Critical Thinking - Bug Bounty Podcast

Critical Thinking - Bug Bounty Podcast

By Justin Gardner (Rhynorater), Joseph Thacker (Rez0), & Brandyn Murtagh (gr3pme)

A "by Hackers for Hackers" podcast focused on technical content ranging from bug bounty tips, to write-up explanations, to the latest hacking techniques.

... more

  • 5
  • 5
  • 5
  • 5
  • 5

5

53 ratings


Download on the App Store

Best of Critical Thinking - Bug Bounty Podcast

The most played episodes among Podcast App listeners.

  1. Number 1: Episode 189: What Happened to HackerOne with Joel Margolis

    Episode 189: In this episode of Critical Thinking - Bug Bounty Podcast we’re (re)joined by none other than JOEL FREAKING MARGOLIS to talk about his blog post concerning HackerOne. We talk about what he thinks went wrong with H1, and how they can revive their old self. Follow us on twitter at: https://x.com/ctbbpodcast Got any ideas and suggestions? Feel free to send us any feedback here: [email protected] Shoutout to YTCracker for the awesome intro music! ====== Links ====== Follow your hosts Rhynorater, rez0 and gr3pme on X: https://x.com/Rhynorater https://x.com/rez0__ https://x.com/gr3pme Critical Research Lab: https://lab.ctbb.show/ Need a Pentest? We just launched CTBB Pentests! https://pentest.ctbb.show/ Hack full time? Check out the Full-Time Hunter’s Guild! https://ctbb.show/fthg ====== Ways to Support CTBBPodcast ====== Hop on the CTBB Discord at https://ctbb.show/discord! We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc. You can also find some hacker swag at https://ctbb.show/merch! Today’s Guest - Joel Magolis https://x.com/0xteknogeek ====== This Week in Bug Bounty ====== Kara Sprague’s Statement: “I read Joel’s post and listened to the episode myself. You raise many good points. The part I want to fix first is how we exchange and action feedback from the community. I don’t have the full fix yet, but I own it and am also open to working together to find a good solution.” Kara Sprague, CEO, HackerOne Write triager-grade Bug Bounty reports with Claude Code: introducing the YesWeHack Claude Kit plugin https://www.yeswehack.com/learn-bug-bounty/triager-grade-reports-claude-code Claude Kit https://github.com/yeswehack/claude-kit ====== Resources ====== What Happened to HackerOne? https://blog.teknogeek.io/posts/what-happened-to-hackerone/ Watch our episode with Alex Rice https://www.youtube.com/watch?v=Pa4wWv_ONjM ====== Timestamps ====== (00:00:00) Introduction (00:04:18) The early days: LHE's, Covid, and the rise of AI (00:17:20) HSM Program, HAI, and resource allocation (00:36:41) Sales Incentivisation (00:46:10) AI and Researcher Reports Data (00:54:38) How Can H1 Revive its Old Self (01:02:40) Triage

    1h 15min
    Listen Later
  2. Number 2: Episode 193: Browser Logic Errors & XS-Leaks with Jorian Woltjer

    Episode 193: In this episode of Critical Thinking - Bug Bounty Podcast we’re joined by Jorian Woltjer to talk through his Bug Bounty journey and all the crazy research he’s done for the Critical Thinking Lab. Follow us on twitter at: https://x.com/ctbbpodcast Got any ideas and suggestions? Feel free to send us any feedback here: [email protected] Shoutout to YTCracker for the awesome intro music! ====== Links ====== Follow your hosts Rhynorater, rez0 and gr3pme on X: https://x.com/Rhynorater https://x.com/rez0__ https://x.com/gr3pme Critical Research Lab: https://lab.ctbb.show/ Need a Pentest? We just launched CTBB Pentests! https://pentest.ctbb.show/ Hack full time? Check out the Full-Time Hunter’s Guild! https://ctbb.show/fthg ====== Ways to Support CTBBPodcast ====== Hop on the CTBB Discord at https://ctbb.show/discord! We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc. You can also find some hacker swag at https://ctbb.show/merch! ====== Resources ====== Cache key injection: Smuggling poison through the door https://www.yeswehack.com/lab/research-cache-key-injection ====== Resources ====== XS-Leaks https://xsleaks.dev/ Solving an ORB mystery https://lab.ctbb.show/research/solving-an-orb-mystery Research Review #24: Solving an ORB mystery (J0R1AN) https://www.youtube.com/watch?v=TpXccQbOb48 Stopping Redirects https://lab.ctbb.show/research/stopping-redirects Ethical Hacker Groep Nederland https://www.youtube.com/playlist?list=PL-cT3O--POR-ElvSufpZ1oPfyocmWYeos ====== Timestamps ====== (00:00:00) Introduction (00:04:19) CTFd status code XS-Leak (00:18:05) Jorian's Journey & Solving an ORB mystery (00:33:39) Stopping Redirects (00:58:55) DNS Rebinding in the browser (01:08:47) Popunder: weak password prompt (01:24:33) Declarative partial updates

    1h 47min
    Listen Later
  3. Number 3: Episode 192: Hackbot Proof-of-Concept Skill Creation

    Episode 192: In this episode of Critical Thinking - Bug Bounty Podcast Justin lays out some goals and tips on PoC Creation. Follow us on twitter at: https://x.com/ctbbpodcast Got any ideas and suggestions? Feel free to send us any feedback here: [email protected] Shoutout to YTCracker for the awesome intro music! ====== Links ====== Follow your hosts Rhynorater, rez0 and gr3pme on X: https://x.com/Rhynorater https://x.com/rez0__ https://x.com/gr3pme Critical Research Lab: https://lab.ctbb.show/ Need a Pentest? We just launched CTBB Pentests! https://pentest.ctbb.show/ Hack full time? Check out the Full-Time Hunter’s Guild! https://ctbb.show/fthg ====== Ways to Support CTBBPodcast ====== Hop on the CTBB Discord at https://ctbb.show/discord! We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc. You can also find some hacker swag at https://ctbb.show/merch! Sponsored by ThreatLocker - Privileged Access Management https://www.criticalthinkingpodcast.io/tl-pam ====== This Week in Bug Bounty ====== LHE at Ekoparty, open to all Ekoparty Attendees https://www.yeswehack.com/fr/page/live-hacking-event-banco-galicia-yeswehack-ekoparty-2026 Builders & Breakers | Building Hackbots: Models, Harnesses and Human Expertise with Hamid Kashfi https://www.youtube.com/watch?v=MYK9-66qe6w ====== Resources ====== Get Justin’s exclusive masterclass for more information https://www.ctbb.show/discord ====== Timestamps ====== (00:00:00) Introduction (00:05:33) PoC Creation Goals & Formats (00:15:01) Nuts and Bolts of Python & HTML Files

    27min
    Listen Later
  4. Number 4: Episode 191: Rez0s Sick Caching Bug & Local AI vs Subsidized tokens

    Episode 191: In this episode of Critical Thinking - Bug Bounty Podcast Justin and Joseph talk about successes in scaling their hackbots, and brainstorm possible ways to stretch their AI subscriptions. Follow us on twitter at: https://x.com/ctbbpodcast Got any ideas and suggestions? Feel free to send us any feedback here: [email protected] Shoutout to YTCracker for the awesome intro music! ====== Links ====== Follow your hosts Rhynorater, rez0 and gr3pme on X: https://x.com/Rhynorater https://x.com/rez0__ https://x.com/gr3pme Critical Research Lab: https://lab.ctbb.show/ Need a Pentest? We just launched CTBB Pentests! https://pentest.ctbb.show/ Hack full time? Check out the Full-Time Hunter’s Guild! https://ctbb.show/fthg ====== Ways to Support CTBBPodcast ====== Hop on the CTBB Discord at https://ctbb.show/discord! We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc. You can also find some hacker swag at https://ctbb.show/merch! ====== This Week in Bug Bounty ====== How to use Codex for Bug Bounty research: explore broadly, validate rigorously https://www.yeswehack.com/learn-bug-bounty/llm-series-codex ====== Resources ====== Herdr https://herdr.dev/ ====== Timestamps ====== (00:00:00) Introduction (00:02:43) Rez0's Sick Caching Bug (00:11:38) Hackbot Scale & Hardware Spend (00:19:16) Stretching your Subscriptions (00:27:53) Herdr.dev & LHE's with Total Bounty Pools

    38min
    Listen Later
  5. Number 5: Episode 190: Hacker Life Coaching & is Rez0 a Claude Shill?

    Episode 190: In this episode of Critical Thinking - Bug Bounty Podcast Justin and Joseph do a little life-coaching session to make sure they’re both still aligned with their bug bounty goals. They also talk about Claude vs Codex, amount vs impact, and where to focus tokens. Follow us on twitter at: https://x.com/ctbbpodcast Got any ideas and suggestions? Feel free to send us any feedback here: [email protected] Shoutout to YTCracker for the awesome intro music! ====== Links ====== Follow your hosts Rhynorater, rez0 and gr3pme on X: https://x.com/Rhynorater https://x.com/rez0__ https://x.com/gr3pme Critical Research Lab: https://lab.ctbb.show/ Need a Pentest? We just launched CTBB Pentests! https://pentest.ctbb.show/ Hack full time? Check out the Full-Time Hunter’s Guild! https://ctbb.show/fthg ====== Ways to Support CTBBPodcast ====== Hop on the CTBB Discord at https://ctbb.show/discord! We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc. You can also find some hacker swag at https://ctbb.show/merch! Sponsored by ThreatLocker - Privileged Access Management https://www.criticalthinkingpodcast.io/tl-pam ====== This Week in Bug Bounty ====== Web Fuzzing for Hackers https://www.intigriti.com/researchers/blog/hacking-tools/web-fuzzing-for-hackers When fear no longer holds you back. Interview with Ryan Bonner https://www.intigriti.com/blog/business-insights/interview-with-ryan-bonner-roll4combatus Steve’s Maturity Framework https://x.com/SteveHernandezM/status/2094398761946493107 ====== Timestamps ====== (00:00:00) Introduction (00:07:10) Focusing your Tokens, Cloud Providers, and Dropping Bounties (00:18:30) Amount vs. Impact (00:25:42) Ideal Work Day and Focus State

    34min
    Listen Later

Critical Thinking - Bug Bounty Podcast episodes:

FAQs about Critical Thinking - Bug Bounty Podcast:

How many episodes does Critical Thinking - Bug Bounty Podcast have?

The podcast currently has 193 episodes available.

More shows like Critical Thinking - Bug Bounty Podcast

Radiolab by WNYC Studios

Radiolab

43,861 Listeners

StarTalk with Neil deGrasse Tyson by Neil deGrasse Tyson

StarTalk with Neil deGrasse Tyson

14,346 Listeners

Hacked by Hacked

Hacked

192 Listeners

Security Now (Audio) by TWiT

Security Now (Audio)

2,013 Listeners

The Vergecast by The Verge

The Vergecast

3,719 Listeners

Risky Business by Risky Business Media

Risky Business

376 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,029 Listeners

Click Here by Recorded Future News

Click Here

423 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

8,074 Listeners

The Indicator from Planet Money by NPR

The Indicator from Planet Money

9,541 Listeners

The Jordan Harbinger Show by Jordan Harbinger

The Jordan Harbinger Show

11,973 Listeners

Cybersecurity Today by David Shipley

Cybersecurity Today

178 Listeners

My First Million by Hubspot Media

My First Million

2,653 Listeners

Cybersecurity Headlines by CISO Series

Cybersecurity Headlines

138 Listeners

The Ezra Klein Show by New York Times Opinion

The Ezra Klein Show

15,801 Listeners