lab-researcher-and-full-time-hunter/</loc><lastmod>2025-03-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/google-is-hard-to-hack-but-thats-exactly-why-its-worth-trying/</loc><lastmod>2025-03-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/treating-public-client-keys-as-secret-keys-great-idea/</loc><lastmod>2025-02-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/our-community-is-truly-the-best/</loc><lastmod>2025-02-24</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/tracking-oauth-tokens-backwards/</loc><lastmod>2025-02-22</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/ep-111-how-to-bypass-dompurify-in-bug-bounty-with-kevin-mizu/</loc><lastmod>2025-02-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/bug-drop-xssdoctors-sick-xss-chain/</loc><lastmod>2025-02-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/ep-110-oauth-gadget-correlation-and-common-attacks/</loc><lastmod>2025-02-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/cookie-bombing-of-course-hahah/</loc><lastmod>2025-02-10</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/just-get-intimate-with-the-app/</loc><lastmod>2025-02-08</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/ep-109-creative-recon-alternative-techniques/</loc><lastmod>2025-02-07</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/exploiting-saas-misconfigurations/</loc><lastmod>2025-02-06</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/ep-108-how-to-hack-salesforce-servicenow-and-other-saas-products-with-aaron-costello/</loc><lastmod>2025-01-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/bypassing-cross-origin-browser-headers-ep-107/</loc><lastmod>2025-01-23</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/announcing-our-new-cohost-ep-106/</loc><lastmod>2025-01-16</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/best-moments-of-2024-on-the-pod-ep-105/</loc><lastmod>2025-01-09</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-secret-to-knowing-what-and-when-to-learn/</loc><lastmod>2025-01-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/concealing-payloads-in-url-credentials/</loc><lastmod>2025-01-03</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/2024-hacker-stats-2025-goals-ep-104/</loc><lastmod>2025-01-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/missing-browser-prompts-big-bounties/</loc><lastmod>2024-12-31</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/this-bcrypt-thing-is-insane/</loc><lastmod>2024-12-29</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/getting-ansi-about-unicode-normalization-ep-105/</loc><lastmod>2024-12-28</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/getting-ansi-about-unicode-normalization-ep-104/</loc><lastmod>2024-12-27</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/xss-via-the-shared-cache-in-service-workers-with-matan-berson/</loc><lastmod>2024-12-27</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/getting-ansi-about-unicode-normalization-ep-103/</loc><lastmod>2024-12-26</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-character-that-broke-safaris-cookies/</loc><lastmod>2024-12-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/have-you-heard-of-the-cookie-value-to-key-trick/</loc><lastmod>2024-12-23</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/chrome-extensions-101-with-justin-and-matan/</loc><lastmod>2024-12-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/building-web-hacking-micro-agents-with-jason-haddix-ep-102/</loc><lastmod>2024-12-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/weaponizing-browser-extensions-via-xss/</loc><lastmod>2024-12-15</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/beyond-the-isolated-world-of-the-closed-shadow-dom/</loc><lastmod>2024-12-14</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/need-more-attack-surface-try-this/</loc><lastmod>2024-12-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/ai-attack-vectors-ctbb-hijacked-rez0__-and-johann-ep-101/</loc><lastmod>2024-12-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/crazy-simple-chrome-extension-web-accessibility-quirk-120k/</loc><lastmod>2024-12-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/8-fav-bugs-of-2024-farewell-joel-hello-shift-cursor-of-hacking-ep-100/</loc><lastmod>2024-12-06</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/zendesks-public-facepalm/</loc><lastmod>2024-12-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-program-hall-of-shame-yay-or-nay/</loc><lastmod>2024-11-29</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/back-to-the-basics-web-fundamental-to-100k-a-year-in-bug-bounty-ep-99/</loc><lastmod>2024-11-29</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/whats-the-point-of-tattoos-if-you-cant-show-them-off/</loc><lastmod>2024-11-27</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/have-you-heard-the-hackerone-cake-story/</loc><lastmod>2024-11-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/amazon-told-me-to-book-a-better-hotel-room/</loc><lastmod>2024-11-24</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/why-i-cant-stop-hacking-amazon/</loc><lastmod>2024-11-22</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/team-82-sharon-brizinov-the-live-hacking-polymath-ep-98/</loc><lastmod>2024-11-22</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/can-eating-carrots-make-you-a-better-hacker/</loc><lastmod>2024-11-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/how-i-was-knighted-by-amazon-yes-really/</loc><lastmod>2024-11-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/bcrypt-hash-input-truncation-mobile-device-threat-modeling-ep-97/</loc><lastmod>2024-11-15</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/cookies-caching-with-matanber-ep-96/</loc><lastmod>2024-11-07</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/why-you-must-review-xpath-in-saml-code/</loc><lastmod>2024-11-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-ai-powered-403-bypasser-caido-plugin/</loc><lastmod>2024-11-03</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/my-crypto-bug-that-could-delete-entire-wallets/</loc><lastmod>2024-11-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/how-the-great-firewall-of-china-uses-dns-poisoning/</loc><lastmod>2024-11-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/attacking-chrome-extensions-with-matanber-big-impact-on-the-client-side-ep-95/</loc><lastmod>2024-10-31</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/zendesk-fiasco-the-ctbb-naughty-list-ep-94/</loc><lastmod>2024-10-24</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/why-note-taking-is-good-for-your-health/</loc><lastmod>2024-10-23</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/my-struggle-with-lhe-burnout/</loc><lastmod>2024-10-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/is-this-the-most-underrated-skill-in-bug-bounty/</loc><lastmod>2024-10-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/i-ignored-ssrf-for-too-long/</loc><lastmod>2024-10-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/a-chat-with-dr-bouman-life-as-a-hacker-and-a-doctor-ep93/</loc><lastmod>2024-10-17</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-best-bugs-for-new-hunters-with-gr3pme/</loc><lastmod>2024-10-16</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/when-iot-hacking-meets-indiana-jones/</loc><lastmod>2024-10-14</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/want-to-learn-hardware-hacking-try-this/</loc><lastmod>2024-10-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/plain-text-session-tokens-on-facebook/</loc><lastmod>2024-10-10</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/saml-xpath-confusion-chinese-dns-poisoning-and-ai-powered-403-bypasser-ep-92/</loc><lastmod>2024-10-10</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/be-careful-what-you-sell-on-ebay/</loc><lastmod>2024-10-08</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/pocs-failing-heres-the-problem-and-the-fix/</loc><lastmod>2024-10-07</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/php-stripslashes-doesnt-strip-slashes/</loc><lastmod>2024-10-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/zero-to-lhe-in-9-months-feat-gr3pme-ep-91/</loc><lastmod>2024-10-03</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/portswiggers-new-release-is-a-banger/</loc><lastmod>2024-10-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/how-25-characters-can-get-you-a-shell/</loc><lastmod>2024-09-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/unbelievable-os-command-injection-technique/</loc><lastmod>2024-09-28</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/using-x-request-id-to-access-any-account-via-header-injection/</loc><lastmod>2024-09-27</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/5k-clickjacking-encryption-oracles-and-cursor-for-pocs-ep-90/</loc><lastmod>2024-09-26</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/exploiting-x-request-id-to-write-php-in-varwww/</loc><lastmod>2024-09-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/relationship-hacks-for-bug-bounty-hunters/</loc><lastmod>2024-09-23</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/how-does-justin-stay-motivated-heres-how/</loc><lastmod>2024-09-23</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/how-long-does-it-take-to-find-a-bug-in-a-new-scope/</loc><lastmod>2024-09-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-untapped-bug-bounty-landscape-of-iot-w-matt-brown-ep-89/</loc><lastmod>2024-09-19</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/mariah-embarrassing-justin-about-the-first-time-he-met-frans-rosen/</loc><lastmod>2024-09-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/news-tools-and-writeups-ep-88/</loc><lastmod>2024-09-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/is-this-the-ultimate-swag-flex/</loc><lastmod>2024-09-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/how-to-dump-etcpasswd-with-3f/</loc><lastmod>2024-09-09</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/first-time-at-defcon-as-a-content-creator/</loc><lastmod>2024-09-09</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/why-didnt-i-know-about-this/</loc><lastmod>2024-09-08</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/hacker-wife-mariah-gardner-on-bug-bounty-mentality-and-relationships-ep-87/</loc><lastmod>2024-09-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-missing-plugin-for-api-testing/</loc><lastmod>2024-09-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/why-is-note-taking-so-bad/</loc><lastmod>2024-09-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/why-are-hackers-so-scrappy/</loc><lastmod>2024-08-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-x-correlation-between-frans-rce-research-drop-ep-86/</loc><lastmod>2024-08-29</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/practical-applications-of-defcon-32-web-research-ep-85/</loc><lastmod>2024-08-22</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/0xlupin-takeaways-from-googles-las-vegas-bugswat-ep-84/</loc><lastmod>2024-08-15</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/hacking-your-first-iot-device/</loc><lastmod>2024-08-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/surviving-last-minute-patches-in-pwn2own/</loc><lastmod>2024-08-10</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/brainstorming-proxy-plugins-ep83/</loc><lastmod>2024-08-08</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/stop-overriding-debug-functions-use-this-devtools-secret-instead/</loc><lastmod>2024-08-08</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/this-js-function-xss-as-a-service/</loc><lastmod>2024-08-07</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/disgustingly-amazing-vuln-leaves-me-almost-speechless/</loc><lastmod>2024-08-06</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/mind-blowing-debugging-trick/</loc><lastmod>2024-08-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/muscle-up-your-bug-bounty-game-literally/</loc><lastmod>2024-08-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/part-time-bug-bounty-ep-82/</loc><lastmod>2024-08-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/this-vuln-keeps-justin-awake-at-night/</loc><lastmod>2024-07-27</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/crazy-chaining-technique-for-rce-through-browser-extensions/</loc><lastmod>2024-07-26</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/crushing-client-side-on-any-scope-with-matanber-ep-81/</loc><lastmod>2024-07-26</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/this-technique-halves-the-time-to-leak-tokens/</loc><lastmod>2024-07-24</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/apply-display-block-to-script-tags-to-view-them-like-p-tags/</loc><lastmod>2024-07-22</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/watch-this-one-til-the-end/</loc><lastmod>2024-07-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/this-is-why-you-should-grep-for-headers/</loc><lastmod>2024-07-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/pwn2own-vs-h1-live-hacking-event-feat-sinsinology-ep-80/</loc><lastmod>2024-07-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/xss-waf-bypass-using-multi-character-html-entities/</loc><lastmod>2024-07-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/mongodb-nosql-injection-via-aggregation-pipelines/</loc><lastmod>2024-07-17</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/password-exfiltration-in-django-orm/</loc><lastmod>2024-07-16</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/how-to-exploit-ios-auth-flaw-if-you-have-an-iphone/</loc><lastmod>2024-07-15</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/one-click-account-takeover-victim-clicks-link-attacker-gets-auth-token/</loc><lastmod>2024-07-14</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-state-of-css-injection-leaking-text-nodes-html-attributes-ep-79/</loc><lastmod>2024-07-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-best-time-to-stop-hacking/</loc><lastmod>2024-07-08</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/definitely-worth-checking-out-this-postmessage-tracker/</loc><lastmod>2024-07-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/stealing-oauth-tokens-with-frans-rosen/</loc><lastmod>2024-07-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/less-writing-more-hacking-reporting-efficiency-techniques-ep78/</loc><lastmod>2024-07-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/that-time-frans-rosen-roasted-justin-for-being-young/</loc><lastmod>2024-07-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/this-is-why-you-need-to-look-gadgets/</loc><lastmod>2024-06-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/case-sensitive-bypass-for-x-forwarded-for-headers/</loc><lastmod>2024-06-28</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/bug-bounty-mental-practical-tips-for-staying-sharp-motivated-ep77/</loc><lastmod>2024-06-27</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/is-this-one-of-the-craziest-xxes-ever/</loc><lastmod>2024-06-26</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/stop-overcomplicating-bug-bounties/</loc><lastmod>2024-06-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/cookie-xss-affecting-every-page-and-subdomain-on-zoom/</loc><lastmod>2024-06-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/how-to-do-a-brain-reset/</loc><lastmod>2024-06-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/critical-thinking-bug-bounty-podcast/videos/match-replace-http-proxies-most-underrated-feature-ep-76/</loc><lastmod>2024-06-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/how-to-stay-motivated-in-bug-bounty/</loc><lastmod>2024-06-19</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/npx-package-manager-confusion-with-lupin/</loc><lastmod>2024-06-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-emotional-rollercoaster-that-is-bug-hunting/</loc><lastmod>2024-06-16</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/rerun-of-the-og-bug-bounty-king-frans-rosen-ep-75/</loc><lastmod>2024-06-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/how-deep-do-you-go-when-looking-for-secrets-in-cicd-pipelines/</loc><lastmod>2024-06-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/accidentally-found-cache-poisoning-in-npm/</loc><lastmod>2024-06-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/iframe-hijacking-via-predictable-windowopen-target-names/</loc><lastmod>2024-06-09</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/you-can-escape-a-sandbox-from-inside-an-iframe/</loc><lastmod>2024-06-07</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/critical-thinking-bug-bounty-podcast/videos/supply-chain-attack-primer-popping-rce-without-an-http-request-feat-0xlupin-ep-74/</loc><lastmod>2024-06-06</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/adding-padding-to-your-requests-to-bypass-wafs/</loc><lastmod>2024-06-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/justin-getting-schooled-by-johan-calrsson/</loc><lastmod>2024-06-03</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/exploiting-phone-number-parsing-for-xss/</loc><lastmod>2024-06-03</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/dropping-a-mega-crit-on-boxing-day/</loc><lastmod>2024-05-31</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/sandboxed-iframes-and-waf-bypasses-ep-73/</loc><lastmod>2024-05-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/what-to-look-for-when-reviewing-source-code/</loc><lastmod>2024-05-29</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/indirect-method-invocation-in-5-different-languages/</loc><lastmod>2024-05-27</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-vdp-debate-continues/</loc><lastmod>2024-05-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/research-tldrs-smuggling-payloads-in-well-known-data-types-ep-72/</loc><lastmod>2024-05-23</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/this-is-how-to-prove-the-impact-of-ai-bias/</loc><lastmod>2024-05-23</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/should-the-government-subsidize-vdps/</loc><lastmod>2024-05-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/is-security-just-another-feature/</loc><lastmod>2024-05-20</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/nahamsec-secures-50k-bonuses-for-nahamcon/</loc><lastmod>2024-05-19</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/most-people-dont-use-this-simple-recon-trick/</loc><lastmod>2024-05-17</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/300000-for-a-single-bounty-with-meta/</loc><lastmod>2024-05-17</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/more-vdp-chats-ai-bias-bounty-strats-with-keith-hoodlet-ep-71/</loc><lastmod>2024-05-16</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/getting-schooled-by-nahamsec-again/</loc><lastmod>2024-05-15</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/why-you-need-to-start-looking-for-script-gadgets/</loc><lastmod>2024-05-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/he-couldve-backdoored-gitlabs-code-base/</loc><lastmod>2024-05-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/accidental-xss-followed-by-his-first-encounter-with-a-csp/</loc><lastmod>2024-05-10</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/nahamcon-and-csp-bypasses-everywhere-ep-70/</loc><lastmod>2024-05-09</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/next-level-chaining-for-a-csp-bypass-in-github/</loc><lastmod>2024-05-08</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/cloudflare-image-optimization-proxy-allows-subdomain-redirects-via-onerror-attribute-injection/</loc><lastmod>2024-05-07</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/xss-via-htmx-trigger-attribute-injection-into-an-html-element/</loc><lastmod>2024-05-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/xss-via-response-header-injection-in-htmx-explained/</loc><lastmod>2024-05-03</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/johan-carlsson-3-month-check-in-on-full-time-bug-bounty-ep-69/</loc><lastmod>2024-05-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/global-csp-bypass-using-htmx-triggers-and-unsafe-eval/</loc><lastmod>2024-05-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/bug-bounty-programs-are-incentivised-not-to-pay/</loc><lastmod>2024-04-29</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/how-do-we-solve-the-leaderboard-problem-in-bug-bounties/</loc><lastmod>2024-04-27</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/0-days-htmx-ss-with-mathias-ep-68/</loc><lastmod>2024-04-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/why-do-companies-with-deep-pockets-only-have-a-vdp/</loc><lastmod>2024-04-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/pro-tips-dropped-by-joel-on-the-pod-last-week/</loc><lastmod>2024-04-24</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/training-yourself-to-deal-with-failure-in-bug-bounties-by-changing-your-mindset/</loc><lastmod>2024-04-23</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/discord-channel-to-monitor-the-blink-dev-google-group/</loc><lastmod>2024-04-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/announcement-caido-is-dropping-global-workflows-this-week/</loc><lastmod>2024-04-19</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/vdps-accidental-program-vs-hacker-debate-part-2-ep-67/</loc><lastmod>2024-04-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/breaking-the-auth-flow-using-to-terminate-the-redirect-uri/</loc><lastmod>2024-04-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/hacking-a-korean-mmo-for-3-million-dollars-worth-of-in-game-purchases/</loc><lastmod>2024-04-16</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/popping-teslas-with-secondary-pt-and-javascripts-intparse-just-sam-curry-shit/</loc><lastmod>2024-04-15</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/sam-doing-his-thing-and-generating-infinite-money-with-a-request-replay-attack-lol-3mm-shakes-head/</loc><lastmod>2024-04-14</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-story-of-how-sam-curry-got-detained-at-an-airport/</loc><lastmod>2024-04-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/cdn-cgi-research-intent-to-ship-and-louis-vuitton-ep-66/</loc><lastmod>2024-04-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/got-paid-150-for-a-bug-by-adding-more-visual-impact/</loc><lastmod>2024-04-09</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/dom-purify-type-confusion-by-slonser/</loc><lastmod>2024-04-06</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/words-of-wisdom-from-naffy-nnwakelam/</loc><lastmod>2024-04-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/motivation-and-methodology-with-sam-curry-zlz-ep-65/</loc><lastmod>2024-04-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/exploiting-net-remoting-via-a-header/</loc><lastmod>2024-04-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/is-this-the-best-tool-jhaddix-has-ever-built/</loc><lastmod>2024-03-29</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/net-remoting-cdn-attack-surface-and-recon-vs-main-app-ep-64/</loc><lastmod>2024-03-28</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/finding-unknown-apex-domains-using-dig-whoisxml-api-and-grep/</loc><lastmod>2024-03-27</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/taking-things-out-of-the-too-hard-basket-to-find-bugs/</loc><lastmod>2024-03-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/jhaddix-inspects-webhooks-to-catch-bugs/</loc><lastmod>2024-03-24</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/smuggling-sensitive-data-via-css-injection-and-sequential-import-chaining/</loc><lastmod>2024-03-23</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/episode-63-jhaddix-returns/</loc><lastmod>2024-03-22</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/dropping-cookie-bombs-for-full-ato/</loc><lastmod>2024-03-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/iframe-hijacking-via-windowopen/</loc><lastmod>2024-03-19</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/heres-a-weird-race-condition-bug-for-yall/</loc><lastmod>2024-03-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/this-is-the-funniest-blind-xss-story-ive-heard/</loc><lastmod>2024-03-17</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/exploiting-dompurify-with-meta-tag-and-redirects-for-oauth-token-leakage-with-jr0ch17/</loc><lastmod>2024-03-15</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/frontend-language-oddities-ep-62/</loc><lastmod>2024-03-15</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/courses-certs-or-self-taught-jr0ch17-shares-his-thoughts/</loc><lastmod>2024-03-10</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/exploiting-php-filter-chains-for-arbitrary-file-read/</loc><lastmod>2024-03-08</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/god-mode-pwnage-with-d3d-abusing-akamai-to-abuse-f5-to-abuse-traffic-routes-to-steal-ntlm-creds/</loc><lastmod>2024-03-08</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/a-hacker-on-wall-street-jr0ch17-ep-61/</loc><lastmod>2024-03-07</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/insane-technique-to-exploit-near-unexploitable-races-with-sub-one-millisecond-hit-times/</loc><lastmod>2024-03-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/is-the-backslash-escaped-if-not-this-is-how-you-can-use-them-to-break-context-for-js-execution/</loc><lastmod>2024-03-03</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/how-i-exploited-a-stored-image-injection-vulnerability/</loc><lastmod>2024-03-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/our-take-on-portswiggers-top-10-web-hacking-techniques-of-2023-ep-60/</loc><lastmod>2024-03-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/this-bug-is-so-clutch-client-side-path-traversal-via-open-redirect/</loc><lastmod>2024-02-28</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/how-i-use-gadgets-to-stay-motivated-in-bug-hunting/</loc><lastmod>2024-02-26</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/weve-got-an-exciting-announcement/</loc><lastmod>2024-02-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/how-to-turn-mathrandom-into-mathnotrandom-by-calculating-the-seed/</loc><lastmod>2024-02-23</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/bug-bounty-gadget-hunting-hackers-intuition-ep-59/</loc><lastmod>2024-02-23</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/youssef-confuses-the-triage-team-with-this-scroll-to-text-fragment-exploitation/</loc><lastmod>2024-02-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/client-side-race-condition-via-postmessage-with-youssef-sammouda-ep-58/</loc><lastmod>2024-02-19</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/youssef-hasnt-duped-in-like-6-years-how/</loc><lastmod>2024-02-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/youssef-sammouda-client-side-ato-war-stories-ep-58/</loc><lastmod>2024-02-16</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/episode-57-live-hacking-event-inside-scoop-h1-305/</loc><lastmod>2024-02-09</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/using-data-science-to-win-bug-bounty-mayonaise-aka-jon-colston-ep-56/</loc><lastmod>2024-02-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/popping-wordpress-plugins-methodology-brain-dump-ep-55/</loc><lastmod>2024-01-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/white-box-formulas-vulnerable-coding-patterns-ep-54/</loc><lastmod>2024-01-18</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/500kyr-as-full-time-bug-hunter-content-creator-nahamsec-ep-53/</loc><lastmod>2024-01-11</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/best-technical-content-from-year-1-of-ctbb-podcast-ep-52/</loc><lastmod>2024-01-04</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/hacker-stats-2023-2024-goals-ep-51/</loc><lastmod>2023-12-28</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/mathias-fall-in-a-well-karlsson-bug-bounty-prophet-ep-50/</loc><lastmod>2023-12-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/getting-live-hacking-event-invites-bug-bounty-collab-with-nagli-ep-49/</loc><lastmod>2023-12-14</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/mvh-defcon-black-badge-googler-sam-erb-ep-48/</loc><lastmod>2023-12-07</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/csp-research-iframe-hopping-and-client-side-shenanigans-ep-47/</loc><lastmod>2023-11-30</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-saml-ramble-ep-46/</loc><lastmod>2023-11-23</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-og-bug-bounty-king-frans-rosen-ep-45/</loc><lastmod>2023-11-16</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/url-parsing-auth-bypass-magic-ep-44/</loc><lastmod>2023-11-09</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/critical-thinking-bug-bounty-podcast/videos/caido-the-up-and-coming-http-proxy-ep-43/</loc><lastmod>2023-11-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/renniepak-interview-intigriti-lhe-recap-ep-42/</loc><lastmod>2023-10-26</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/mini-masterclass-attack-vector-ideation-ep-41/</loc><lastmod>2023-10-19</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/but-bounty-mentorships-ep-40/</loc><lastmod>2023-10-12</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-art-of-architectures-ep-39/</loc><lastmod>2023-10-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/mobile-hacking-maestro-sergey-toshin-ep-38/</loc><lastmod>2023-09-28</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/tokyo-hacking-interview-with-0xlupin-ep-37/</loc><lastmod>2023-09-21</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/bug-bounty-ethics-ct-exclusive-bug-reports-ep-36/</loc><lastmod>2023-09-14</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/mapping-your-hacking-summary-shorts/</loc><lastmod>2023-09-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-bugs-are-there-mapping-your-hacking-shorts/</loc><lastmod>2023-09-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/bug-bounty-philosophy-opportunity-cost-shorts/</loc><lastmod>2023-09-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/rhynorater-trust-boundaries-shorts/</loc><lastmod>2023-09-13</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/douglas-day-the-king-of-collaboration-ep-35/</loc><lastmod>2023-09-07</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/should-bug-bounty-programs-pay-for-0-days-podcast-bugbounty-hackerone-bugcrowd-shorts/</loc><lastmod>2023-09-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/bug-bounties-should-be-going-down-podcast-bugbounty-hackerone-bugcrowd-intigriti-shorts/</loc><lastmod>2023-09-05</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-great-hacker-vs-program-debate-ep-34/</loc><lastmod>2023-08-31</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/finding-your-first-bug-bounty-bugbounty-podcast-intigriti-bugcrowd-hackerone-shorts/</loc><lastmod>2023-09-01</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/inti-de-ceukelaire-how-to-hack-you-way-to-metallica-vip-ep-33/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/5-bug-bounty-write-ups-you-cannot-miss-ep-32/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/alex-chapman-how-to-be-a-high-impact-hacker-ep-31/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/shubham-shah-from-burgers-to-bounties-ep-30/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/sean-yeoh-live-chat-with-an-assetnote-engineer-ep-29/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/csrfs-surfing-the-web-to-higher-bounties-ep-28/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-best-esoteric-web-vulnerabilities-ep-27/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/client-side-quirks-and-browser-hacks-ep-26/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/inhibitor181-two-time-mvh-multi-million-dollar-hacker-ep-25/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/daniel-miessler-and-rez0-hacking-with-ai-ep-24/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/building-the-ultimate-hacker-setup-ep-23/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/chip-ing-away-at-hardware-hacking-ep-22/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/corben-leo-legendary-dod-hacker-ep-21/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/bounty-burnout-overcoming-the-mental-tolls-of-hacking-ep-20/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/source-review-part-2-audit-code-earn-bounties-ep-19/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/source-review-audit-code-earn-bounties-ep-18/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/live-chat-with-legendary-hackers-in-la-ep-17/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-hackers-toolkit-ep-16/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/gal-nagli-the-israeli-million-dollar-hacker-ep-15/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/mobile-hacking-dynamic-analysis-using-frida-ep-14/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/acropalypse-now-ep-13/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/jason-haddix-from-hacker-to-ciso-ep-12/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/cv-web-cache-deception-and-ssti-ep-11/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/the-life-of-a-full-time-bug-bounty-hunter-ep-10/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/headless-browser-ssrf-new-tool-release-ep-9/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/postmessage-exploits-and-css-injection-ep-8/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/videos/portswigger-top-10-trufflesec-drama-and-more-ep-7/</loc><lastmod>2023-08-25</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/rate/</loc><lastmod>2026-03-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/categories/</loc><lastmod>2026-03-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/podroll/</loc><lastmod>2026-03-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/newsletter/</loc><lastmod>2026-03-02</lastmod></url><url><loc>https://www.criticalthinkingpodcast.io/sponsors/</loc><lastmod>2026-03-02</lastmod></url>
</urlset>
