Episode 186: Is Sol 5.6 SuperHuman for Bug Bounty?

Episode 186: Is Sol 5.6 SuperHuman for Bug Bounty?

Episode 186: In this episode of Critical Thinking - Bug Bounty Podcast we talk about some Recent Bug Bounty trends and pricing changes, wp2Shell exploits, Sol 5.6, and prompting via the Gauntlet loop.


Follow us on twitter at: https://x.com/ctbbpodcast

Got any ideas and suggestions? Feel free to send us any feedback here: info@criticalthinkingpodcast.io

Shoutout to YTCracker for the awesome intro music!



====== Links ======

Follow your hosts Rhynorater, rez0 and gr3pme on X:

https://x.com/Rhynorater

https://x.com/rez0__

https://x.com/gr3pme


Critical Research Lab:

https://lab.ctbb.show/


Need a Pentest? We just launched CTBB Pentests!

https://pentest.ctbb.show/


Hack full time? Check out the Full-Time Hunter’s Guild!

https://ctbb.show/fthg


====== Ways to Support CTBBPodcast ======

Hop on the CTBB Discord at https://ctbb.show/discord!


We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc.


You can also find some hacker swag at https://ctbb.show/merch!


Sponsored by ThreatLocker - Zero Trust Network Access

https://www.criticalthinkingpodcast.io/tl-ztna


====== Resources ======

Trend of Bug Bounty Programs

https://x.com/iangcarroll/status/2082535987633410540


Next chapter: Restructuring GitHub’s bug bounty program

https://github.blog/security/next-chapter-restructuring-githubs-bug-bounty-program/


Securing GitHub: Wiz Research uncovers Remote Code Execution in GitHub

https://www.wiz.io/blog/github-rce-vulnerability-cve-2026-3854


Gauntlet Loop

https://x.com/mattshumer_/status/2081830214384886228


KindaRails2Shell - Critical RCE in Rails via Active Storage (CVE-2026-66066)

https://ethiack.com/info-hub/research/kindarails2shell-rails-rce-cve-2026-66066


Exploit brokers pay $500,000 for a WordPress RCE. I found one with GPT5.6 Sol Ultra and $25

https://slcyber.io/research-center/exploit-brokers-pay-500000-for-a-wordpress-rce-i-found-one-with-gpt5-6/


====== Timestamps ======

(00:00:00) Introduction

(00:05:40) Bug Bounty Program Trends & Pricing Changes

(00:15:52) Wiz Research uncovers RCE in GitHub & Sol 5.6

(00:29:06) AI Harnessing, prompting, and the Gauntlet Loop

(00:36:58) LHE vs Hackbot

(00:43:21) KindaRails2Shell & WP2Shell

Denne episoden er hentet fra en åpen RSS-feed og er ikke publisert av Podme. Den kan derfor inneholde annonser.

Episoder(193)

Episode 193: Browser Logic Errors & XS-Leaks with Jorian Woltjer

Episode 193: Browser Logic Errors & XS-Leaks with Jorian Woltjer

Episode 193: In this episode of Critical Thinking - Bug Bounty Podcast we’re joined by Jorian Woltjer to talk through his Bug Bounty journey and all the crazy research he’s done for the Critical Think...

24 Sep 1h 46min

Episode 192: Hackbot Proof-of-Concept Skill Creation

Episode 192: Hackbot Proof-of-Concept Skill Creation

Episode 192: In this episode of Critical Thinking - Bug Bounty Podcast Justin lays out some goals and tips on PoC Creation.Follow us on twitter at: https://x.com/ctbbpodcastGot any ideas and suggestio...

17 Sep 26min

Episode 191: Rez0s Sick Caching Bug & Local AI vs Subsidized tokens

Episode 191: Rez0s Sick Caching Bug & Local AI vs Subsidized tokens

Episode 191: In this episode of Critical Thinking - Bug Bounty Podcast Justin and Joseph talk about successes in scaling their hackbots, and brainstorm possible ways to stretch their AI subscriptions....

10 Sep 37min

Episode 190: Hacker Life Coaching & is Rez0 a Claude Shill?

Episode 190: Hacker Life Coaching & is Rez0 a Claude Shill?

Episode 190: In this episode of Critical Thinking - Bug Bounty Podcast Justin and Joseph do a little life-coaching session to make sure they’re both still aligned with their bug bounty goals. They als...

3 Sep 33min

Episode 189: What Happened to HackerOne with Joel Margolis

Episode 189: What Happened to HackerOne with Joel Margolis

Episode 189: In this episode of Critical Thinking - Bug Bounty Podcast we’re (re)joined by none other than JOEL FREAKING MARGOLIS to talk about his blog post concerning HackerOne. We talk about what h...

27 Aug 1h 14min

Episode 188: DEFCON 34 Hotel Room Debrief

Episode 188: DEFCON 34 Hotel Room Debrief

Episode 188: In this episode of Critical Thinking - Bug Bounty Podcast Gr3pme and BusFactor grab some Hackers for a Live from DEFCON Episode to recap the event and highlight their top bugs and talks.F...

20 Aug 41min

Episode 187: Are Live Hacking Events even worth it?

Episode 187: Are Live Hacking Events even worth it?

Episode 187: In this episode of Critical Thinking - Bug Bounty Podcast we talk about how much to gaslight your Hackbot, finding “Internet Melting Bugs” and if LHEs still make sense in this AI age.Foll...

13 Aug 42min

Populært innen Teknologi

teknisk-sett
tomprat-med-gunnar-tjomlid
lydartikler-fra-aftenposten
energi-og-klima
elektropodden
rss-ki-praten
hans-petter-og-co
nasjonal-sikkerhetsmyndighet-nsm
shifter
smart-forklart
rss-alt-som-gar-pa-strom
rss-ai-forklart
teknologi-og-mennesker
rss-snakk-om-sikkerhet
rss-kunstig-intelligens-med-elisabeth-maren-og-morten
fornybaren
rss-teknologioptimistene-en-podkast-om-teknologi-og-mennesker
pedagogisk-intelligens
rss-alt-vi-kan
rss-heis