Critical Thinking - Bug Bounty Podcast cover image

Critical Thinking - Bug Bounty Podcast

Episode 60: Our Take on PortSwigger's Top 10 Web Hacking Techniques of 2023

Feb 29, 2024
Exploring top web hacking techniques of 2023 such as state machine smashing, NTLM token theft via Akamai servers, SMTP smuggling, PHP filter chains, HTTP request splitting, hacking Microsoft Teams, cookie manipulation, and EPP server takeovers. The hosts analyze and debate these advanced hacking methods with insightful commentary and practical examples.
01:24:37

Podcast summary created with Snipd AI

Quick takeaways

  • Understanding vulnerabilities in SMTP security mechanisms like SPF, DKIM, and DMARC through SMTP smuggling techniques.
  • Identifying and exploiting Engine X misconfigurations leading to HTTP request splitting vulnerabilities.

Deep dives

Research on Web Hacking Techniques of 2023

The top 10 web hacking techniques of 2023 were delved into, showcasing research findings from James Kettle and others. In-depth analysis was performed on techniques like exploiting Nagle's algorithm in TCP packets and utilizing HTTP2 for race condition testing, demonstrating innovative and impactful methodologies in the hacking community.

Remember Everything You Learn from Podcasts

Save insights instantly, chat with episodes, and build lasting knowledge - all powered by AI.
App store bannerPlay store banner