Episode 18: In this episode of Critical Thinking - Bug Bounty Podcast, we dive into everything source-code related: how to get source-code and what to do with it once you have. This episode is packed with great examples of successful source code review, tips on how to review code yourself, and the tools you'll need along the way.
Follow us on twitter at: @ctbbpodcast
We're new to this podcasting thing, so feel free to send us any feedback here: [email protected]
Shoutout to YTCracker for the awesome intro music!
------ Links ------
Follow your hosts Rhynorater & Teknogeek on twitter:
https://twitter.com/0xteknogeek
https://twitter.com/rhynorater
Crossing the KASM:
https://www.youtube.com/watch?v=NwMY1umhpgg
PWNAssistant by Elttam:
https://www.elttam.com/blog/pwnassistant/#content
Andre's Git Arbitrary Configuration Injection:
https://blog.ethiack.com/en/blog/git-arbitrary-configuration-injection-cve-2023-29007
Jub0b's a Smorgasbord of a Bug Chain:
https://jub0bs.com/posts/2023-05-05-smorgasbord-of-a-bug-chain/
Ankur Sundara's Cookie Bugs - Smuggling & Injection:
https://twitter.com/ankursundara/status/1654556463703134208?t=7nTUSszPB6fS3MkATzxpaQ&s=19
James Kettle's Notes on Novel Pathways to Poisoning (cool quirks in here):
https://twitter.com/albinowax/status/1654767919690031106?t=vbVEOML5_QnWByi0m8Nv4A&s=19
Ignore Irrelevant Scripts During Debugging by Johan Carlsson:
https://twitter.com/joaxcar/status/1653787336105156616
Every known way to get references to windows:
https://bluepnume.medium.com/every-known-way-to-get-references-to-windows-in-javascript-223778bede2d
VS Code Todo Highlight:
https://marketplace.visualstudio.com/items?itemName=wayou.vscode-todo-highlight
VS Code: