Videos
Is it even a bypass if they left you an EXTRA key?
#hacking #bugbounty #podcast #bugbountytips #infosec #CSP
Cross-Consumer Attacks & DTMF Tone Exfil (Ep. 161)
Episode 161: In this episode of Critical Thinking - Bug Bounty Podcast Justin Gives us some quick hits regarding CSRF and Cross Consumer Attacks, and also touches on some breaking questions surrounding HackerOne Follow us on twitter at: https://x.com/ctbbpodcast Got any ideas and suggestions? Feel free to send us any…
This makes no sense at all but thanks, Chrome!
#hacking #bugbounty #podcast #bugbountytips #infosec #javascript
WAFs cannot win this battle =)
#hacking #bugbounty #podcast #bugbountytips #infosec #WAF #firewall
Did you know that Java annotations run at compile time?
#hacking #bugbounty #podcast #bugbountytips #infosec #Java
Cloudflare Zero-days & Mail Unsubscribing for XSS (Ep.160)
Episode 160: In this episode of Critical Thinking - Bug Bounty Podcast Joseph and Brandyn. Chat through some news, Including a Cloudflare Zero-day, Turning List-Unsubscribe into an SSRF/XSS Gadget, & Magic String Denial of Service in Claude. Follow us on twitter at: https://x.com/ctbbpodcast Got any ideas and suggestions? Feel free…
DNS Record doesn't exist... But the next does!
#hacking #bugbounty #podcast #bugbountytips #infosec #DNS #DNSSEC
Lesson learned: Old tech deserves a hack too
#hacking #bugbounty #podcast #bugbountytips #infosec
Pwning in 3 minutes = Reverse Imposter Syndrome
#hacking #bugbounty #podcast #bugbountytips #infosec #impostersyndrome
Avoiding Downgrades on Google Cloud VRP with Michael Cote and Darby Hopkins (Ep. 159)
Episode 159: In this episode of Critical Thinking - Bug Bounty Podcast we sit down with the Google Cloud VRP Team to deep-dive policy and reward changes, what the panel process looks like, and how to best configure for success. Follow us on twitter at: https://x.com/ctbbpodcast Got any ideas and…
Supporting the Git scheme enables SO MUCH
#hacking #bugbounty #podcast #bugbountytips #infosec
Hacking AI can be more than convincing it to get hacked
#hacking #bugbounty #podcast #bugbountytips #infosec
Give me 2 ways of doing something, I'll find the third
#hacking #bugbounty #podcast #bugbountytips #infosec
$300k Meta Client-Side Bugs + 10hr Marathon Hack-Along Recap (Ep. 158)
Episode 158: In this episode of Critical Thinking - Bug Bounty Podcast we talk about our personal takeaways from the CTBB Charity Hackalong, and then break down some InsertScript POCs, what a $55,000 bug can look like, and if Smart People Ever Say They’re Smart. Follow us on twitter at:…
Arbitrary File Read... As a Service
#hacking #bugbounty #podcast #bugbountytips #infosec #mcp #mcphacking
Policy-Level Mitigation Strats
#hacking #bugbounty #podcast #bugbountytips #infosec #mcp #mcphacking
My Kids' Friends Think I'm a Criminal
#hacking #bugbounty #podcast #bugbountytips #infosec
Crushing Pwn2Own & H1 with Kernel Driver Exploits (Ep. 157)
Episode 157: In this episode of Critical Thinking - Bug Bounty Podcast we’re joined by Hypr to talk about hacking Mediatek and his experiences with HackerOne and Pwn2Own Ecosystems. Follow us on twitter at: https://x.com/ctbbpodcast Got any ideas and suggestions? Feel free to send us any feedback here: info@criticalthinkingpodcast.io Shoutout…
Conditional Breakpoints Are Underrated
#hacking #bugbounty #podcast #bugbountytips #infosec
Break The School's Safety App (For Good Reasons)
#hacking #bugbounty #podcast #bugbountytips #infosec
Justin Was Using FFUF Like a Caveman
#hacking #bugbounty #podcast #bugbountytips #infosec #hackingtips #fuzzing