Skip to content
PodcastsTechnologyCritical Thinking - Bug Bounty Podcast

Critical Thinking - Bug Bounty Podcast

Justin Gardner (Rhynorater), Joseph Thacker (Rez0), & Brandyn Murtagh (gr3pme)
Critical Thinking - Bug Bounty Podcast
Latest episode

193 episodes

  • Critical Thinking - Bug Bounty Podcast

    Episode 191: Rez0s Sick Caching Bug & Local AI vs Subsidized tokens

    2026-09-10 | 37 mins.
    Episode 191: In this episode of Critical Thinking - Bug Bounty Podcast Justin and Joseph talk about successes in scaling their hackbots, and brainstorm possible ways to stretch their AI subscriptions.

    Follow us on twitter at: https://x.com/ctbbpodcast
    Got any ideas and suggestions? Feel free to send us any feedback here: info@criticalthinkingpodcast.io
    Shoutout to YTCracker for the awesome intro music!

    ====== Links ======
    Follow your hosts Rhynorater, rez0 and gr3pme on X:
    https://x.com/Rhynorater
    https://x.com/rez0__
    https://x.com/gr3pme

    Critical Research Lab:
    https://lab.ctbb.show/

    Need a Pentest? We just launched CTBB Pentests!
    https://pentest.ctbb.show/

    Hack full time? Check out the Full-Time Hunter’s Guild!
    https://ctbb.show/fthg

    ====== Ways to Support CTBBPodcast ======
    Hop on the CTBB Discord at https://ctbb.show/discord!

    We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc.

    You can also find some hacker swag at https://ctbb.show/merch!

    ====== This Week in Bug Bounty ======
    How to use Codex for Bug Bounty research: explore broadly, validate rigorously
    https://www.yeswehack.com/learn-bug-bounty/llm-series-codex

    ====== Resources ======
    Herdr
    https://herdr.dev/

    ====== Timestamps ======
    (00:00:00) Introduction
    (00:02:43) Rez0's Sick Caching Bug
    (00:11:38) Hackbot Scale & Hardware Spend
    (00:19:16) Stretching your Subscriptions
    (00:27:53) Herdr.dev & LHE's with Total Bounty Pools
  • Critical Thinking - Bug Bounty Podcast

    Episode 190: Hacker Life Coaching & is Rez0 a Claude Shill?

    2026-09-03 | 33 mins.
    Episode 190: In this episode of Critical Thinking - Bug Bounty Podcast Justin and Joseph do a little life-coaching session to make sure they’re both still aligned with their bug bounty goals. They also talk about Claude vs Codex, amount vs impact, and where to focus tokens.

    Follow us on twitter at: https://x.com/ctbbpodcast
    Got any ideas and suggestions? Feel free to send us any feedback here: info@criticalthinkingpodcast.io
    Shoutout to YTCracker for the awesome intro music!

    ====== Links ======
    Follow your hosts Rhynorater, rez0 and gr3pme on X:
    https://x.com/Rhynorater
    https://x.com/rez0__
    https://x.com/gr3pme

    Critical Research Lab:
    https://lab.ctbb.show/

    Need a Pentest? We just launched CTBB Pentests!
    https://pentest.ctbb.show/

    Hack full time? Check out the Full-Time Hunter’s Guild!
    https://ctbb.show/fthg

    ====== Ways to Support CTBBPodcast ======
    Hop on the CTBB Discord at https://ctbb.show/discord!

    We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc.

    You can also find some hacker swag at https://ctbb.show/merch!

    Sponsored by ThreatLocker - Privileged Access Management
    https://www.criticalthinkingpodcast.io/tl-pam

    ====== This Week in Bug Bounty ======

    Web Fuzzing for Hackers
    https://www.intigriti.com/researchers/blog/hacking-tools/web-fuzzing-for-hackers

    When fear no longer holds you back. Interview with Ryan Bonner
    https://www.intigriti.com/blog/business-insights/interview-with-ryan-bonner-roll4combatus

    Steve’s Maturity Framework
    https://x.com/SteveHernandezM/status/2094398761946493107

    ====== Timestamps ======
    (00:00:00) Introduction
    (00:07:10) Focusing your Tokens, Cloud Providers, and Dropping Bounties
    (00:18:30) Amount vs. Impact
    (00:25:42) Ideal Work Day and Focus State
  • Critical Thinking - Bug Bounty Podcast

    Episode 189: What Happened to HackerOne with Joel Margolis

    2026-08-27 | 1h 14 mins.
    Episode 189: In this episode of Critical Thinking - Bug Bounty Podcast we’re (re)joined by none other than JOEL FREAKING MARGOLIS to talk about his blog post concerning HackerOne. We talk about what he thinks went wrong with H1, and how they can revive their old self.

    Follow us on twitter at: https://x.com/ctbbpodcast
    Got any ideas and suggestions? Feel free to send us any feedback here: info@criticalthinkingpodcast.io
    Shoutout to YTCracker for the awesome intro music!

    ====== Links ======
    Follow your hosts Rhynorater, rez0 and gr3pme on X:
    https://x.com/Rhynorater
    https://x.com/rez0__
    https://x.com/gr3pme

    Critical Research Lab:
    https://lab.ctbb.show/

    Need a Pentest? We just launched CTBB Pentests!
    https://pentest.ctbb.show/

    Hack full time? Check out the Full-Time Hunter’s Guild!
    https://ctbb.show/fthg

    ====== Ways to Support CTBBPodcast ======
    Hop on the CTBB Discord at https://ctbb.show/discord!

    We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc.

    You can also find some hacker swag at https://ctbb.show/merch!

    Today’s Guest - Joel Magolis
    https://x.com/0xteknogeek

    ====== This Week in Bug Bounty ======

    Kara Sprague’s Statement:
    “I read Joel’s post and listened to the episode myself. You raise many good points. The part I want to fix first is how we exchange and action feedback from the community. I don’t have the full fix yet, but I own it and am also open to working together to find a good solution.”
    Kara Sprague, CEO, HackerOne

    Write triager-grade Bug Bounty reports with Claude Code: introducing the YesWeHack Claude Kit plugin
    https://www.yeswehack.com/learn-bug-bounty/triager-grade-reports-claude-code

    Claude Kit
    https://github.com/yeswehack/claude-kit

    ====== Resources ======
    What Happened to HackerOne?
    https://blog.teknogeek.io/posts/what-happened-to-hackerone/

    Watch our episode with Alex Rice
    https://www.youtube.com/watch?v=Pa4wWv_ONjM

    ====== Timestamps ======
    (00:00:00) Introduction
    (00:04:18) The early days: LHE's, Covid, and the rise of AI
    (00:17:20) HSM Program, HAI, and resource allocation
    (00:36:41) Sales Incentivisation
    (00:46:10) AI and Researcher Reports Data
    (00:54:38) How Can H1 Revive its Old Self
    (01:02:40) Triage
  • Critical Thinking - Bug Bounty Podcast

    Episode 188: DEFCON 34 Hotel Room Debrief

    2026-08-20 | 41 mins.
    Episode 188: In this episode of Critical Thinking - Bug Bounty Podcast Gr3pme and BusFactor grab some Hackers for a Live from DEFCON Episode to recap the event and highlight their top bugs and talks.

    Follow us on twitter at: https://x.com/ctbbpodcast
    Got any ideas and suggestions? Feel free to send us any feedback here: info@criticalthinkingpodcast.io
    Shoutout to YTCracker for the awesome intro music!

    ====== Links ======
    Follow your hosts Rhynorater, rez0 and gr3pme on X:
    https://x.com/Rhynorater
    https://x.com/rez0__
    https://x.com/gr3pme

    Critical Research Lab:
    https://lab.ctbb.show/

    Need a Pentest? We just launched CTBB Pentests!
    https://pentest.ctbb.show/

    Hack full time? Check out the Full-Time Hunter’s Guild!
    https://ctbb.show/fthg

    ====== Ways to Support CTBBPodcast ======
    Hop on the CTBB Discord at https://ctbb.show/discord!

    We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc.

    You can also find some hacker swag at https://ctbb.show/merch!

    Today’s Sponsor: The Adobe Program is moving to Intigriti! Head to our Discord and type “Ready to Hack Adobe” in the giveaway channel and paste your Intigriti profile for a chance to win a Lifetime CT Membership!

    Today’s Guests:
    https://x.com/7urb01
    https://x.com/busf4ctor

    ====== This Week in Bug Bounty ======

    YesWeHack is introducing Credits to combat AI slop reports
    https://helpcenter.yeswehack.io/en/articles/711408-yeswehack-credits

    ====== Timestamps ======
    (00:00:00) Introduction
    (00:03:45) DEFCON Event Reactions and Takeaways
    (00:12:56) Bus & Turbo Talk Overviews
    (00:21:53) Event Bugs
  • Critical Thinking - Bug Bounty Podcast

    Episode 187: Are Live Hacking Events even worth it?

    2026-08-13 | 42 mins.
    Episode 187: In this episode of Critical Thinking - Bug Bounty Podcast we talk about how much to gaslight your Hackbot, finding “Internet Melting Bugs” and if LHEs still make sense in this AI age.

    Follow us on twitter at: https://x.com/ctbbpodcast
    Got any ideas and suggestions? Feel free to send us any feedback here: info@criticalthinkingpodcast.io
    Shoutout to YTCracker for the awesome intro music!

    ====== Links ======
    Follow your hosts Rhynorater, rez0 and gr3pme on X:
    https://x.com/Rhynorater
    https://x.com/rez0__
    https://x.com/gr3pme

    Critical Research Lab:
    https://lab.ctbb.show/

    Need a Pentest? We just launched CTBB Pentests!
    https://pentest.ctbb.show/

    Hack full time? Check out the Full-Time Hunter’s Guild!
    https://ctbb.show/fthg

    ====== Ways to Support CTBBPodcast ======
    Hop on the CTBB Discord at https://ctbb.show/discord!

    We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc.

    You can also find some hacker swag at https://ctbb.show/merch!

    Today’s Sponsor: Adobe - Head to our Discord and type “Ready to Hack Adobe” in the giveaway channel and paste your Intigriti profile for a chance to win a Lifetime CT Membership!

    ====== This Week in Bug Bounty ======

    Exploiting web cache poisoning vulnerabilities
    https://www.intigriti.com/researchers/blog/hacking-tools/exploiting-web-cache-poisoning-vulnerabilities

    ====== Resources ======
    frontier class vulnerabilities: it gets worse before it (maybe) gets better
    https://shubs.io/frontier-class-vulnerabilities-it-gets-worse-before-it-maybe-gets-better/

    ====== Timestamps ======
    (00:00:00) Introduction
    (00:05:41) LHE Vs. AI
    (00:19:27) Hacker Intuition and Gaslighting your Hackbot
    (00:25:49) Resolving Sol 5.6 compaction error & AI memory usage
    (00:37:00) Frontier Class Vulnerabilities
More Technology podcasts
About Critical Thinking - Bug Bounty Podcast
A "by Hackers for Hackers" podcast focused on technical content ranging from bug bounty tips, to write-up explanations, to the latest hacking techniques.
Podcast website

Listen to Critical Thinking - Bug Bounty Podcast, Acquired and many other podcasts from around the world with the radio.net app

Get the free radio.net app

  • Stations and podcasts to bookmark
  • Stream via Wi-Fi or Bluetooth
  • Supports Carplay & Android Auto
  • Many other app features