44 subscribers
Go offline with the Player FM app!
Episode 92 - SAML XPath Confusion, Chinese DNS Poisoning, and AI Powered 403 Bypasser
Manage episode 444501897 series 3435922
Episode 92: In this episode of Critical Thinking - Bug Bounty Podcast In this episode Justin and Joel tackle a host of new research and write-ups, including Ruby SAML, 0-Click exploits in MediaTek Wi-Fi, and Vulnerabilities caused by The Great Firewall
Follow us on twitter at: @ctbbpodcast
We're new to this podcasting thing, so feel free to send us any feedback here: info@criticalthinkingpodcast.io
Shoutout to YTCracker for the awesome intro music!
------ Links ------
Find the Hackernotes: https://blog.criticalthinkingpodcast.io/
Follow your hosts Rhynorater & Teknogeek on twitter:
https://twitter.com/0xteknogeek
https://twitter.com/rhynorater
------ Ways to Support CTBBPodcast ------
Hop on the CTBB Discord at https://ctbb.show/discord!
We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc.
Today’s Sponsor - ThreatLocker. Checkout their ThreatLocker Detect! https://www.criticalthinkingpodcast.io/tl-detect
Resources:
Ruby-SAML / GitLab Authentication Bypass
0-Click exploit discovered in MediaTek Wi-Fi chipsets
New Caido Plugin to Generate Wordlists
Arb Read & Arb write on LLaMa.cpp by SideQuest
XSS WAF Bypass One payload for all
Timestamps
(00:00:00) Introduction
(00:02:08) Vulnerabilities Caused by The Great Firewall
(00:07:25) Ruby SAML Bypass
(00:19:55) 0-Click exploit discovered in MediaTek Wi-Fi chipsets
(00:24:36) New Caido Wordlist Plugin
(00:31:00) CSPBypass.com
(00:35:37) Arb Read & Arb write on LLaMa.cpp by SideQuest
(00:43:10) Helpful WAF Bypass
120 episodes
Manage episode 444501897 series 3435922
Episode 92: In this episode of Critical Thinking - Bug Bounty Podcast In this episode Justin and Joel tackle a host of new research and write-ups, including Ruby SAML, 0-Click exploits in MediaTek Wi-Fi, and Vulnerabilities caused by The Great Firewall
Follow us on twitter at: @ctbbpodcast
We're new to this podcasting thing, so feel free to send us any feedback here: info@criticalthinkingpodcast.io
Shoutout to YTCracker for the awesome intro music!
------ Links ------
Find the Hackernotes: https://blog.criticalthinkingpodcast.io/
Follow your hosts Rhynorater & Teknogeek on twitter:
https://twitter.com/0xteknogeek
https://twitter.com/rhynorater
------ Ways to Support CTBBPodcast ------
Hop on the CTBB Discord at https://ctbb.show/discord!
We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc.
Today’s Sponsor - ThreatLocker. Checkout their ThreatLocker Detect! https://www.criticalthinkingpodcast.io/tl-detect
Resources:
Ruby-SAML / GitLab Authentication Bypass
0-Click exploit discovered in MediaTek Wi-Fi chipsets
New Caido Plugin to Generate Wordlists
Arb Read & Arb write on LLaMa.cpp by SideQuest
XSS WAF Bypass One payload for all
Timestamps
(00:00:00) Introduction
(00:02:08) Vulnerabilities Caused by The Great Firewall
(00:07:25) Ruby SAML Bypass
(00:19:55) 0-Click exploit discovered in MediaTek Wi-Fi chipsets
(00:24:36) New Caido Wordlist Plugin
(00:31:00) CSPBypass.com
(00:35:37) Arb Read & Arb write on LLaMa.cpp by SideQuest
(00:43:10) Helpful WAF Bypass
120 episodes
All episodes
×
1 Episode 120: SpaceRaccoon - From Day Zero to Zero Day 1:36:57

1 Episode 119: Abusing Iframes from a client-side hacker 33:54

1 Episode 118: Hacking Happy Hour: 0days on Tap and SQLi Shots 58:29

1 Hacking AI Series: Vulnus ex Machina - Part 1 32:20

1 Episode 116: Auth Bypasses and Google VRP Writeups 26:48

1 Episode 115: Mentee to Career Hacker - Mokusou (So Sakaguchi) 1:40:58

1 Episode 114: Single Page Application Hacking Playbook 1:22:25

1 Episode 113: Best Technical Takeaways from Portswigger Top 10 2024 1:29:19

1 Episode 112: Interview with Ciarán Cotter (MonkeHack) - Critical Lab Researcher and Full-time Hunter 1:07:37

1 Episode 111: How to Bypass DOMPurify in Bug Bounty with Kevin Mizu 1:49:15

1 Episode 110: Oauth Gadget Correlation and Common Attacks 49:41

1 Episode 109: Creative Recon - Alternative Techniques 1:01:42

1 Episode 108: How to Hack Salesforce, ServiceNow, and Other SaaS Products With Aaron Costello 1:31:08

1 Episode 107: Bypassing Cross-Origin Browser Headers 1:06:17
Welcome to Player FM!
Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.