ABOUT THIS PODCAST 🔗

Update frequency:
weekly
Average audio length:
39 minutes
Guest interviews
English
United States
37 episodes
since March 15, 2026
episodic

LATEST EPISODE 🔗

In this episode, we break down four security stories:  A ShinyHunters PeopleSoft WAF bypass that hinges on one URL-encoded character  The arrest of an alleged ShinyHunters leader days before the group's FBI claim  Nearly 400,000 DC Medicaid records left readable behind a public report  OpenAI scra…

SEARCH PAST EPISODES

Search past episodes of Initial Access.

PREVIOUS EPISODES

This episode breaks down: A zero-click Exchange Server RCE triggered by a Visio attachment AI agents compromising online retailers for about $25 a target ShinyHunters' unverified claim that it breached the FBI OpenAI's six new misalignment disclosures Plus, we sit-down with Bishop Fox's Emilio Gal…
This episode covers an AI agent fleet that compressed two weeks of red team work into ten hours, a two-CVE chain giving attackers full admin on MikroTik routers, and a fraudulent government request that walked Revolut's verification checks straight out the door, plus a sit-down with Bishop Fox's Jo…
Bishop Fox's Managed Security Services team returns with Sergio Villegas, Richard Brown, and Kendrick Urbaniak covering patch volume that no longer fits a normal cycle, threat intelligence with no real prioritization standard, and how to actually scope a vulnerability and intel program.    Also men…
This episode covers a dark web marketplace selling 150+ million driver's license scans traced to one identity-verification vendor, McKesson's breach after a ShinyHunters vishing attack into Snowflake and Salesforce, Berlin's refusal to pay a ransomware group, and a suspected Iran-linked attack that…
This episode covers an inaudible browser script fingerprinting AliExpress shoppers, AI-generated exploit scripts lowering the bar on Siemens PLC attacks, and researchers reviving an expired Visa card by rewriting one unsigned field, plus a Black Hat sit-down with InfoLock's Kraig Faulkner on why AI…
A malicious MCP server tricks AI coding agents into leaking secrets, a three-year-old GeoServer bug resurfaces as a zero day, a hardware wallet maker's shipping partner exposes thousands of physical addresses, and a threat actor sells Fortune 500 org charts pulled from stolen Azure credentials.    …
This week's episode is different. No headlines, no CVEs. Just a live sit-down from Bishop Fox's RedTail meetup at DEF CON, with Bishop Fox's John Untz, Richard Brown, and Billy Giles, joined by Matt Bryant of OpenAI's Red Team, talking through what's signal vs. noise on the AI hype cycle, where AI …
This is the debut episode from Bishop Fox's Managed Security Services team — not new headlines, but three stories the show already covered, revisited through the lens of what an operator actually does about them. First, JadePuffer, the ransomware Sysdig called the first fully autonomous, LLM-driven…
This episode covers a ChatGPT flaw that let one link spin up a fully authorized rogue AI agent, GitHub's public bug bounty cuts, Origin Energy's second breach in months, and 1,100+ AI lab employees asking Washington to help pace AI development, plus a sit-down with Bishop Fox's Dan Petro on catchin…
Disclaimer: The podcast and artwork embedded on this page are from Bishop Fox, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.