Interested in going full-time bug bounty? Check out our blueprint!

Videos

Dec. 14, 2023

Getting Live Hacking Event Invites & Bug Bounty Collab with Nagli (Ep. 49)

Episode 49: In this episode of Critical Thinking - Bug Bounty Podcast, Justin Gardner is once again joined by Nagli to discuss some of their recent hacking discoveries. They talk about finding and exploiting a backup file in an ASP.NET app, discovering vulnerabilities through Swagger files, and debating the vulnerability…

View more
Dec. 7, 2023

MVH, DEFCON Black Badge, Googler Sam Erb (Ep. 48)

Episode 48: In this episode, joined by the spectacular Sam Erb, Google Security Engineer and DEFCON Black Badge winner. We talk about the importance of understanding how systems work to find vulnerabilities, and how his engineering background influences his hunting style and methodologies. Then we jump over to his Career…

View more
Nov. 30, 2023

CSP Research, Iframe Hopping, and Client-side Shenanigans (Ep. 47)

Episode 47: In this episode of Critical Thinking - Bug Bounty Podcast, the holidays are fast approaching, and Justin and Joel discuss some of the struggles of getting back into the hacking groove during and after breaks. We also celebrate the newly launched Critical Thinking Discord Community before diving into…

View more
Nov. 23, 2023

The SAML Ramble (Ep. 46)

Episode 46: In this episode of Critical Thinking - Bug Bounty Podcast, Justin is deep diving the topic of SAML (Security Assertion Markup Language), and walks through what it is and why it can be intimidating, before going over some key attack vectors to look for. Then he closes out…

View more
Nov. 16, 2023

The OG Bug Bounty King - Frans Rosen (Ep. 45)

In this episode of Critical Thinking - Bug Bounty Podcast, we're thrilled to welcome Frans Rosén, an OG bug bounty hunter and co-founder of Detectify. We kick off with Frans sharing his journey bug bounty and security startups, before diving headfirst into a host of his blog posts. We also…

View more
Nov. 9, 2023

URL Parsing & Auth Bypass Magic (Ep. 44)

Episode 44: In this episode of Critical Thinking - Bug Bounty Podcast, the topic is URL structure, and Justin and Joel break down the elements that make up a URL and some common tips and tricks surrounding them which allow for all sorts of bypasses. We also round out the…

View more
Nov. 2, 2023

Caido - The Up-And-Coming HTTP Proxy (Ep. 43)

Episode 43: In this episode of Critical Thinking - Bug Bounty Podcast, we're joined by Emile from Caido, who shares his journey into the bug bounty and ethical hacking world. We kick off with a hilarious incident involving Joel, a child on an airplane, and an unfortunate cough. We then…

View more
Oct. 26, 2023

Renniepak Interview & Intigriti LHE Recap (Ep. 42)

Episode 42: In this episode of Critical Thinking - Bug Bounty Podcast, we're live from a hacking event in Portugal, and joined by the extremely talented René de Sain! He helps us cover a host of topics like NFT, XSS, LHE, and tips for success. We also talk about the…

View more
Oct. 19, 2023

Mini Masterclass: Attack Vector Ideation (Ep. 41)

In this episode of Critical Thinking - Bug Bounty Podcast, Justin takes a break from his busy travel schedule to walk us through a few of his Attack Vector formulation strategies. We’re keeping this one short and sweet, so it can be better used as a reference when looking for…

View more
Oct. 12, 2023

But Bounty Mentorships (Ep. 40)

Episode 40: In this episode of Critical Thinking - Bug Bounty Podcast, it’s all about mentorships! Justin sits down with Kodai and So, two hackers he helped mentor, to discuss what worked and what didn’t. We talk about the importance of mentorship, what mentors might look for in a candidate,…

View more
Oct. 5, 2023

The Art of Architectures (Ep. 39)

In this episode of Critical Thinking - Bug Bounty Podcast, We're catching up on news, including new override updates from Chrome, GPT-4, SAML presentations, and even a shoutout from Live Overflow! Then we get busy laying the groundwork on a discussion of web architecture. better get started on this one,…

View more
Sept. 28, 2023

Mobile Hacking Maestro Sergey Toshin (Ep. 38)

Episode 38: In this episode of Critical Thinking - Bug Bounty Podcast, we're thrilled to welcome mobile hacking maestro Sergey Toshin (aka @bagipro). We kick off with Sergey sharing his unexpected journey into mobile security, and how he rose to become the number one hacker in both Google Play Security…

View more
Sept. 21, 2023

Tokyo Hacking & Interview with 0xLupin (Ep. 37)

Episode 37: In this episode of Critical Thinking - Bug Bounty Podcast we're joined by none other than Lupin himself! We recap the Tokyo LHE and the lessons we learned from it before diving into his legendary journey into security research and bug bounty. We also talk collaboration of all…

View more
Sept. 14, 2023

Bug Bounty Ethics & CT Exclusive Bug Reports (Ep. 36)

Episode 36: In this episode of Critical Thinking - Bug Bounty Podcast, Justin and Joel take a break from LHE prep to answer questions about the ethics of bug bounty and share their recent bug finds. We talk Iframes, mobile intercept proxies, open redirects, and that time Justin got shot…

View more
Sept. 12, 2023

Bug Bounty Philosophy - Opportunity Cost #shorts

View more
Sept. 12, 2023

The Bugs Are There Mapping Your Hacking #shorts

View more
Sept. 12, 2023

Mapping Your Hacking Summary #shorts

View more
Sept. 12, 2023

Rhynorater Trust Boundaries #shorts

View more
Sept. 7, 2023

Douglas Day: The King of Collaboration (Ep. 35)

In this episode of Critical Thinking - Bug Bounty Podcast, we're thrilled to welcome Douglas Day, a bug bounty hunter known for his unique methodologies and collaborative spirit. We talk about his approach to finding new endpoints in applications, his ingenious technique of exploiting Intercom widgets, and collaboration preferences and…

View more
Sept. 4, 2023

Should Bug Bounty programs pay for 0-DAYS!? #podcast #bugbounty #hackerone #bugcrowd #shorts

From Episode 34 of the Critical Thinking - Bug Bounty Podcast: https://youtu.be/Cn_-PrzfNS0

View more
Sept. 4, 2023

Bug Bounties should be going DOWN?? #podcast #bugbounty #hackerone #bugcrowd #intigriti #shorts

From Episode 34 of the Critical Thinking - Bug Bounty Podcast: https://youtu.be/Cn_-PrzfNS0

View more
Aug. 31, 2023

The Great Hacker vs Program Debate! (Ep. 34)

In this episode of Critical Thinking - Bug Bounty Podcast, Justin and Joel have both beaten COVID and now square off against each other in a mega-debate representing hackers and program managers respectively. Among the topics included are Disclosures, Dupes, Zero-Day Policy, payouts, budgets, Triage and Retesting. So, if you…

View more
Aug. 28, 2023

Finding your first Bug Bounty #bugbounty #podcast #intigriti #bugcrowd #hackerone #shorts

From Episode 33 with Inti De Ceukelaire: https://youtu.be/MSXf2fSobv8

View more
Aug. 24, 2023

Inti De Ceukelaire: How to hack you way to Metallica VIP (Ep. 33)

In this episode of Critical Thinking - Bug Bounty Podcast, we welcome Inti De Ceukelaire, a seasoned bug hunter known for his creative storytelling and impactful show-and-tell bugs…and let us tell you, his stories do not disappoint! From his bug bounty journey to some pretty wild hacks, Inti captivates us…

View more