Go offline with the Player FM app!
Episode 125: How to Win Live Hacking Events
Manage episode 486990974 series 3435922
Episode 125: In this episode of Critical Thinking - Bug Bounty Podcast Justin shares insights on how to succeed at live hacking events. We cover pre-event preparations, challenges of collaboration, on-site strategies, and the importance of maintaining a healthy mindset throughout the entire process.
Follow us on twitter at: https://x.com/ctbbpodcast
Got any ideas and suggestions? Feel free to send us any feedback here: [email protected]
Shoutout to YTCracker for the awesome intro music!
====== Links ======
Follow your hosts Rhynorater and Rez0 on Twitter:
====== Ways to Support CTBBPodcast ======
Hop on the CTBB Discord at https://ctbb.show/discord!
We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc.
You can also find some hacker swag at https://ctbb.show/merch!
====== This Week in Bug Bounty ======
Decathlon Public Bug Bounty Program on YesWeHack
====== Resources ======
The Ultimate Double-Clickjacking PoC
Grafana Full read SSRF and Account Takeover: CVE-2025-4123
What I learned from my first 100 HackerOne Reports
====== Timestamps ======
(00:00:00) Introduction
(00:02:30) The Ultimate Double-Clickjacking PoC, Grafana CVE, & Evan Connelly's first 100 bugs
(00:10:23) How to win at Live Hacking Events
(00:11:53) Pre-event
(00:11:45) Scope Call
(00:33:11) Dupe window Ends
(00:36:00) Onsite & and Day of Event
(00:42:46) Don't define your identity on the outcome
145 episodes
Manage episode 486990974 series 3435922
Episode 125: In this episode of Critical Thinking - Bug Bounty Podcast Justin shares insights on how to succeed at live hacking events. We cover pre-event preparations, challenges of collaboration, on-site strategies, and the importance of maintaining a healthy mindset throughout the entire process.
Follow us on twitter at: https://x.com/ctbbpodcast
Got any ideas and suggestions? Feel free to send us any feedback here: [email protected]
Shoutout to YTCracker for the awesome intro music!
====== Links ======
Follow your hosts Rhynorater and Rez0 on Twitter:
====== Ways to Support CTBBPodcast ======
Hop on the CTBB Discord at https://ctbb.show/discord!
We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc.
You can also find some hacker swag at https://ctbb.show/merch!
====== This Week in Bug Bounty ======
Decathlon Public Bug Bounty Program on YesWeHack
====== Resources ======
The Ultimate Double-Clickjacking PoC
Grafana Full read SSRF and Account Takeover: CVE-2025-4123
What I learned from my first 100 HackerOne Reports
====== Timestamps ======
(00:00:00) Introduction
(00:02:30) The Ultimate Double-Clickjacking PoC, Grafana CVE, & Evan Connelly's first 100 bugs
(00:10:23) How to win at Live Hacking Events
(00:11:53) Pre-event
(00:11:45) Scope Call
(00:33:11) Dupe window Ends
(00:36:00) Onsite & and Day of Event
(00:42:46) Don't define your identity on the outcome
145 episodes
All episodes
×Welcome to Player FM!
Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.