For members-only perks and exclusive content, join our Discord server!

Videos

Aug. 24, 2023

Inti De Ceukelaire: How to hack you way to Metallica VIP (Ep. 33)

In this episode of Critical Thinking - Bug Bounty Podcast, we welcome Inti De Ceukelaire, a seasoned bug hunter known for his creative storytelling and impactful show-and-tell bugs…and let us tell you, his stories do not disappoint! From his bug bounty journey to some pretty wild hacks, Inti captivates us…

View more
Aug. 17, 2023

5 Bug Bounty Write-ups You CANNOT Miss (Ep. 32)

In this episode of Critical Thinking - Bug Bounty Podcast, Joel caught a nasty bug (no, not that kind) so Justin is flying solo, and catches us up to speed on what's been happening in hacking news. Follow us on twitter at: https://twitter.com/ctbbpodcast We're new to this podcasting thing, so…

View more
Aug. 10, 2023

Alex Chapman: How to Be a High-Impact Hacker (Ep. 31)

In this episode of Critical Thinking - Bug Bounty Podcast, we're thrilled to be joined by Alex Chapman, a seasoned InfoSec hacker and bug bounty hunter. We kick off with Alex sharing his hacking journey, from a guest lecturer that inspired him, to working on internal Red Teams, to his…

View more
Aug. 3, 2023

Shubham Shah: From Burgers to Bounties (Ep. 30)

In this episode, we're thrilled to be joined by renowned bug bounty hunter Shubs. We kick off with him sharing his journey from burgers to bugs, and how his friendly rivalry with a fellow hacker fueled his passion for reconnaissance, as well as his love of collaboration. We then shift…

View more
July 27, 2023

Sean Yeoh: Live Chat with an AssetNote Engineer (Ep. 29)

In this episode of Critical Thinking - Bug Bounty Podcast sit down with AssetNote Engineer Sean Yeoh, and pick his brain about what he's learned on his development journey. We talk about the place and importance of message brokers, and which ones we like best, as well as his engineering…

View more
July 20, 2023

CSRFs: Surfing the Web to Higher Bounties (Ep. 28)

In this episode of Critical Thinking - Bug Bounty Podcast, the CSRF’s up, dude! We kick off with a debate about whether or not deep link vulns in mobile apps can be considered CSRF. We also talk browser extensions and tools like Hackbar, PwnFox, and JS Weasel, and Justin tries…

View more
July 13, 2023

The BEST Esoteric Web Vulnerabilities (Ep. 27)

In this episode of Critical Thinking - Bug Bounty Podcast, we've switched places and now Joel is home while Justin is on the move. We break down seven esoteric web vulnerabilities, and talk Cookies, Config File Injections, Client-side path traversals and more. We also briefly discuss appliance hacking, new tools,…

View more
July 6, 2023

Client-side Quirks and Browser Hacks (Ep. 26)

In this episode of Critical Thinking - Bug Bounty Podcast, we're back with Joel, fresh (haha) off of back-to-back live hack events in London and Seoul. We start with his recap of the events, and the different vibes of each LHE, then we dive into the technical thick of it,…

View more
June 29, 2023

Inhibitor181: Two-Time MVH & Multi-Million Dollar Hacker (Ep. 25)

In this episode of Critical Thinking - Bug Bounty Podcast we talk to Cosmin (@Inhibitor181), fresh off of winning his 2nd MVH! We chat about the time management and strategy of hacking Multi-Target LHEs, determining when to pivot, and how to find normalcy in bug bounty hunting and Live Hacking…

View more
June 22, 2023

Daniel Miessler and Rez0: Hacking with AI (Ep. 24)

In this episode of Critical Thinking - Bug Bounty Podcast, we chat with Daniel Miessler and Rez0 about the emergence and potential of AI in hacking. We cover AI shortcuts and command line tools, AI in code analysis and the use of AI agents, and even brainstorm about the possible…

View more
June 15, 2023

Building The ULTIMATE Hacker Setup (Ep. 23)

In this episode of Critical Thinking - Bug Bounty Podcast, we delve into a different aspect of hardware - Our personal loadouts. We go through the equipment and gear we use to get our jobs done, and share stories about why we picked what we have. We also touch on…

View more
June 8, 2023

CHIP-ing Away at Hardware Hacking (Ep. 22)

In this episode of Critical Thinking - Bug Bounty Podcast we talk about some basic/intermediate concepts related to Hardware Hacking. Specifically, we dive into extracting data from eMMC chips in order to get our hands on source code for IoT devices. Don't miss this episode packed with valuable insights, tips,…

View more
June 1, 2023

Corben Leo: Legendary DoD Hacker (Ep. 21)

In this episode of Critical Thinking - Bug Bounty Podcast, we chat with Corben Leo about his journey in bug bounty hunting and ethical hacking. We discuss the state of DNS rebinding in 2023, a Twitter thread by Douglas Day (@ArchAngelDDay) on one-hundred bug bounty rules, and our own unique…

View more
May 25, 2023

Bounty Burnout: Overcoming the Mental Tolls of Hacking (Ep. 20)

In this episode of Critical Thinking - Bug Bounty Podcast, we dive into the world of "hacker brain hacks'' and overcoming challenges in bug bounty hunting. We discuss custom word lists, the rising popularity of Caido as a potential Burp Suite replacement, and cloudflared tunnels for hosting POCs. We also…

View more
May 18, 2023

Source Review Part 2: Audit Code, Earn Bounties (Ep. 19)

In this episode of Critical Thinking - Bug Bounty Podcast we further discuss some tips and tricks for finding vulns once you’ve got source code and some banger tweets/tools that popped up in our feed this week. Follow us on twitter at: https://twitter.com/ctbbpodcast We're new to this podcasting thing, so…

View more
May 11, 2023

Source Review: Audit Code, Earn Bounties (Ep. 18)

Episode 18: In this episode of Critical Thinking - Bug Bounty Podcast, we dive into everything source-code related: how to get source-code and what to do with it once you have. This episode is packed with great examples of successful source code review, tips on how to review code yourself,…

View more
May 4, 2023

Live Chat with Legendary Hackers in LA (Ep. 17)

In this episode of Critical Thinking - Bug Bounty Podcast we talk with five legendary hackers about some of their favorite bugs. Live. From LA. Corben Leo “Lorben CEO” @hacker_ https://twitter.com/hacker_ Sam “ZLZ” “ZOZL” “The King” Curry @samwcyo https://twitter.com/samwcyo Frans “The Legend” Rosen @fransrosen https://twitter.com/fransrosen Jonathan “Doc” Bouman @JonathanBouman https://twitter.com/JonathanBouman…

View more
April 20, 2023

The Hacker's Toolkit (Ep. 16)

In this episode of Critical Thinking, we talk about the hacker’s toolkit. Joel and Justin talk about their VPS setup, go-to hacking tools, most often used Linux commands, and the ways they duct tape all of these together for the big hacks. Follow us on twitter at: https://twitter.com/ctbbpodcast We're new…

View more
April 13, 2023

Gal Nagli: The Israeli Million-Dollar Hacker (Ep. 15)

In this episode of Critical Thinking - Bug Bounty Podcast we talk with the latest Million-Dollar bug bounty hunter: @naglinagli . He talks about his climb from $1,000 in bounties to $1,000,000, recon tips and tricks, and some bug reports that made the news and landed him the "Best Bug"…

View more
April 6, 2023

Mobile Hacking: Dynamic Analysis using Frida (Ep. 14)

Episode 14: In this episode of Critical Thinking we talk about Dynamic Analysis within Mobile Hacking and a bunch of random hacker stuff. It's a good time. Enjoy the pod. Follow us on Twitter at: https://twitter.com/ctbbpodcast We're new to this podcasting thing, so feel free to send us any feedback…

View more
March 30, 2023

Acropalypse Now (Ep. 13)

Episode 13: In this episode of Critical Thinking - Bug Bounty Podcast we talk about how to determine if a bug bounty program is good or not from the policy page. We also cover some news including Acropalypse, ZDI's Pwn2Own Competition, Node's Request library's SSRF Bypass, and a new scanning…

View more
March 23, 2023

Jason Haddix: From Hacker to CISO (Ep. 12)

In this episode of Critical Thinking - Bug Bounty Podcast we talk with Jason Haddix (aka jhaddix) about his eclectic hacking techniques, Hacker to Hacker CISO life, and some crazy vulns he found. This episode is chock full of awesome tips so give it a good listen! Follow us on…

View more
March 16, 2023

CV$$, Web Cache Deception, and SSTI (Ep. 11)

In this episode of Critical Thinking - Bug Bounty Podcast we talk about CVSS (the good, the bad, and the ugly), Web Cache Deception (an underrated vuln class) and a sick SSTI Joel and Fisher (https://twitter.com/Regala_) found. Follow us on twitter at: https://twitter.com/ctbbpodcast We're new to this podcasting thing, so…

View more
March 9, 2023

The Life of a Full Time Bug Bounty Hunter (Ep. 10)

In this episode of Critical Thinking - Bug Bounty Podcast we talk about what its like to be a full-time bug bounty hunter, a tonne of bug bounty news, and some great report summaries from Justin’s two mentees: Kodai and Soma. Follow us on twitter at: https://twitter.com/ctbbpodcast We're new to…

View more