{"podcast":{"title":"Critical Thinking - Bug Bounty Podcast","slug":"critical-thinking-bug-bounty-podcast-5951018","podcast_index_feed_id":5951018,"rss_url":"https://feeds.cohostpodcasting.com/y3zHW5ae","website_url":"https://criticalthinkingpodcast.io","image_url":"https://files.cohostpodcasting.com/quill-file-prod/8d5e4388-13f4-45c8-b82f-aff313a5ac76/shows/194e9190-c8b8-49a9-a30a-6fae125dfd3f/cover-art/original_ef591a0cfb81593cfd0c1795273d6d1f.jpg","author":"Justin Gardner (Rhynorater), Joseph Thacker (Rez0), & Brandyn Murtagh (gr3pme)","episode_count":179,"summary":"A \"by Hackers for Hackers\" podcast focused on technical content ranging from bug bounty tips, to write-up explanations, to the latest hacking techniques.","last_synced_at":"2026-06-18T18:20:31.324885+00:00","page_url":"https://stenobird.com/podcast/critical-thinking-bug-bounty-podcast-5951018"},"episode":{"title":"Episode 158: 10hr Marathon Hack-Along Recap + $300k Client-side Bugs","slug":"episode-158-10hr-marathon-hack-along-recap-300k-client-side-bugs","published_at":"2026-01-22T10:00:00+00:00","page_url":"https://stenobird.com/podcast/critical-thinking-bug-bounty-podcast-5951018/episode-158-10hr-marathon-hack-along-recap-300k-client-side-bugs","show_page_url":"https://stenobird.com/podcast/critical-thinking-bug-bounty-podcast-5951018","url":"https://criticalthinkingpodcast.io","audio_url":"https://audio-delivery.cohostpodcasting.com/audio/8d5e4388-13f4-45c8-b82f-aff313a5ac76/episodes/2d21dab2-ed40-4efd-b16c-9f19ea25b350/episode.mp3","summary":"Episode 158: In this episode of Critical Thinking - Bug Bounty Podcast we talk about our personal takeaways from the CTBB Charity Hackalong, and then break down some InsertScript POCs, what a $55,000 bug can look like, and if Smart People Ever Say They’re Smart. Follow us on twitter at: https://x.com/ctbbpodcast Got any ideas and suggestions? Feel free to send us any feedback here: info@criticalthinkingpodcast.io Shoutout to YTCracker for the awesome intro music! ====== Links ====== Follow your hosts Rhynorater, rez0 and gr3pme on X:&nbsp; https://x.com/Rhynorater https://x.com/rez0__ https://x.com/gr3pme Critical Research Lab: https://lab.ctbb.show/ &nbsp; ====== Ways to Support CTBBPodcast ====== Hop on the CTBB Discord at https://ctbb.show/discord ! We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc. You can also find some hacker swag at https://ctbb.show/merch ! Today's Sponsor: Join Justin at Zero Trust World in March and get $200 off registration with Code ZTWCTBB26 https://ztw.com/ ====== Resources ====== InsertScript - XSS Challenge Solution https://insert-script.blogspot.com/2020/03/xss-challenge-solution-refresh-header.html InsertScript - Redirect AuthHeader https://www.insert-script.com/examples/redirectAuthHeader/send.html CRLF injection on a 302 redirect https://x.com/0xdef1ant/status/2009040359482118500 Multiple XSS in Meta Conversion API Gateway Leading to Zero-Click Account Takeover https://ysamm.com/uncategorized/2025/01/13/capig-xss.html Arcanum Hack Tips https://github.com/Arcanum-Sec/hack_tips Trail of Bits Releases Claude Skills https://x.com/dguido/status/2011541318229533063 what a $55,000 bug can look like https://x.com/the_IDORminator/statu…","meta_description":"Episode 158: In this episode of Critical Thinking - Bug Bounty Podcast we talk about our personal takeaways from the CTBB Charity Hackalong, and then brea…","key_points":[],"chapters":[],"topics":[],"duration_seconds":3510,"processing_state":"not_requested","actions":[{"name":"request_transcript","method":"POST","url":"https://stenobird.com/v1/public/podcasts/critical-thinking-bug-bounty-podcast-5951018/episodes/episode-158-10hr-marathon-hack-along-recap-300k-client-side-bugs/transcription-requests","description":"Idempotently request low-priority transcript generation for this episode."},{"name":"read_markdown","method":"GET","url":"https://stenobird.com/podcast/critical-thinking-bug-bounty-podcast-5951018/episode-158-10hr-marathon-hack-along-recap-300k-client-side-bugs.md","description":"Read the agent-friendly Markdown representation of this episode resource."}]}}