Rephonic
Artwork for Risky Bulletin

Risky Bulletin

Risky Business Media
Cybersecurity
China
Iran
Russia
Google
CISA
Ransomware
Microsoft
AI Agents
Cyber Operations
Artificial Intelligence
Cyber Espionage
United States
Cybercrime
Jaguar Land Rover
Apple
Anthropic
Meta
Poland
Cyber Security

Regular cybersecurity news updates from the Risky Business team...

PublishesDailyEpisodes100Founded4 years ago
Number of ListenersCategories
NewsTechnologyTech News

Listen to this Podcast

Artwork for Risky Bulletin

Latest Episodes

In this edition of Between Two Nerds Tom Uren and The Grugq talk about how NATO is set up to deter conventional conflict, and how that approach is fundamentally unsuited for ongoing, everyday cyber operations that are intended to confound adversaries... more

Almost 2,000 Arch Linux packages have been infected with malware in a supply chain attack, FISA surveillance powers expire for the first time since 2008, the FBI takes down a Chinese phishing service, and a major supply chain attack hits the WordPres... more

In this Risky Business sponsored interview, Catalin Cimpanu talks with Brandon Dixon, co-founder and CTO of Ent AI, about the company’s innovative use of local LLMs to track user behavior on the endpoint, and add context to suspicious events to detec... more

CISA changes federal patching rules due to AI, a House Republican was hacked by Russia, ShinyHunters go on an Oracle hacking spree, and npm will block auto-run install scripts by default. Show notes

* Risky Bulletin: In the age of AI, CISA change... more

Key Facts

Accepts Guests
Accepts Sponsors
Contact Information
Podcast Host
Number of Listeners
Find out how many people listen to this podcast per episode and each month.

Similar Podcasts

People also subscribe to these shows.

Recent Guests

Brandon Dixon
Co-founder and CTO of Ent AI
Ent AI
Episode: Sponsored: Ent on using AI to track human behavior on the endpoint
Dylan Ayrey
Founder and CEO of Truffle Security
Truffle Security
Episode: Sponsored: Inside CISA's disastrous secrets leak
Josh Devon
Guest from Sondera
Sondera
Episode: Sponsored: Teaching AI agents the rules of the road
Adam Pointon
CEO of Knocknoc
Knocknoc
Episode: Sponsored: Knocknoc built a Greynoise integration
James Kettle
Researcher, PortSwigger
PortSwigger
Episode: Sponsored: James Kettle built an AI hacker
Daf Stuttard
Co‑founder, PortSwigger
PortSwigger
Episode: Sponsored: James Kettle built an AI hacker
HD Moore
Founder and CEO of RunZero
RunZero
Episode: Sponsored: RunZero accidentally got good at OT
Sydney Marrone
Head of Threat Hunting at Nebulock
Nebulock
Episode: Sponsored: Nebulock on hunting shadow AI
David Getman
Representative from Corelight
Corelight
Episode: Sponsored: Corelight Agentic Triage helps defenders stay ahead

Hosts

Claire Aird
Host and frequent reader/reporter for the bulletin; recurring presenter.
James Wilson
Host and recurring co-host; appears on multiple segments.
Tom Uren
Host of Between Two Nerds; contributes policy/intelligence perspectives.

Reviews

4.8 out of 5 stars from 224 ratings
  • Claire is wonderful

    I find her speech extremely easy to understand, even at 1.5 (that’s my normal setting, and the Bulletin is over before I remember that😅).

    Not your problem I believe but although one thing she does well is phrase sentences and paragraphs, the AI transcription (which is remarkably accurate at the word and sentence levels) invariably breaks paragraphs one sentence too early. Maybe you can put a bug in Apple’s ear on this?

    Apple Podcasts
    5
    Standards Geek
    Japan6 months ago
  • Love the podcast!

    Podcast Addict
    5
    bmbeverst
    2 years ago
  • Professional and interesting

    Does exactly what it promises - a regular short summary of key cyber security news, with some fantastic analysis of the bigger events from experts in the field. Well worth your time!

    Apple Podcasts
    5
    Kel-nage
    United Kingdom2 years ago
  • Great podcast but…

    They produce great shows but it gets to be a hard listen when Patrick Gray always talks over everyone. He never lets them finish their thoughts without interjecting all the time. Very annoying to say the least. He clearly wants to be the star.

    Apple Podcasts
    3
    formersmoker1360
    United States2 years ago
  • Very informative

    Very informative podcast. Love the content. Thank you.

    Apple Podcasts
    5
    nyboi
    United States3 years ago

Listeners Say

Key themes from listener reviews, highlighting what works and what could be improved about the show.

Clear, accessible security updates with strong expert context.
Occasional guest dynamics noted; some listeners prefer listening without interruptions.
Widely praised for informative, concise cybersecurity content.
Regular coverage of policy and AI/regulatory topics is valuable for decision-makers.

Chart Rankings

How this podcast ranks in the Apple Podcasts, Spotify and YouTube charts.

Apple Podcasts
#25
United States/News/Tech News
Apple Podcasts
#16
United Kingdom/News/Tech News
Apple Podcasts
#32
Canada/News/Tech News
Apple Podcasts
#6
Australia/News/Tech News
Apple Podcasts
#26
Germany/News/Tech News
Apple Podcasts
#57
Italy/News/Tech News

Talking Points

Recent interactions between the hosts and their guests.

Sponsored: Understanding CI/CD attack paths
Q: What practical steps can CISOs take to mitigate these risks in CI/CD environments?
Start with visibility: map all repositories, identify which ones have high-risk configurations or exposed secrets, review branch protections and OIDC usage, and then gradually reduce over-permissioning; use tooling to highlight potentially dangerous workflows and credentials, and apply enforcement across adjacent identity systems to close trust gaps.
Sponsored: Understanding CI/CD attack paths
Q: How do you visualize and reduce these attack paths across GitHub and connected services?
The guests describe using Bloodhound to enumerate routes and expose the 'attack paths' across GitHub, AD, Okta, Azure, and more, leveraging it to prioritize remediation, enforce proper branch protections, and ensure OIDC and token usage are correctly scoped.
Sponsored: Understanding CI/CD attack paths
Q: What's an anatomy of GitHub attack? I mean, we see these acronyms like OIDC tokens and paths and things. Like, talk me through this.
The discussion frames GitHub attack paths as a sequence of initial access, privilege escalation, and lateral movement, with many entry points including exposed credentials, misconfigured permissions, and complex interactions between repos, workflows, and downstream services like Jira and Jenkins. Understanding these stages helps identify where to intervene and harden configurations.
Sponsored: Inside CISA's disastrous secrets leak
Q: What should listeners watch for from Truffle in the near term?
A continued emphasis on attribution mapping, broader monitoring across more platforms, and proactive key cleanup as supply chain attacks evolve, with an aim to spot and revoke exposed credentials before attackers can exploit them.
Sponsored: Inside CISA's disastrous secrets leak
Q: Why is it so hard to take this stuff down and disclose it effectively at scale?
Automating revocation at scale is hard because it can take production systems offline; you must balance notifying all affected parties, targeting the right keys, and avoiding service outages while ensuring keys are revoked or rotated.

Audience Metrics

Listeners, social reach, demographics and more for this podcast.

Listeners per Episode
Gender Skew
Location
Interests
Professions
Age Range
Household Income
Social Media Reach

Frequently Asked Questions About Risky Bulletin

What is Risky Bulletin about and what kind of topics does it cover?

A concise cybersecurity news bulletin that covers malware, software supply-chain incidents, policy debates, and significant industry actions. Episodes frequently weave in real-world investigations, law enforcement actions, and responses from major tech players, with sponsor integrations embedded in the intro or outro. Notable angles include open-source developments, governance discussions around AI safety and regulation, and practical implications for developers and enterprises relying on secure software ecosystems. The format tends to balance quick, accessible updates with deeper context from seasoned security experts, making it valuable for tech professionals who need timely, actionable insights without lengthy duologies. A standout trait... more

Where can I find podcast stats for Risky Bulletin?

Rephonic provides a wide range of podcast stats for Risky Bulletin. We scanned the web and collated all of the information that we could find in our comprehensive podcast database. See how many people listen to Risky Bulletin and access YouTube viewership numbers, download stats, audience demographics, chart rankings, ratings, reviews and more.

How many listeners does Risky Bulletin get?

Rephonic provides a full set of podcast information for three million podcasts, including the number of listeners. View further listenership figures for Risky Bulletin, including podcast download numbers and subscriber numbers, so you can make better decisions about which podcasts to sponsor or be a guest on. You will need to upgrade your account to access this premium data.

What are the audience demographics for Risky Bulletin?

Rephonic provides comprehensive predictive audience data for Risky Bulletin, including gender skew, age, country, political leaning, income, professions, education level, and interests. You can access these listener demographics by upgrading your account.

How many subscribers and views does Risky Bulletin have?

To see how many followers or subscribers Risky Bulletin has on Spotify and other platforms such as Castbox and Podcast Addict, simply upgrade your account. You'll also find viewership figures for their YouTube channel if they have one.

Which podcasts are similar to Risky Bulletin?

These podcasts share a similar audience with Risky Bulletin:

1. Risky Business
2. Risky Business Features
3. SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
4. CyberWire Daily
5. Smashing Security

How many episodes of Risky Bulletin are there?

Risky Bulletin launched 4 years ago and published 100 episodes to date. You can find more information about this podcast including rankings, audience demographics and engagement in our podcast database.

How do I contact Risky Bulletin?

Our systems regularly scour the web to find email addresses and social media links for this podcast. We scanned the web and collated all of the contact information that we could find in our podcast database. But in the unlikely event that you can't find what you're looking for, our concierge service lets you request our research team to source better contacts for you.

Where can I see ratings and reviews for Risky Bulletin?

Rephonic pulls ratings and reviews for Risky Bulletin from multiple sources, including Spotify, Apple Podcasts, Castbox, and Podcast Addict.

View all the reviews in one place instead of visiting each platform individually and use this information to decide if a show is worth pitching or not.

How do I access podcast episode transcripts for Risky Bulletin?

Rephonic provides full transcripts for episodes of Risky Bulletin. Search within each transcript for your keywords, whether they be topics, brands or people, and figure out if it's worth pitching as a guest or sponsor. You can even set-up alerts to get notified when your keywords are mentioned.

What guests have appeared on Risky Bulletin?

Recent guests on Risky Bulletin include:

1. Brandon Dixon
2. Dylan Ayrey
3. Josh Devon
4. Adam Pointon
5. James Kettle
6. Daf Stuttard
7. HD Moore
8. Sydney Marrone

To view more recent guests and their details, simply upgrade your Rephonic account. You'll also get access to a typical guest profile to help you decide if the show is worth pitching.

Find and pitch the right podcasts

We help savvy brands, marketers and PR professionals to find the right podcasts for any topic or niche. Get the data and contacts you need to pitch podcasts at scale and turn listeners into customers.
Try it free for 7 days