Episode 147: In this episode of Critical Thinking - Bug Bounty Podcast we're talking tips and tricks that help us in hacking that we really should’ve learned sooner. Follow us on twitter at: https://x.com/ctbbpodcast Got any ideas and suggestions? Feel free to send us any feedback here:
[email protected] Shoutout to YTCracker for the awesome intro music! ====== Links ====== Follow your hosts Rhynorater, rez0 and gr3pme on X: https://x.com/Rhynorater https://x.com/rez0__ https://x.com/gr3pme ====== Ways to Support CTBBPodcast ====== Hop on the CTBB Discord at https://ctbb.show/discord ! We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc. You can also find some hacker swag at https://ctbb.show/merch ! Today's Sponsor: ThreatLocker. Check out ThreatLocker Network Control https://www.criticalthinkingpodcast.io/tl-nc ====== This Week in Bug Bounty ====== Netscaler's new program https://hackerone.com/netscaler_public_program?type=team The ultimate Bug Bounty guide to HTTP request smuggling vulnerabilities https://www.yeswehack.com/learn-bug-bounty/http-request-smuggling-guide-vulnerabilities Hackers now have 2 Request-a-Response https://docs.bugcrowd.com/changelog/researchers/request-a-response-researcher/ Evan Connelly Spotlight https://www.bugcrowd.com/blog/hacker-spotlight-evan-connelly/ Epic Games Jobs Openings Jobs.ctbb.show ====== Timestamps ====== (00:00:00) Introduction (00:09:23) Command Palette, Auto-decoding, & Evenbetter (00:17:28) Chrome Devtools Edit as html & Raycast (00:33:23) ffuf -request flag (00:41:33) JXScout (00:48:55) Conditional Breakpoints in Devtools & Lightning round tips