2x Google RCE with VRP Legend Brutecat (Ep. 177)
Episode 177: In this episode of Critical Thinking - Bug Bounty Podcast we’re joined by BruteCat to talk about his journey hacking Google Cloud, Gmail, Youtube, and Google Phone. Follow us on twitter at: https://x.com/ctbbpodcast Got any ideas and suggestions? Feel free to send us any feedback here: [email protected] Shoutout to / realytcracker for the awesome intro music! ====== Links ====== Follow your hosts Rhynorater, rez0 and gr3pme on X: https://x.com/Rhynorater https://x.com/rez0__ https://x.com/gr3pme Critical Research Lab: https://lab.ctbb.show/ Need a Pentest? We just launched CTBB Pentests! https://pentest.ctbb.show/ Hack full time? Check out the Full-Time Hunter’s Guild! https://ctbb.show/fthg ====== Ways to Support CTBBPodcast ====== Hop on the CTBB Discord at https://ctbb.show/discord! We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc. You can also find some hacker swag at https://ctbb.show/merch! Today's Sponsor: Check out Zero Trust Cloud Access from ThreatLocker https://www.criticalthinkingpodcast.i... Today’s Guest: https://x.com/brutecat ====== Resources ====== StubZero: $148,337 RCE in Google Cloud Production https://brutecat.com/articles/google-... Leaking the email of any YouTube user for $10,000 https://brutecat.com/articles/leaking... Disclosing YouTube Creator Emails for a $20k Bounty https://brutecat.com/articles/youtube... Leaking the phone number of any Google user https://brutecat.com/articles/leaking... ====== Timestamps ====== (00:00:00) Introduction (00:29:14) 2nd RCE in Application Integration (00:39:55) BruteCat's Background & RCE Follow-up Questions (00:48:02) Google VRP and Youtube Bugs (01:10:17) Google Phone Leak (01:18:36) Discovery Docs and Episode 178 Teaser

600+ CVEs on Adobe AEM with Jim Green (GreenJam) (Ep. 176)

Reinventing Entropy | Compression is Intelligence Part 1

Rhyno’s Hackbot Setup, Sick Bugs, and ZDI Drama (Ep. 175)

The fascism expert at the heart of Palantir | If You're Listening | ABC NEWS In-depth

YesWeHack Hunter Interviews – #21 sunshinefactory: “I really like to find new challenges to tackle”

This CEO sued my friend over an honest product review, but forgot to cover his tracks. I caught him.

Zig 2026: No-AI Policy, $670K Foundation, Left GitHub & Why Zig Isn’t 1.0 - Andrew Kelley Explains

James Kettle: Pwning in Prod & How to do Web Security Research (Ep. 139)

Something is jamming GPS over Europe. Here's what we found

Immediate Mode UI and Animations with Casey Muratori

How Huawei Just Built an Impossible Chip

This is 0 Elo Chess

Attacking AI - Jason Haddix - NDC Security 2026

Back to the Basics - Web Fundamental to 100k a Year in Bug Bounty (Ep. 99)

Casey Muratori – The Big OOPs: Anatomy of a Thirty-five-year Mistake – BSC 2025

I Help YouTuber(s) Arrested Over Lego Videos (Part 2)

Fatty Liver Expert: The Toxic Ingredient Silently Filling Your Liver With Fat - Dr David Unwin

Android 17 sucks. So I put Linux on a phone.

