SpaceRaccoon - From Day Zero to Zero Day (Ep.120)
Episode 120: In this episode of Critical Thinking - Bug Bounty Podcast Justin Gardner welcomes Eugene to talk (aka fanboy) about his new book, 'From Day Zero to Zero Day.' We walk through what to expect in each chapter, including Binary Analysis, Source and Sink Discovery, and Fuzzing everything.Then we give listeners a special deal on the book. Follow us on twitter at: https://x.com/ctbbpodcast Got any ideas and suggestions? Feel free to send us any feedback here: [email protected] Shoutout to / realytcracker for the awesome intro music! ====== Links ====== Follow your hosts Rhynorater and Rez0 on Twitter: https://x.com/Rhynorater https://x.com/rez0__ ====== Ways to Support CTBBPodcast ====== Hop on the CTBB Discord at https://ctbb.show/discord! We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc. You can also find some hacker swag at https://ctbb.show/merch! Today’s Sponsor - ThreatLocker User Store https://www.criticalthinkingpodcast.io /tl-userstore Today’s guest: https://x.com/spaceraccoonsec ====== Resources ====== Buy SpaceRaccoon's Book: From Day Zero to Zero Day https://nostarch.com/zero-day USE CODE 'ZERODAYDEAL' for 30% OFF Pwning Millions of Smart Weighing Machines with API and Hardware Hacking https://spaceraccoon.dev/pwning-milli... ====== Timestamps ====== (00:00:00) Introduction (00:04:58) From Day Zero to Zero Day (00:12:06) Mapping Code to Attack Surface (00:17:59) Day Zero and Taint Analysis (00:22:43) Automated Variant Analysis & Binary Taxonomy (00:31:35) Source and Sink Discovery (00:40:22) Hybrid Binary Analysis & Quick and Dirty Fuzzing (00:56:00) Coverage-Guided Fuzzing, Fuzzing Everything, & Beyond Day Zero (01:02:16) Bug bounty, Vuln research, & Governmental work (01:10:23) Source Code Review & Pwning Millions of Smart Weighing Machines

Slonser's Image Injection 0-day - ATO & New Caido Collab Plugin (Ep. 121)

35C3 - From Zero to Zero Day

Making life (and death) better despite regulatory barriers

Finding criticals on well-tested targets - Victor “doomerhunter” Poucheret

Inside Ukraine's elite unit hunting Russian soldiers with fiber optic drones

Zero to LHE in 9 Months (feat gr3pme) (Ep. 91)

What is a Zero Day Threat?

From Zero to Zero Day (and beyond) - Life of a Hacker: Jonathan Jacobi

Shubham Shah: From Burgers to Bounties (Ep. 30)

SharePoint ZERO-DAY Lets Hackers Walk Straight In

DEF CON 32 - Anyone can hack IoT- Beginner’s Guide to Hacking Your First IoT Device - Andrew Bellini

We Asked a CIA Officer 24 Tough Questions | Honesty Box

Alex Chapman: How to Be a High-Impact Hacker (Ep. 31)

DEF CON 33 - Unmasking the Snitch Puck: IoT surveillance tech in the school bathroom - Reynaldo, nyx

The mindset for finding highs and crits in bug bounty with JR0ch17

HTTP Request Smuggling Explained (with James Kettle)

The secret to finding many Criticals - Alex Chapman

How to make Millions $$$ hacking zero days?

State of Bug Bounty Maturity Posture Report (Ep. 180)

