

Episode 72: Research TLDRs & Smuggling Payloads in Well Known Data Types
May 23, 2024
Discussing PDF.JS XSS and NextJS SSRF, improving bug bounty statistics, concealing data in IPv6 addresses, navigating RFC compliance, business logic vulnerabilities, bug hunting strategies, JavaScript in software development, and transitioning to a new tool efficiently.
Chapters
Transcript
Episode notes
1 2 3 4 5 6 7 8
Intro
00:00 • 2min
Bug Bounty Research Conference and PDF .js XSS Vulnerability
01:59 • 11min
Improving Representation in Bug Bounty Statistics
13:28 • 14min
Navigating RFC Compliance and Developer Solutions
27:15 • 2min
Business Logic Vulnerabilities and Patch Analysis
28:46 • 16min
Debating Bug Hunting Strategies and Time Investment in Applications
44:31 • 3min
Exploring the Benefits of JavaScript in Software Development and Plugin Management
47:59 • 2min
Enhancing User Experience and Transitioning to a New Tool
50:15 • 3min