
Critical Thinking - Bug Bounty Podcast · Justin Gardner (Rhynorater), Joseph Thacker (Rez0), & Brandyn Murtagh (gr3pme)
Episode 157: Crushing Pwn2Own & H1 with Kernel Driver Exploits
·1 hr 35 min·5 clips
A char-sized length field lets the driver copy more data than the buffer can hold.
As heard by us
A practical look at bug bounty work, Keycloak research, and the value of simple fuzzing.
The episode starts with bug bounty budget exhaustion, moves into a practical push for listener research submissions at lab.ctbb.show, and then lands on CVE-2025-13467 in Keycloak, found by ICARE and Truff.
Why you'd press play
Rapid-fire bug bounty news, source review, and a listener research lab.
Listen to the show on