44 subscribers
Player FM uygulamasıyla çevrimdışı Player FM !
Dinlemeye Değer Podcast'ler
SPONSOR


1 Pushing Past Stagnation & Business Plateaus 30:21
Episode 54: White Box Formulas - Vulnerable Coding Patterns
Manage episode 396090139 series 3435922
Episode 54: In this episode of Critical Thinking - Bug Bounty Podcast Justin and Joel are back with news items and new projects. Joel shares about his personal scraping project to gather data on bug bounty programs and distribution Next, they announce the launch of HackerNotes, a podcast companion that will summarize the main technical points of each episode. They also discuss a recent GitLab CVE and an invisible prompt injection, before diving into a discussion (or debate) about vulnerable code patterns.
Follow us on twitter at: @ctbbpodcast
We're new to this podcasting thing, so feel free to send us any feedback here: info@criticalthinkingpodcast.io
Shoutout to YTCracker for the awesome intro music!
------ Links ------
Follow your hosts Rhynorater & Teknogeek on twitter:
https://twitter.com/0xteknogeek
https://twitter.com/rhynorater
------ Ways to Support CTBBPodcast ------
Sign up for Caido using the referral code CTBBPODCAST for a 10% discount.
Hop on the CTBB Discord at https://ctbb.show/discord!
We also do Discord subs at $25, $10, $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc.
Gitlab CVE
https://github.com/Vozec/CVE-2023-7028
https://about.gitlab.com/releases/2024/01/11/critical-security-release-gitlab-16-7-2-released/
Fix commit: https://gitlab.com/gitlab-org/gitlab/-/commit/abe79e4ec437988cf16534a9dbba81b98a2e7f18
Invisible Prompt Injection
https://x.com/goodside/status/1745511940351287394?s=20
Regex 101
Regex to Strings
https://www.wimpyprogrammer.com/regex-to-strings/
Timestamps
(00:00:00) Introduction
(00:01:54) Joel’s H1 Data Scraping Research
(00:19:23) HackerNotes launch
(00:21:29) Gitlab CVE
(00:27:45) Invisible Prompt Injection
(00:33:52) Vulnerable Code Patterns
(00:37:51) Sanitization, but then modification of data afterward
(00:45:39) Auth check inside body of if statement
(00:48:15) sCheck for bad patterns with if, but then don't do any control flow
(00:50:21) Bad Regex
(01:00:36) Replace statements for sanitization
(01:04:32) Anything that allows you to call functions or control code flow in uncommon ways
119 bölüm
Manage episode 396090139 series 3435922
Episode 54: In this episode of Critical Thinking - Bug Bounty Podcast Justin and Joel are back with news items and new projects. Joel shares about his personal scraping project to gather data on bug bounty programs and distribution Next, they announce the launch of HackerNotes, a podcast companion that will summarize the main technical points of each episode. They also discuss a recent GitLab CVE and an invisible prompt injection, before diving into a discussion (or debate) about vulnerable code patterns.
Follow us on twitter at: @ctbbpodcast
We're new to this podcasting thing, so feel free to send us any feedback here: info@criticalthinkingpodcast.io
Shoutout to YTCracker for the awesome intro music!
------ Links ------
Follow your hosts Rhynorater & Teknogeek on twitter:
https://twitter.com/0xteknogeek
https://twitter.com/rhynorater
------ Ways to Support CTBBPodcast ------
Sign up for Caido using the referral code CTBBPODCAST for a 10% discount.
Hop on the CTBB Discord at https://ctbb.show/discord!
We also do Discord subs at $25, $10, $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc.
Gitlab CVE
https://github.com/Vozec/CVE-2023-7028
https://about.gitlab.com/releases/2024/01/11/critical-security-release-gitlab-16-7-2-released/
Fix commit: https://gitlab.com/gitlab-org/gitlab/-/commit/abe79e4ec437988cf16534a9dbba81b98a2e7f18
Invisible Prompt Injection
https://x.com/goodside/status/1745511940351287394?s=20
Regex 101
Regex to Strings
https://www.wimpyprogrammer.com/regex-to-strings/
Timestamps
(00:00:00) Introduction
(00:01:54) Joel’s H1 Data Scraping Research
(00:19:23) HackerNotes launch
(00:21:29) Gitlab CVE
(00:27:45) Invisible Prompt Injection
(00:33:52) Vulnerable Code Patterns
(00:37:51) Sanitization, but then modification of data afterward
(00:45:39) Auth check inside body of if statement
(00:48:15) sCheck for bad patterns with if, but then don't do any control flow
(00:50:21) Bad Regex
(01:00:36) Replace statements for sanitization
(01:04:32) Anything that allows you to call functions or control code flow in uncommon ways
119 bölüm
所有剧集
×
1 Episode 119: Abusing Iframes from a client-side hacker 33:54

1 Episode 118: Hacking Happy Hour: 0days on Tap and SQLi Shots 58:29

1 Hacking AI Series: Vulnus ex Machina - Part 1 32:20

1 Episode 116: Auth Bypasses and Google VRP Writeups 26:48

1 Episode 115: Mentee to Career Hacker - Mokusou (So Sakaguchi) 1:40:58

1 Episode 114: Single Page Application Hacking Playbook 1:22:25

1 Episode 113: Best Technical Takeaways from Portswigger Top 10 2024 1:29:19

1 Episode 112: Interview with Ciarán Cotter (MonkeHack) - Critical Lab Researcher and Full-time Hunter 1:07:37

1 Episode 111: How to Bypass DOMPurify in Bug Bounty with Kevin Mizu 1:49:15

1 Episode 110: Oauth Gadget Correlation and Common Attacks 49:41

1 Episode 109: Creative Recon - Alternative Techniques 1:01:42

1 Episode 108: How to Hack Salesforce, ServiceNow, and Other SaaS Products With Aaron Costello 1:31:08

1 Episode 107: Bypassing Cross-Origin Browser Headers 1:06:17

1 Episode 106: Announcing our new cohost... 58:10

1 Episode 105: Best Critical Thinking Moments from 2024 2:17:47
Player FM'e Hoş Geldiniz!
Player FM şu anda sizin için internetteki yüksek kalitedeki podcast'leri arıyor. En iyi podcast uygulaması ve Android, iPhone ve internet üzerinde çalışıyor. Aboneliklerinizi cihazlar arasında eş zamanlamak için üye olun.