TopPodcast.com
Menu
  • Home
  • Top Charts
  • Top Networks
  • Top Apps
  • Top Independents
  • Top Podfluencers
  • Top Picks
    • Top Business Podcasts
    • Top True Crime Podcasts
    • Top Finance Podcasts
    • Top Comedy Podcasts
    • Top Music Podcasts
    • Top Womens Podcasts
    • Top Kids Podcasts
    • Top Sports Podcasts
    • Top News Podcasts
    • Top Tech Podcasts
    • Top Crypto Podcasts
    • Top Entrepreneurial Podcasts
    • Top Fantasy Sports Podcasts
    • Top Political Podcasts
    • Top Science Podcasts
    • Top Self Help Podcasts
    • Top Sports Betting Podcasts
    • Top Stocks Podcasts
  • Podcast News
  • About Us
  • Podcast Advertising
  • Contact
Not in our directory?
Add Show Here
Podcast Equipment
Center

toppodcastlogoOur TOPPODCAST Picks

  • Comedy
  • Crypto
  • Sports
  • News
  • Politics
  • True Crime
  • Business
  • Finance

Follow Us

toppodcastlogoStay Connected

    View Top 200 Chart
    Back to Rankings Page
    Technology

    Day[0]

    A weekly podcast for bounty hunters, exploit developers or anyone interesting in the details of the latest disclosed vulnerabilities and exploits.

    Advertise

    Copyright: © dayzerosec

    • Apple Podcasts
    • Google Play
    • Spotify

    Latest Episodes:
    [bounty] ImageMagick, Cracking SmartLocks, and Broken OAuth Mar 07, 2023
    Show notes

    This episode covers a lot of ground, from an insecure OAuth flow (Booking.com) to a crazy JSON injection and fail-open login system (DataHub) to hacking Bluetooth smart locks (Megafeis-palm). And even a new ImageMagick trick for a local file read.


    Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/193.html


    [00:00:00] Introduction

    [00:00:26] Traveling with OAuth - Account Takeover on Booking.com

    [00:13:25] Megafeis-palm: Exploiting Vulnerabilities to Open Bluetooth SmartLocks

    [00:22:46] GitHub Security Lab audited DataHub: Here's what they found

    [00:33:43] ImageMagick: The hidden vulnerability behind your online images

    [00:38:49] CI/CD secrets extraction, tips and tricks

    [00:39:30] A New Vector For “Dirty” Arbitrary File Write to RCE


    The DAY[0] Podcast episodes are streamed live on Twitch twice a week:

    -- Mondays at 3:00pm Eastern (Boston) we focus on web and more bug bounty style vulnerabilities

    -- Tuesdays at 7:00pm Eastern (Boston) we focus on lower-level vulnerabilities and exploits.


    We are also available on the usual podcast platforms:

    -- Apple Podcasts: https://podcasts.apple.com/us/podcast/id1484046063

    -- Spotify: https://open.spotify.com/show/4NKCxk8aPEuEFuHsEQ9Tdt

    -- Google Podcasts: https://www.google.com/podcasts?feed=aHR0cHM6Ly9hbmNob3IuZm0vcy9hMTIxYTI0L3BvZGNhc3QvcnNz

    -- Other audio platforms can be found at https://anchor.fm/dayzerosec


    You can also join our discord: https://discord.gg/daTxTK9


    [binary] A GPU Bug and the World's Worst Fuzzer Findings Mar 02, 2023
    Show notes

    Just a couple issues this week, a cache coherency issue because the functions used to flush changes were not implemented on AARCH64. The second was using the "world's worst fuzzer" to find some bugs. Dumb fuzzer, but it worked.


    Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/192.html


    [00:00:00] Introduction

    [00:00:24] Spot the Vuln - Targeting

    [00:06:16] Vulnerability Reward Program: 2022 Year in Review

    - Correction: I mistakenly thought Google's Bug Hunter University was older than it is. It was started in 2021.

    [00:12:56] The code that wasn't there: Reading memory on an Android device by accident

    [00:22:37] Using the “World’s Worst Fuzzer” To Find A Kernel Bug In The FiiO M6


    The DAY[0] Podcast episodes are streamed live on Twitch twice a week:

    -- Mondays at 3:00pm Eastern (Boston) we focus on web and more bug bounty style vulnerabilities

    -- Tuesdays at 7:00pm Eastern (Boston) we focus on lower-level vulnerabilities and exploits.


    We are also available on the usual podcast platforms:

    -- Apple Podcasts: https://podcasts.apple.com/us/podcast/id1484046063

    -- Spotify: https://open.spotify.com/show/4NKCxk8aPEuEFuHsEQ9Tdt

    -- Google Podcasts: https://www.google.com/podcasts?feed=aHR0cHM6Ly9hbmNob3IuZm0vcy9hMTIxYTI0L3BvZGNhc3QvcnNz

    -- Other audio platforms can be found at https://anchor.fm/dayzerosec


    You can also join our discord: https://discord.gg/daTxTK9


    [bounty] Param Pollution in Golang, OpenEMR, and CRLF Injection Feb 28, 2023
    Show notes

    Parameter pollution for an auth bypass, SQL injection in an ORM, CRLF injection for a WAF bypass...this episode has a great mix of issues.


    Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/191.html


    [00:00:00] Introduction

    [00:00:26] OpenEMR - Remote Code Execution in your Healthcare System

    [00:10:13] Vulnerability write-up - "Dangerous assumptions"

    [00:18:05] Chat Question: How do we find topics for the podcast?

    [00:19:22] Exploiting Parameter Pollution in Golang Web Apps

    [00:24:10] Using CRLF Injection to Bypass a Web App Firewall

    [00:34:17] Microsoft Azure Account Takeover via DOM-based XSS in Cosmos DB Explorer


    The DAY[0] Podcast episodes are streamed live on Twitch twice a week:

    -- Mondays at 3:00pm Eastern (Boston) we focus on web and more bug bounty style vulnerabilities

    -- Tuesdays at 7:00pm Eastern (Boston) we focus on lower-level vulnerabilities and exploits.


    We are also available on the usual podcast platforms:

    -- Apple Podcasts: https://podcasts.apple.com/us/podcast/id1484046063

    -- Spotify: https://open.spotify.com/show/4NKCxk8aPEuEFuHsEQ9Tdt

    -- Google Podcasts: https://www.google.com/podcasts?feed=aHR0cHM6Ly9hbmNob3IuZm0vcy9hMTIxYTI0L3BvZGNhc3QvcnNz

    -- Other audio platforms can be found at https://anchor.fm/dayzerosec


    You can also join our discord: https://discord.gg/daTxTK9


    [binary] Fuzzing cURL, Netatalk, and an Emulator Escape Feb 23, 2023
    Show notes

    This week we talk about more Rust pitfalls, and fuzzing cURL. Then we have a couple bugs, one involving messing with the TCP stack to reach the vulnerable condition.


    Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/190.html


    [00:00:00] Introduction

    [00:00:27] Spot the Vuln - Insecure by Default

    [00:02:20] cURL audit: How a joke led to significant findings

    [00:09:45] Rustproofing Linux (Part 4/4 Shared Memory)

    [00:11:25] Rustproofing Linux (Part 4/4 Shared Memory)

    [00:17:22] Exploiting a remote heap overflow with a custom TCP stack

    [00:34:20] mast1c0re: Part 3 - Escaping the emulator


    The DAY[0] Podcast episodes are streamed live on Twitch twice a week:

    -- Mondays at 3:00pm Eastern (Boston) we focus on web and more bug bounty style vulnerabilities

    -- Tuesdays at 7:00pm Eastern (Boston) we focus on lower-level vulnerabilities and exploits.


    We are also available on the usual podcast platforms:

    -- Apple Podcasts: https://podcasts.apple.com/us/podcast/id1484046063

    -- Spotify: https://open.spotify.com/show/4NKCxk8aPEuEFuHsEQ9Tdt

    -- Google Podcasts: https://www.google.com/podcasts?feed=aHR0cHM6Ly9hbmNob3IuZm0vcy9hMTIxYTI0L3BvZGNhc3QvcnNz

    -- Other audio platforms can be found at https://anchor.fm/dayzerosec


    You can also join our discord: https://discord.gg/daTxTK9


    [bounty] Compromising Azure, Password Verification Fails, and Readline Crime Feb 21, 2023
    Show notes

    A variety episode this week with some bad cryptography in PHP and Azure, information disclosure in suid binaries, request smuggling in HAProxy, and some research on testing for server-side prototype pollution.


    Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/189.html


    [00:00:00] Introduction

    [00:00:22] PHP :: Sec Bug #81744 :: Password_verify() always return true with some hash

    [00:11:25] Readline crime: exploiting a SUID logic bug

    [00:18:05] Azure B2C Crypto Misuse and Account Compromise

    [00:24:32] BUG/CRITICAL: http: properly reject empty http header field names · haproxy/haproxy@a8598a2

    [00:27:23] Server-side prototype pollution: Black-box detection without the DoS

    [00:30:47] ThinkstScapes 2022.Q4


    The DAY[0] Podcast episodes are streamed live on Twitch twice a week:

    -- Mondays at 3:00pm Eastern (Boston) we focus on web and more bug bounty style vulnerabilities

    -- Tuesdays at 7:00pm Eastern (Boston) we focus on lower-level vulnerabilities and exploits.


    We are also available on the usual podcast platforms:

    -- Apple Podcasts: https://podcasts.apple.com/us/podcast/id1484046063

    -- Spotify: https://open.spotify.com/show/4NKCxk8aPEuEFuHsEQ9Tdt

    -- Google Podcasts: https://www.google.com/podcasts?feed=aHR0cHM6Ly9hbmNob3IuZm0vcy9hMTIxYTI0L3BvZGNhc3QvcnNz

    -- Other audio platforms can be found at https://anchor.fm/dayzerosec


    You can also join our discord: https://discord.gg/daTxTK9


    [binary] Rusty Kernel Bugs, mast1c0re, and OpenSSH Feb 16, 2023
    Show notes

    Few discussions this week, from using ASAN for effectively, to vulnerabilities in Rust code, and some discussion about exploiting the OpenSSH double free.


    Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/188.html


    [00:00:00] Introduction

    [00:00:31] Spot the Vuln - Too Soft

    [00:04:19] One Weird Trick to Improve Bug Finding With ASAN

    [00:08:27] Rustproofing Linux (Part 2/4 Race Conditions)

    [00:22:39] OpenSSH Pre-Auth Double Free Writeup & PoC [CVE-2023-25136]

    [00:34:14] mast1c0re: Part 2 - Arbitrary PS2 code execution

    [00:42:39] All about UndefinedBehaviorSanitizer


    The DAY[0] Podcast episodes are streamed live on Twitch twice a week:

    -- Mondays at 3:00pm Eastern (Boston) we focus on web and more bug bounty style vulnerabilities

    -- Tuesdays at 7:00pm Eastern (Boston) we focus on lower-level vulnerabilities and exploits.


    We are also available on the usual podcast platforms:

    -- Apple Podcasts: https://podcasts.apple.com/us/podcast/id1484046063

    -- Spotify: https://open.spotify.com/show/4NKCxk8aPEuEFuHsEQ9Tdt

    -- Google Podcasts: https://www.google.com/podcasts?feed=aHR0cHM6Ly9hbmNob3IuZm0vcy9hMTIxYTI0L3BvZGNhc3QvcnNz

    -- Other audio platforms can be found at https://anchor.fm/dayzerosec


    You can also join our discord: https://discord.gg/daTxTK9



    [bounty] Top 2022 Web Hacking Techniques and a Binance Bug Feb 14, 2023
    Show notes

    Bit slow this week, so we talk about the Top Web-hacking techniques of 2022, and some TruffleSec/XSS Hunter drama before so we cover a blockchain verification bug, and a simple path traversal to SSTI and RCE chain.


    Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/187.html


    [00:00:00] Introduction

    [00:00:32] Top 10 web hacking techniques of 2022

    [00:06:30] TruffleSec/XSSHunter Drama

    [00:15:33] Binance Smart Chain Token Bridge Hack

    [00:24:01] Insecure path join to RCE via SSTI [CVE-2023-22855]

    [00:29:06] Fearless CORS: a design philosophy for CORS middleware libraries (and a Go implementation)


    The DAY[0] Podcast episodes are streamed live on Twitch twice a week:

    -- Mondays at 3:00pm Eastern (Boston) we focus on web and more bug bounty style vulnerabilities

    -- Tuesdays at 7:00pm Eastern (Boston) we focus on lower-level vulnerabilities and exploits.


    We are also available on the usual podcast platforms:

    -- Apple Podcasts: https://podcasts.apple.com/us/podcast/id1484046063

    -- Spotify: https://open.spotify.com/show/4NKCxk8aPEuEFuHsEQ9Tdt

    -- Google Podcasts: https://www.google.com/podcasts?feed=aHR0cHM6Ly9hbmNob3IuZm0vcy9hMTIxYTI0L3BvZGNhc3QvcnNz

    -- Other audio platforms can be found at https://anchor.fm/dayzerosec


    You can also join our discord: https://discord.gg/daTxTK9


    [binary] An XNU Exploit and a Chrome Heap Overflow Feb 09, 2023
    Show notes

    First, we take a look at some positive changes to OSS Fuzz, then we dive into some vulnerabilities. This includes an XNU heap out-of-bounds write vulnerability, a Chrome heap-based overflow vulnerability, and an out-of-bounds read in cmark-gfm that, while probably not exploitable, is still intriguing.


    Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/186.html


    [00:00:00] Introduction

    [00:00:22] Spot the Vuln - The Great String Escape

    [00:03:03] Taking the next step: OSS-Fuzz in 2023

    [00:09:48] XNU Heap Underwrite in dlil.c [CVE-2023-23504]

    [00:19:10] Chrome heap buffer overflow in validating command decoder [CVE-2022-4135]

    [00:26:19] Out-of-bounds read in cmark-gfm [CVE-2023-22485]


    The DAY[0] Podcast episodes are streamed live on Twitch twice a week:

    -- Mondays at 3:00pm Eastern (Boston) we focus on web and more bug bounty style vulnerabilities

    -- Tuesdays at 7:00pm Eastern (Boston) we focus on lower-level vulnerabilities and exploits.


    We are also available on the usual podcast platforms:

    -- Apple Podcasts: https://podcasts.apple.com/us/podcast/id1484046063

    -- Spotify: https://open.spotify.com/show/4NKCxk8aPEuEFuHsEQ9Tdt

    -- Google Podcasts: https://www.google.com/podcasts?feed=aHR0cHM6Ly9hbmNob3IuZm0vcy9hMTIxYTI0L3BvZGNhc3QvcnNz

    -- Other audio platforms can be found at https://anchor.fm/dayzerosec


    You can also join our discord: https://discord.gg/daTxTK9



    [bounty] Facebook Account Takeovers and a vBulletin RCE Feb 07, 2023
    Show notes

    Is it possible to escalate a self-XSS into an account takeover? Perhaps, we take a look at some potential options by abusing single-sign on. Then we take a look at a few Facebook/Meta authentication issues, and a deserialization trick to increase the usable classes in PHP.


    Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/185.html


    [00:00:00] Introduction

    [00:00:21] Single-Sign On Gadgets: Escalate (Self-)XSS to Account Takeover

    [00:11:11] Account takeover of Facebook/Oculus accounts due to First-Party access_token stealing

    [00:14:00] DOM-XSS in Instant Games due to improper verification of supplied URLs

    [00:18:55] Account Takeover in Canvas Apps served in Comet due to failure in Cross-Window-Message Origin validation

    [00:29:33] Unserializable, but unreachable: Remote code execution on vBulletin

    [00:34:54] Lexmark MC3224adwe RCE exploit


    The DAY[0] Podcast episodes are streamed live on Twitch twice a week:

    -- Mondays at 3:00pm Eastern (Boston) we focus on web and more bug bounty style vulnerabilities

    -- Tuesdays at 7:00pm Eastern (Boston) we focus on lower-level vulnerabilities and exploits.


    We are also available on the usual podcast platforms:

    -- Apple Podcasts: https://podcasts.apple.com/us/podcast/id1484046063

    -- Spotify: https://open.spotify.com/show/4NKCxk8aPEuEFuHsEQ9Tdt

    -- Google Podcasts: https://www.google.com/podcasts?feed=aHR0cHM6Ly9hbmNob3IuZm0vcy9hMTIxYTI0L3BvZGNhc3QvcnNz

    -- Other audio platforms can be found at https://anchor.fm/dayzerosec


    You can also join our discord: https://discord.gg/daTxTK9


    [binary] KASAN comes to Windows and Shuffling ROP Gadgets Feb 02, 2023
    Show notes

    Discussion heavy episode this week, talking about KASAN landing on Windows, shuffling gadgets to make ROP harder, and a paper about automatic exploit primitive discovery.


    Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/184.html


    [00:00:00] Introduction

    [00:00:26] Spot the Vuln - Just the Data

    [00:04:20] Introducing kernel sanitizers on Microsoft platforms

    [00:14:54] Fun with Gentoo: Why don't we just shuffle those ROP gadgets away?

    [00:25:14] Detecting Exploit Primitives Automatically for Heap Vulnerabilities on Binary Programs

    [00:35:44] Armed to Boot: an enhancement to Arm's Secure Boot chain

    [00:37:24] Pwning the all Google phone with a non-Google bug

    [00:39:01] AMD SP Loader


    The DAY[0] Podcast episodes are streamed live on Twitch twice a week:

    -- Mondays at 3:00pm Eastern (Boston) we focus on web and more bug bounty style vulnerabilities

    -- Tuesdays at 7:00pm Eastern (Boston) we focus on lower-level vulnerabilities and exploits.


    We are also available on the usual podcast platforms:

    -- Apple Podcasts: https://podcasts.apple.com/us/podcast/id1484046063

    -- Spotify: https://open.spotify.com/show/4NKCxk8aPEuEFuHsEQ9Tdt

    -- Google Podcasts: https://www.google.com/podcasts?feed=aHR0cHM6Ly9hbmNob3IuZm0vcy9hMTIxYTI0L3BvZGNhc3QvcnNz

    -- Other audio platforms can be found at https://anchor.fm/dayzerosec


    You can also join our discord: https://discord.gg/daTxTK9



    Previous 1 8 9 10 11 12 29 Next

    Related Podcasts

    Reply All

    1

    Reply All Games & Hobbies
    Inside VR & AR

    2

    Inside VR & AR Gadgets
    Note to Self

    3

    Note to Self News
    BrainStuff

    4

    BrainStuff Natural Sciences
    This Week in Tech (Audio)

    5

    This Week in Tech (Audio) News
    Hands-On Tech (Audio)

    6

    Hands-On Tech (Audio) Technology
    footer-logo

    Contact Us

    Toll Free: 844-670-7747

    Links

    • Home
    • Top Charts
    • Networks
    • Apps
    • Independents Podcasts
    • Podcast Advertising
    • Podcast News
    • Contact Us
    • About Us
    • Analytics & Insights

    Stay Connected

      Privacy, Terms of Use & Our Code of Ethics Protecting Content Creators Copyrights