Tommy DeVoss: From Black Hat to Bug Bounty LEGEND (Ep. 164)
Episode 164: In this episode of Critical Thinking - Bug Bounty Podcast Justin sits down with Tommy DeVoss to talk about his origin story, Yahoo bugs, and how Tommy first got Justin into Bug Bounty Follow us on twitter at: https://x.com/ctbbpodcast Got any ideas and suggestions? Feel free to send us any feedback here: [email protected] Shoutout to / realytcracker for the awesome intro music! ====== Links ====== Follow your hosts Rhynorater, rez0 and gr3pme on X: https://x.com/Rhynorater https://x.com/rez0__ https://x.com/gr3pme Critical Research Lab: https://lab.ctbb.show/ ====== Ways to Support CTBBPodcast ====== Hop on the CTBB Discord at https://ctbb.show/discord! We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc. You can also find some hacker swag at https://ctbb.show/merch! Today’s Guest: https://x.com/thedawgyg ====== This Week in Bug Bounty ====== Python pitfalls: Turning developer mistakes into vulnerabilities https://www.yeswehack.com/learn-bug-b... ====== Timestamps ====== (00:00:00) Introduction (00:06:22) Yahoo SSRF (00:14:56) Tommy's Origin (00:44:10) Bug Bounty (00:51:47) SSRF Attraction, AI implementation, & Browser Hacking

Protobuf Hacking, AI-Powered Bug Hunting, and Self-Improving Claude Workflows (Ep. 165)

Our Bugbounty.forum Q&A (Ep. 156)

Attacking AI - Jason Haddix - NDC Security 2026

NahamSec Teaches Me Bug Bounty Basics

IDOR Infinite Money Glitch? | Bug Bounty Hacktivity Explained

From prison, to $5M in bug bounty, to head of AppSec: The story of hacker dawgyg

Why Israel is the World's Top Hacking Nation | VICE: Cyberwar | Blueprint

Stupid Simple Hacking Workflow Tips (Ep. 147)

Busfactor’s Insane Bug Bounty Journey and Google Awards (Ep. 144)

XSSDoctor - Client-side Path Traversal Research (Ep.168)

From 0 to a top bug bounty hunter - Johan Carlsson's journey to GitLab TOP1 on Hackerone

Building Claude Skills as a Bug Bounty Hunter (Ep. 166)

Best Technical Takeaways from Portswigger Top 10 2025 (Ep. 163)

"I was addicted to making money." Confessions of a Chronic Card Skimmer 💳 Ep. 164: Oak Cliff Swipers

DEF CON 32 - The Darkest Side of Bug Bounty - Jason Haddix

10hr Marathon Hack-Along Recap + $300k Client-side Bugs (Ep. 158)

Top 4 Web hacking demos for aspiring hackers (with labs and CTF)

The Million-Dollar Hacker

I Built an AI That Builds Zero Day Exploits

