Rephonic
Artwork for Open Source Security

Open Source Security

Josh Bressers
Security.txt
Kubernetes
Vulnerability Disclosure
EIDAS Regulation
Root Certificates
Skyrim
Bug Bounty
Responsible Disclosure
Cheating In Video Games
Surveillance
Modding
Gaming
Security
Red Hat
Dutch Government
History Of Security Practices
Notepad++
Cybersecurity
Digital Identity
Capcom

Open Source Security is a media project to help showcase and educate on open source security. Our goal is to give the community a platform educate both developers and users on how open source security works. There's a lot of good work happening that doesn't get attention because there's no marketing department behind it, they don't have a developer relations team posting on LinkedIn every two hour... more

PublishesWeeklyEpisodes503Founded9 years ago
Number of ListenersCategory
Technology

Listen to this Podcast

Artwork for Open Source Security

Latest Episodes

Josh chats with Charlie Eriksen, a security researcher at Aikido Security. We discuss the recent NPM supply chain attacks that affect hundreds of packages. Charlie shares his experiences dealing with recent security breaches, the challenges of mainta... more

In this episode, Josh and Otto dive into the world of Debian packaging, exploring the challenges of supply chain security and the importance of transparency in open source projects. They discuss Otto's blog post about the XZ backdoor and how it's a n... more

In this conversation, Josh speaks with Mikael Barbero, head of security at the Eclipse Foundation. They discuss the foundation's role in enhancing the security posture of open source projects, the importance of Software Bill of Materials (SBOMs), and... more

I chat with Joshua Rogers about a blog post he wrote as well as some bugs he submitted to the curl project. Joshua explains how he went searching for some AI tools to help find security bugs, and found out they can work, if you're a competent human. ... more

Key Facts

Accepts Guests
Contact Information
Podcast Host
Number of Listeners
Find out how many people listen to this podcast per episode and each month.

Similar Podcasts

People also subscribe to these shows.

Risky Business
Risky BusinessPatrick Gray
2.5 Admins
2.5 AdminsThe Late Night Linux Family
Smashing Security
Smashing SecurityGraham Cluley
LINUX Unplugged
LINUX UnpluggedJupiter Broadcasting

Recent Guests

Otto Kekäläinen
Independent consultant and Debian developer
Episode: Detecting XZ in Debian with Otto Kekäläinen
Andres Freud
Microbenchmarking expert
Episode: Detecting XZ in Debian with Otto Kekäläinen
Mikael Barbero
Head of Security at the Eclipse Foundation
Eclipse Foundation
Episode: Eclipse Foundation SBOMs with Mikael Barbero
Didier Barzin
CISO in a hospital in Luxembourg and creator of the Mercator project
Hospital in Luxembourg
Episode: Using Mercator to map assets with Didier Barzin
Andrey Smirnov
Engineering lead for Talos Linux at Sidero Labs
Sidero Labs
Episode: Talos Linux security with Andrey Smirnov
Cédric Bonhomme
Leader of developments on vulnerability lookup projects at Circle.
Circle
Episode: GCVE with Cédric Bonhomme and Alexandre Dulaunoy
Alexandre Dulaunoy
Head and security researcher at Circle.
Circle
Episode: GCVE with Cédric Bonhomme and Alexandre Dulaunoy
Daniel Thompson
CEO of Crab Nebula and an expert at Etsy
Crab Nebula
Episode: EU Regulations will change everything with Daniel Thompson
Philippe Ombredanne
Lead maintainer of About Code and Scan Code, co-founder of SPDX, creator of PackageURL.
Episode: Package URLs with Philippe Ombredanne

Hosts

Josh
Host known for his engaging discussions and expertise in open source security topics.
Unnamed Host
Co-host bringing additional perspectives to the open source security conversations.

Reviews

4.7 out of 5 stars from 432 ratings
  • Open source security and more

    Josh may no longer be with Kurt, he still makes a wicked podcast with a good concentrated dose of open source security.

    Apple Podcasts
    5
    LikeToTaste
    United Kingdom9 months ago
  • josh is insufferable

    I really enjoy Kurt’s perspective on stuff. Josh is insufferable. Not sure what complex he suffers from, but he can never be wrong and is always steamrolling Kurt.

    Apple Podcasts
    1
    letitsnowman
    United Statesa year ago
  • Great Podcast

    I don't work in this field; I'm strictly a security hobbyist. Found this podcast through archive.org, incidentally. Listened to 5 minutes of one episode and that was enough for me to subscribe. Thanks for a great podcast!

    Apple Podcasts
    5
    CornOnTheMacabre
    United Statesa year ago
  • Most frustrating show I continue listening to

    Like a meeting with no agenda it can be informative and entertaining and you’re never quite sure if you should attend again but usually you do.

    Apple Podcasts
    4
    cspeckrun
    United States2 years ago
  • The banter is spot on

    as of September 2023 be negative reviews may be from non-techs or squishy persons in general. I understand the humor, and every episode that I have listened to so far which is only half a dozen the hosts understand and get what they are talking about. having over 20 years both professionally and not in the information technology field I find myself quite amused at their observations, and more often than not not in agreement more than once an episode. If the hosts, however, ever come across this ... more

    Apple Podcasts
    4
    unbleachedbit
    United States2 years ago

Listeners Say

Key themes from listener reviews, highlighting what works and what could be improved about the show.

Audience appreciates the focus on practical insights and actionable advice for security practices.
Hosts have a good mix of humor and expertise, which resonates with listeners in the tech space.
Some critique the dynamic between hosts, with mixed feelings about presentation styles.

Chart Rankings

How this podcast ranks in the Apple Podcasts, Spotify and YouTube charts.

Apple Podcasts
#73
Israel/Technology
Apple Podcasts
#179
Finland/Technology
Apple Podcasts
#213
Poland/Technology
Apple Podcasts
#229
Russia/Technology
Apple Podcasts
#229
Belgium/Technology

Talking Points

Recent interactions between the hosts and their guests.

Eclipse Foundation SBOMs with Mikael Barbero
Q: How does the Eclipse Foundation ensure its stakeholders understand the significance of SBOMs?
Mikael explains that the CRA has some requirements that makes having SBOMs essential for projects to ensure compliance and security.
Using Mercator to map assets with Didier Barzin
Q: What does reporting with Mercator look like?
Reports can be generated that provide complete mappings of the information system and various inventories of applications and their statuses.
Using Mercator to map assets with Didier Barzin
Q: How do you handle equipment approval before it gets entered into Mercator?
There is a traditional ticketing system for approvals that happens before entering equipment into Mercator.
Using Mercator to map assets with Didier Barzin
Q: What does a world look like where you have Excel to track inventories?
It's challenging due to the need to manually verify the inventories and ensure they correspond to reality, which is not efficient.
Talos Linux security with Andrey Smirnov
Q: What does an upgrade look like in this immutable universe?
Upgrades involve pulling new boot assets over the network and rebooting the system.

Audience Metrics

Listeners, social reach, demographics and more for this podcast.

Listeners per Episode
Gender Skew
Location
Interests
Professions
Age Range
Household Income
Social Media Reach

Frequently Asked Questions About Open Source Security

What is Open Source Security about and what kind of topics does it cover?

Content focuses on open source security, highlighting cutting-edge practices and innovations within the community. Episodes feature expert guests sharing their insights on relevant topics, such as vulnerability management, supply chain security, and emerging technologies like AI in software development. The discussions aim to educate both developers and users on best practices in open source security, addressing pressing issues and providing actionable advice for navigating complex security landscapes. Notably, the podcast emphasizes the voices of practitioners and contributors in the field, aiming to foster community understanding of the critical work happening behind the scenes in open source security.

Where can I find podcast stats for Open Source Security?

Rephonic provides a wide range of podcast stats for Open Source Security. We scanned the web and collated all of the information that we could find in our comprehensive podcast database. See how many people listen to Open Source Security and access YouTube viewership numbers, download stats, audience demographics, chart rankings, ratings, reviews and more.

How many listeners does Open Source Security get?

Rephonic provides a full set of podcast information for three million podcasts, including the number of listeners. View further listenership figures for Open Source Security, including podcast download numbers and subscriber numbers, so you can make better decisions about which podcasts to sponsor or be a guest on. You will need to upgrade your account to access this premium data.

What are the audience demographics for Open Source Security?

Rephonic provides comprehensive predictive audience data for Open Source Security, including gender skew, age, country, political leaning, income, professions, education level, and interests. You can access these listener demographics by upgrading your account.

How many subscribers and views does Open Source Security have?

To see how many followers or subscribers Open Source Security has on Spotify and other platforms such as Castbox and Podcast Addict, simply upgrade your account. You'll also find viewership figures for their YouTube channel if they have one.

Which podcasts are similar to Open Source Security?

These podcasts share a similar audience with Open Source Security:

1. Risky Business
2. 2.5 Admins
3. Smashing Security
4. Risky Bulletin
5. LINUX Unplugged

How many episodes of Open Source Security are there?

Open Source Security launched 9 years ago and published 503 episodes to date. You can find more information about this podcast including rankings, audience demographics and engagement in our podcast database.

How do I contact Open Source Security?

Our systems regularly scour the web to find email addresses and social media links for this podcast. We scanned the web and collated all of the contact information that we could find in our podcast database. But in the unlikely event that you can't find what you're looking for, our concierge service lets you request our research team to source better contacts for you.

Where can I see ratings and reviews for Open Source Security?

Rephonic pulls ratings and reviews for Open Source Security from multiple sources, including Spotify, Apple Podcasts, Castbox, and Podcast Addict.

View all the reviews in one place instead of visiting each platform individually and use this information to decide if a show is worth pitching or not.

How do I access podcast episode transcripts for Open Source Security?

Rephonic provides full transcripts for episodes of Open Source Security. Search within each transcript for your keywords, whether they be topics, brands or people, and figure out if it's worth pitching as a guest or sponsor. You can even set-up alerts to get notified when your keywords are mentioned.

What guests have appeared on Open Source Security?

Recent guests on Open Source Security include:

1. Otto Kekäläinen
2. Andres Freud
3. Mikael Barbero
4. Didier Barzin
5. Andrey Smirnov
6. Cédric Bonhomme
7. Alexandre Dulaunoy
8. Daniel Thompson

To view more recent guests and their details, simply upgrade your Rephonic account. You'll also get access to a typical guest profile to help you decide if the show is worth pitching.

Find and pitch the right podcasts

We help savvy brands, marketers and PR professionals to find the right podcasts for any topic or niche. Get the data and contacts you need to pitch podcasts at scale and turn listeners into customers.
Try it free for 7 days