Episode 150: In this episode of Critical Thinking - Bug Bounty Podcast we're highlighting some cool news and research, but not before expressing our gratitude to the Hacker community. We are so thankful for you all!
Follow us on twitter at: https://x.com/ctbbpodcast
Got any ideas and suggestions? Feel free to send us any feedback here: info@criticalthinkingpodcast.io
Shoutout to YTCracker for the awesome intro music!
====== Links ======
Follow your hosts Rhynorater, rez0 and gr3pme on X:
https://x.com/Rhynorater
https://x.com/rez0__
https://x.com/gr3pme
====== Ways to Support CTBBPodcast ======
Hop on the CTBB Discord at https://ctbb.show/discord!
We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc.
You can also find some hacker swag at https://ctbb.show/merch!
Today's Sponsor: ThreatLocker. Check out ThreatLocker Elevation Control
https://ctbb.show/tl-ec
====== This Week in Bug Bounty ======
Cache Overflow on Cloudflare.
https://hackerone.com/reports/3027461
====== Resources ======
Breaking Oracle’s Identity Manager
https://slcyber.io/research-center/breaking-oracles-identity-manager-pre-auth-rce/
Who Needs a Blind XSS?
https://hx01.me/hailcsv.htm
ASP.NET MVC View Engine Search Patterns
https://lab.ctbb.show/research/asp-net-mvc-view-engine-search-patterns
Heretic
https://github.com/p-e-w/heretic
Lesser known techniques for large-scale subdomain enum
https://docs.google.com/presentation/d/1UOcryh9c7zJ0UnnLwqRLFIyfU5LxSRRRt10c17dV8tI/edit?slide=id.g2d6dd8819b6_0_20#slide=id.g2d6dd8819b6_0_20
Antigravity – Known Issues
https://bughunters.google.com/learn/invalid-reports/google-products/4655949258227712/antigravity-known-issues#known-issues
Bug Bounty Daily
https://bugbountydaily.com/
Caido version of AssetNote Surf
https://github.com/caido-community/surf
====== Timestamps ======
(00:00:00) Introduction
(00:09:47) Breaking Oracle’s Identity Manager & Who Needs a Blind XSS?
(00:20:37) ASP.NET MVC View Engine Search Patterns & Heretic
(00:29:04) Lesser known techniques for large-scale subdomain enum
(00:35:29) Gemini 3 & Antigravity.
(00:45:57) Bug Bounty Daily
(00:52:42) Surf for Caido