Critical Thinking - Bug Bounty Podcast cover image

Episode 68: 0-days & HTMX-SS with Mathias

Critical Thinking - Bug Bounty Podcast

00:00

Bug Hunting Frustrations and CDN CGI Work

This chapter explores bug hunting experiences and frustrations caused by small issues like case flips or encoding problems. Additionally, it delves into CDN CGI work, particularly focusing on HTMX, deprecated formats like HX-on for defining multiple handlers, and potential research opportunities around error handling when transitioning between handlers. The discussion also includes a bypass for Firefox CSP and the discovery and investigation process of a specific HTTP-only CDN to CGI endpoint called BinRec, highlighting its reflection of the entire request and potential implications for bypassing CSP in Firefox.

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app