Home
Categories
EXPLORE
Comedy
Music
Society & Culture
True Crime
History
Business
Religion & Spirituality
About Us
Contact Us
Copyright
© 2024 PodJoint
00:00 / 00:00
Sign in

or

Don't have an account?
Sign up
Forgot password
https://is1-ssl.mzstatic.com/image/thumb/Podcasts221/v4/47/2b/df/472bdfb7-84e1-ba76-4072-5ac22bb6d275/mza_1438084615642294541.jpg/600x600bb.jpg
Bug Bounty Reports Discussed
Grzegorz Niedziela
22 episodes
5 months ago
From Bug Bounty Reports Discussed podcast you can learn from the best bug bounty hunters in the world. I ask them about their methodologies, tools they use, the advice they give to beginners and many more... Subscribe to never miss an episode!
Show more...
Technology
RSS
All content for Bug Bounty Reports Discussed is the property of Grzegorz Niedziela and is served directly from their servers with no modification, redirects, or rehosting. The podcast is not affiliated with or endorsed by Podjoint in any way.
From Bug Bounty Reports Discussed podcast you can learn from the best bug bounty hunters in the world. I ask them about their methodologies, tools they use, the advice they give to beginners and many more... Subscribe to never miss an episode!
Show more...
Technology
Episodes (20/22)
Bug Bounty Reports Discussed
Bug bounty tools that actually land bugs with Arthur Aires
In this podcast, my guest is Arthur Aires, part-time bug bounty hunter and cybersecurity pro from Brazil. He has an amazing approach that combines manual hacking with using a lot of tools for recon and fuzzing.

Some links mentioned in the video: https://github.com/pwntester/SerialKillerBypassGadgetCollection https://book.hacktricks.wiki/en/index.html https://portswigger.net/bappstore/e4e0f6c4f0274754917dcb5f4937bb9e https://portswigger.net/bappstore/594a49bb233748f2bc80a9eb18a2e08f https://portswigger.net/bappstore/0e61c786db0c4ac787a08c4516d52ccf https://github.com/PortSwigger/403-bypasser https://github.com/projectdiscovery/nuclei https://github.com/SeifElsallamy/Blind-XSS-Manager/tree/main https://github.com/trufflesecurity/xsshunter https://infosecwriteups.com/easy-xsshunter-discord-alerts-33fcff24a8f7 https://github.com/elkokc/reflector https://portswigger.net/burp/documentation/desktop/tools/dom-invader https://urlscan.io/

Timestamps:
00:00 Intro
01:30 Balancing part-time bug bounty with full-time job
02:56 Mixing manual bug bounty hunting with automation
22:04 The most useful Burp extensions
33:25 Fuzzing in bug bounty
46:34 Live Hacking Events
Show more...
5 months ago
55 minutes

Bug Bounty Reports Discussed
The mindset for finding highs and crits in bug bounty with JR0ch17
Interview with Jasmin “JR0ch17” Landry, a former triager and security manager, now a full-time bug bounty hunter. We discuss bug bounty strategy, mindset, and finding high and critical vulnerabilities.
Show more...
6 months ago
1 hour 12 minutes

Bug Bounty Reports Discussed
How to become an XSS expert with renniepak
This video is an interview with René de Sain, known as renniepak. We talk about XSS, CSP bypasses, privilege escalation, speeding up the workflow with tricks like JS bookmarks and we discuss if there's such thing as bug bounty methodology.
Show more...
8 months ago
53 minutes

Bug Bounty Reports Discussed
From 0 to a top bug bounty hunter - Johan Carlsson's journey to GitLab TOP1 on Hackerone
This episode is the interview with Johan Carlsson, a full-time bug bounty hunter who specialises in client-side bugs and is currently the TOP1 hunter on GitLab.
Show more...
10 months ago
1 hour 18 minutes

Bug Bounty Reports Discussed
Finding criticals on well-tested targets - Victor “doomerhunter” Poucheret
This video is my interview with a full-time bug bounty hunter that had a great success at recent Live Hacking Events - Victor “doomerhunter” Poucheret. We're talking about his bug bounty methodology, choosing a bug bounty program, tools and much more.
Show more...
11 months ago
1 hour 30 minutes

Bug Bounty Reports Discussed
How not to get stuck when learning web security? Louis Nyffenegger from PentesterLab
In this interview, I'm talking with Louis Nyffenegger who's been teaching people websecurity since 13 years by creating Pentesterlab - web security learning platform, as well as by giving multiple talks and guiding people through their careers.
Show more...
1 year ago
55 minutes

Bug Bounty Reports Discussed
Going full-time bug bounty, privilege escalation bugs and more with Douglas Day
📧 Subscribe to BBRE Premium: https://bbre.dev/premium
✉️ Sign up for the mailing list: https://bbre.dev/nl
📣 Follow me on Twitter: https://bbre.dev/tw
📣 Follow Douglas on Twitter: https://twitter.com/ArchAngelDDay
In this interview, we're talking with Douglas Day about his bug hunting methodlogy, about quitting his job to become a full-time bug bounty hunter and many more.
BBRD podcast is also available on most popular podcast platforms:
https://open.spotify.com/show/6tLoJ5foOoZPPELwrHPBO4 
https://podcasts.google.com/feed/aHR0cHM6Ly93d3cuc3ByZWFrZXIuY29tL3Nob3cvNTA3Mzc4MS9lcGlzb2Rlcy9mZWVk 
https://podcasts.apple.com/us/podcast/bug-bounty-reports-discussed/id1583400215?uo=4

Timestamps:
00:00 Intro
0:29 Going full-time bug bounty
9:12 Douglas' bug bounty methodology
28:13 Bug Bounty tools you need
43:04 The benefits of collaboration in bug bounty
54:23 How to deal with having a similar bug on many endpoints?
1:11:37 How to select a bug bounty program?
Show more...
1 year ago
1 hour 31 minutes

Bug Bounty Reports Discussed
Finding criticals in mobile apps - Joel Margolis (0xteknogeek) from the Critical Thinking Bug Bounty podcast
📧 Subscribe to BBRE Premium: https://bbre.dev/premium
✉️ Sign up for the mailing list: https://bbre.dev/nl
📣 Follow me on Twitter: https://bbre.dev/tw
📣 Follow Joel on Twitter: https://x.com/0xteknogeek
In this interview, we're talking with Joel about bug bounty hunting on mobile apps, about being a program manager, about Live Hacking Events and more.

BBRD podcast is also available on most popular podcast platforms:
https://open.spotify.com/show/6tLoJ5foOoZPPELwrHPBO4 
https://podcasts.google.com/feed/aHR0cHM6Ly93d3cuc3ByZWFrZXIuY29tL3Nob3cvNTA3Mzc4MS9lcGlzb2Rlcy9mZWVk 
https://podcasts.apple.com/us/podcast/bug-bounty-reports-discussed/id1583400215?uo=4

Links mentioned during the interview:
https://www.timeshifter.com
https://codeshare.frida.re/@teknogeek/android-universal-ssl-unpin/
https://gitlab.com/newbit/rootAVD
https://github.com/Ch0pin/medusa
https://github.com/teknogeek/get_schemas
Timestamps:
00:00 Intro
00:22 Getting into bug bounty
11:04 Live Hacking Events
24:58 Mobile bug bounty
48:34 Lessons from being a bug bounty program manager
1:03:54 The plans for the Critical Thinking Bug Bounty podcast
Show more...
1 year ago
1 hour 8 minutes

Bug Bounty Reports Discussed
The secret to finding many Criticals - Alex Chapman
📧 Subscribe to BBRE Premium: https://bbre.dev/premium
✉️ Sign up for the mailing list: https://bbre.dev/nl
📣 Follow me on Twitter: https://bbre.dev/tw
📣 Follow Alex on Twitter: https://x.com/ajxchapman
In this episode I'm interviewing Alex Chapman - a full-time bug bounty hunter known for finding many high-impact bugs and very little medium and low-impact ones.

BBRD podcast is also available on most popular podcast platforms:
https://open.spotify.com/show/6tLoJ5foOoZPPELwrHPBO4 
https://podcasts.google.com/feed/aHR0cHM6Ly93d3cuc3ByZWFrZXIuY29tL3Nob3cvNTA3Mzc4MS9lcGlzb2Rlcy9mZWVk 
https://podcasts.apple.com/us/podcast/bug-bounty-reports-discussed/id1583400215?uo=4

Timestamps:
00:00 Intro
0:22 How did Alex start with cybersecurity and bug bounty?
3:05 Alex' uique hacking style
19:18 Source code review tips
28:37 How to write a good bug bounty report?
45:52 Finding bugs in desktop applications
52:15 LHEs
1:00:57 Live of a full-time bug bounty hunter
Show more...
1 year ago
1 hour 16 minutes

Bug Bounty Reports Discussed
How I got into cybersecurity and bug bounty?
In this episode, I'm talking about my story of getting into cybersecurity - what got me interested, how I became a pentester, what motivated my to create my channel and finally, how I became a bug bounty hunter.
Show more...
1 year ago
38 minutes

Bug Bounty Reports Discussed
Find more clients and improve in pentesting - Cristi Vlad
In this episode of the podcast, I'm interviewing Cristi Vlad about bug bounty and pentesting - the differences, ways to build your network of clients, continuous learning and more.
Show more...
1 year ago
1 hour 12 minutes

Bug Bounty Reports Discussed
All you need to know about being a full-time bug bounty hunter - Justin “rhynorater” Gardner
In this episode of the podcast, I interview Justin Gardner, the host of the Critical Thinking Bug Bounty Podcast who's been a full-time hunter for about 4 years. We talk about his methodology, tooling and many more!
Show more...
1 year ago
1 hour 21 minutes

Bug Bounty Reports Discussed
AI and hacking - opportunities and threats - Joseph “rez0” Thacker
📧 Subscribe to BBRE Premium: https://bbre.dev/premium
📖 Check out AppSecEngineer, the sponsor of today's video: https://www.appsecengineer.com
📣 Follow GUEST on Twitter: https://twitter.com/@rez0
✉️ Sign up for the mailing list: https://bbre.dev/nl
📣 Follow me on Twitter: https://bbre.dev/tw
In this interview we are discussing with rez0 a range of topics around AI - the new vulnerability opportunities it created, how can I help us in hacking and if it will replace us in the future.
Resources and people mentioned in the podcast:
https://olickel.com/everything-i-know-about-prompting-llms
https://www.anthropic.com/index/prompting-long-context
https://simonwillison.net
https://llm-attacks.org/zou2023universal.pdf
http://llm-attacks.org
BBRD podcast is also available on most popular podcast platforms:
https://open.spotify.com/show/6tLoJ5foOoZPPELwrHPBO4
https://podcasts.google.com/feed/aHR0cHM6Ly93d3cuc3ByZWFrZXIuY29tL3Nob3cvNTA3Mzc4MS9lcGlzb2Rlcy9mZWVk
https://podcasts.apple.com/us/podcast/bug-bounty-reports-discussed/id1583400215?uo=4

Timestamps:
00:00 Intro
00:32 Check out AppSecEngineer, the sponsor of this podcast
01:36 rez0's regular bug bounty hacking style
22:39 AI and hacking
Show more...
2 years ago
1 hour 27 minutes

Bug Bounty Reports Discussed
From reporting self-XSSes to improving browser security mechanisms - Michał Bentkowski
In this episode, I interview Michał Bentkowski who specializes in crazy XSS bugs and now works on improving security of the browsers at Google.
Show more...
2 years ago
1 hour 30 minutes

Bug Bounty Reports Discussed
The key to succeed in bug bounty - NahamSec
In this episode with @NahamSec we are talking about bug bounty. Ben has a unique insight into mistakes beginners make since he's the biggest content creator in the bug bounty space and gets asked a lot of questions. We are talking about his methodology, the role of recon and much more.
Show more...
2 years ago
1 hour 10 minutes

Bug Bounty Reports Discussed
Road to Most Valuable Hacker and working while travelling the world - Yassine Aboukir
In this podcast, I interview Yassine Aboukir - the winner of Most Valuable Hacker award at H1-303 Live hacking event. We talk about his bug bounty methodology, bounty vs pentesting as well as travelling, digital nomad lifestyle and doing sports.
Show more...
2 years ago
1 hour 7 minutes

Bug Bounty Reports Discussed
Security source code review expert - Shubham Shah
In this podcast episode, I interview Shubham Shah - one of my biggest authorities in bug bounty space and expert in source code review who regularly finds 0days.

📧 Subscribe to BBRE Premium: https://bbre.dev/premium
✉️ Sign up for the mailing list: https://bbre.dev/nl
📣Follow me on Twitter: https://bbre.dev/tw
📣 Follow Shubs on Twitter: http://twitter.com/infosec_au/


Timestamps:
00:00 Intro
00:18 Shubs' background
13:04 Choosing good targets for finding 0days
20:41 How to audit the source code?
33:34 Who should consider a career as a full-time bug bounty hunter?
38:04 Sharing knowledge and disclosing 0days
45:54 What skills does Shubs pay attention to when recruiting security researchers?
48:48 AI in security research
Show more...
2 years ago
55 minutes

Bug Bounty Reports Discussed
Inside the Mind of the TOP1 Facebook Bug Bounty Hunter - Youssef Sammouda
In this podcast, I interview Youssef Sammouda - top Facebook/Meta bug bounty hunter in 2020, 2021 and 2022. He has found numerous bugs on Facebook, including account takeovers. We talk about his methodology, tools he uses, productivity tips and many more!
Show more...
2 years ago
1 hour 6 minutes

Bug Bounty Reports Discussed
Bug bounty automation and scaling 0days - Michael Ness
In this podcast, I interview Michael Ness about bug bounty automation and scaling 0 days to get multiple payouts for a single bug. We also talk about how to make the automation better and about some tips to upcoming bug hunters.

📧 Subscribe to BBRE Premium: https://bbre.dev/premium
✉️ Sign up for the mailing list: https://bbre.dev/nl
📣Follow me on Twitter: https://bbre.dev/tw
📣 Follow Michael on Twitter: https://twitter.com/mikey96_bh
Check out Overcast Security: https://search.overcast-security.app
Show more...
2 years ago
45 minutes

Bug Bounty Reports Discussed
From zero to 6-digit bug bounty earnings in 1 year - Johan Carlsson
📧 Subscribe to BBRE Premium: https://bbre.dev/premium
✉️ Sign up for the mailing list: https://bbre.dev/nl
📣 Follow me on Twitter: https://bbre.dev/tw
📣 Follow Johan on Twitter: https://twitter.com/joaxcar
In this podcast I interview one of bug bounty hunters who started very recently but already is having a lot of success - Johan Carlsson. We talk about his hacking methodology, his journey with GitLab and his tips for bug bounty hunters.

🖥 Get $100 in credits for Digital Ocean: https://bbre.dev/do
Show more...
2 years ago
1 hour 8 minutes

Bug Bounty Reports Discussed
From Bug Bounty Reports Discussed podcast you can learn from the best bug bounty hunters in the world. I ask them about their methodologies, tools they use, the advice they give to beginners and many more... Subscribe to never miss an episode!