
Leaky Weekly
Claim This Podcastby Flare
Podcast Authority
Beta
Podcast Overview
<p>There’s so much happening in the world of cybercrime, it’s hard to keep up for anyone, including security practitioners. Dive in with security researcher Nick Ascoli as he covers the most pressing stories on data leaks, cybercrime, and the dark web from the last week or so.</p><p>Tune in with short and sweet episodes in about 15 minutes.</p>
Language
🇺🇲
Publishing Since
8/7/2024
Unlock The Full Podcast Authority Score Report
See how your podcast performs across key metrics
Podcast Authority
Beta
Recommendations available
Unlock the full report to see detailed tips
Recommendations available
Unlock the full report to see detailed tips
Unlock comprehensive insights including:
- • YouTube presence analysis
- • Social media reach metrics
- • RSS compliance scoring
- • Podcast 2.0 features
- • Technical standards
Detailed Analytics
- Complete breakdown of all 19 authority metrics
- Personalized recommendations for each metric
- Industry benchmarks and comparisons
- Technical RSS feed analysis and compliance scoring
Growth Strategies
- Step-by-step action plans for improvement
- Quick wins to boost your score immediately
- Pro tips from successful podcasters
See how your show performs across every key metric
High authority scores make your podcast more attractive to industry leaders and influencers who want to appear on credible shows.
Sponsors look for podcasts with proven authority and engagement. Your score demonstrates your podcast's value to potential partners.
Understanding your strengths and weaknesses helps you make data-driven decisions to expand your listener base effectively.
Reach the team behind Leaky Weekly
Verified contact details for this show aren't on file yet — sign up to get notified when they land.
Recent Episodes

December 11, 2025
React2Shell (CVE-2025-55182), 41% of Infostealer Victims Infected by Video Game Files
<p>On this episode of Leaky Weekly, host and security researcher Nick Ascoli discusses findings from Flare Research including:</p><ul><li>React2Shell (CVE-2025-55182) vulnerability and threat actor chatter</li><li>Findings from analysis of 50,000 stealer log infections</li></ul><p>He also mentions instructions for a giveaway for CTF players who would like another shot at unlocking a shirt from a past challenge…</p><p></p><p>Here are the resources on the stories:</p><ul><li>React2Shell Detailed Report (Lachlan Davis) <a target="_blank" rel="noopener noreferrer nofollow" href="http://react2shell.com">http://react2shell.com</a></li><li>React2Shell (CVE-2025-55182): A Critical RCE in React Server Components (Flare): <a target="_blank" rel="noopener noreferrer nofollow" href="https://flare.io/learn/resources/blog/react2shell-cve-2025-55182/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E18">https://flare.io/learn/resources/blog/react2shell-cve-2025-55182/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E18</a></li><li>How Gamers Became Cybercrime’s Favorite Target: Analysis of 50,000 Infostealer Infections (Flare): <a target="_blank" rel="noopener noreferrer nofollow" href="https://flare.io/learn/resources/cybercrime-favorite-target-gamers/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E18">https://flare.io/learn/resources/cybercrime-favorite-target-gamers/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E18</a></li></ul><p></p><p>Brought to you by Flare, Threat Exposure Management solution and industry-leading dataset on cybercrime that integrates into your security program in 30 minutes. Check out what’s on the dark web (and more) about your organization: <a target="_blank" rel="noopener noreferrer nofollow" href="https://try.flare.io/free-trial/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E18">https://try.flare.io/free-trial/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E18</a></p><p></p><p>Check out Flare Academy: <a target="_blank" rel="noopener noreferrer nofollow" href="https://flare.io/flare-academy/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E18">https://flare.io/flare-academy/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E18</a></p><ul><li>Our free training series led by experts on critical topics such as threat intelligence, operational security, and advanced investigation techniques (earn CPE credits towards cybersecurity certifications)</li><li>Our Discord community is a space to learn from and with cybersecurity professionals (including Nick!) and students, check out previous training resources, and keep up with upcoming training</li></ul>

November 6, 2025
Attack on Identity: Dissecting Microsoft’s 2025 Digital Defense Report
<p>On this episode of Leaky Weekly, host and security researcher Nick Ascoli and Flare’s Identity Security Expert Mike Iaconianni dig into their responses and questions to the Microsoft 2025 Digital Defense Report.</p><p>Here are the resources on the stories:</p><ul><li>Microsoft Digital Defense Report 2025 <a target="_blank" rel="noopener noreferrer nofollow" href="https://www.microsoft.com/en-us/corporate-responsibility/cybersecurity/microsoft-digital-defense-report-2025/">https://www.microsoft.com/en-us/corporate-responsibility/cybersecurity/microsoft-digital-defense-report-2025/</a></li><li>Screenshot.jpg (When They Got Hacked) by John Hammond <a target="_blank" rel="noopener noreferrer nofollow" href="https://www.youtube.com/watch?v=4h-bCHVFOs4">https://www.youtube.com/watch?v=4h-bCHVFOs4</a></li></ul><p>Brought to you by Flare, Threat Exposure Management solution and industry-leading dataset on cybercrime that integrates into your security program in 30 minutes. <a target="_blank" rel="noopener noreferrer nofollow" href="https://try.flare.io/free-trial/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E16">Check out what’s on the dark web (and more) about your organization</a>.</p><p>Check out <a target="_blank" rel="noopener noreferrer nofollow" href="https://flare.io/flare-academy/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E16">Flare Academy</a>: </p><ul><li>Our free training series led by experts on critical topics such as threat intelligence, operational security, and advanced investigation techniques (earn CPE credits towards cybersecurity certifications)</li><li>Our Discord community is a space to learn from and with cybersecurity professionals (including Nick!) and students, check out previous training resources, and keep up with upcoming training </li></ul>

October 8, 2025
NPM Supply Chain Attack, Fake Europol Bounty, and Operation Secure
<p>On this episode of Leaky Weekly, host and security researcher Nick Ascoli covers the NPM supply chain attack, fake Europol bounty, and Operation Secure.</p><p>Here are the resources on the stories:</p><ul><li><a target="_blank" rel="noopener noreferrer nofollow" href="https://cointelegraph.com/news/large-scale-npm-attack-compromised-less-50-dollars">Largest NPM attack in crypto history stole less than $50: SEAL (Cointelgraph)</a></li><li><a target="_blank" rel="noopener noreferrer nofollow" href="https://www.paloaltonetworks.com/blog/cloud-security/npm-supply-chain-attack/">Breakdown: Widespread npm Supply Chain Attack Puts Billions of Weekly Downloads at Risk (Palo Alto Networks)</a></li><li><a target="_blank" rel="noopener noreferrer nofollow" href="https://www.youtube.com/watch?v=QVqIx-Y8s-s">The largest supply-chain attack ever… (Fireship, The Code Report)</a></li><li><a target="_blank" rel="noopener noreferrer nofollow" href="https://www.opswat.com/blog/2-billion-npm-downloads-at-risk-from-crypto-malware-a-wake-up-call-for-open-source-supply-chain-security">2 Billion npm Downloads at Risk From Crypto Malware: A Wake-Up Call for Open-Source Supply Chain Security (OPSWAT)</a> </li><li><a target="_blank" rel="noopener noreferrer nofollow" href="https://thehackernews.com/2025/09/40-npm-packages-compromised-in-supply.html">Self-Replicating Worm Hits 180+ npm Packages to Steal Credentials in Latest Supply Chain Attack (The Hacker News)</a></li><li><a target="_blank" rel="noopener noreferrer nofollow" href="https://www.bleepingcomputer.com/news/security/europol-confirms-that-qilin-ransomware-reward-is-fake/">Europol confirms $50,000 Qilin ransomware reward is fake (BleepingComputer)</a></li><li><a target="_blank" rel="noopener noreferrer nofollow" href="https://www.interpol.int/en/News-and-Events/News/2025/20-000-malicious-IPs-and-domains-taken-down-in-INTERPOL-infostealer-crackdown">20,000 malicious IPs and domains taken down in INTERPOL infostealer crackdown (INTERPOL)</a></li><li><a target="_blank" rel="noopener noreferrer nofollow" href="https://www.trendmicro.com/en_us/research/25/f/interpol-operation-secure.html">Operation Secure: Trend Micro's Threat Intelligence Fuels INTERPOL's Infostealer Infrastructure Takedown (Trend Micro)</a></li></ul><p>Brought to you by Flare, Threat Exposure Management solution and industry-leading dataset on cybercrime that integrates into your security program in 30 minutes. <a target="_blank" rel="noopener noreferrer nofollow" href="https://try.flare.io/free-trial/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E14">Check out what’s on the dark web (and more) about your organization</a>.</p><p>Check out <a target="_blank" rel="noopener noreferrer nofollow" href="https://flare.io/flare-academy/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E14">Flare Academy</a>: </p><ul><li>Our free training series led by experts on critical topics such as threat intelligence, operational security, and advanced investigation techniques (earn CPE credits towards cybersecurity certifications)</li><li>Our Discord community is a space to learn from and with cybersecurity professionals (including Nick!) and students, check out previous training resources, and keep up with upcoming training </li></ul>
15 total episodes available
Recent guests on Leaky Weekly
Guests from recent episodes — sign up to see every guest that has ever appeared on this show.
Tammy Harper
Guest
Deep-dive analytics for Leaky Weekly
Frequently asked questions
Have a different question and can't find the answer you're looking for? Reach out to our support team by sending us an email and we'll get back to you as soon as we can.
- What is Leaky Weekly?
<p>There’s so much happening in the world of cybercrime, it’s hard to keep up for anyone, including security practitioners. Dive in with security researcher Nick Ascoli as he covers the most pressing stories on data leaks, cybercrime, and the dark web from the last week or so.</p><p>Tune in with short and sweet episodes in about 15 minutes.</p> - How often does this podcast release new episodes?
This podcast updates bi-weekly.
- Where can I listen to this podcast?
This podcast is available on 4 platforms including Apple Podcasts, Spotify, and more. You can also use the RSS feed directly.
- Does this podcast accept guests?
Yes, this podcast regularly features guests.
Legal Disclaimer
Pod Engine is not affiliated with, endorsed by, or officially connected with any of the podcasts displayed on this platform. We operate independently as a podcast discovery and analytics service.
All podcast artwork, thumbnails, and content displayed on this page are the property of their respective owners and are protected by applicable copyright laws. This includes, but is not limited to, podcast cover art, episode artwork, show descriptions, episode titles, transcripts, audio snippets, and any other content originating from the podcast creators or their licensors.
We display this content under fair use principles and/or implied license for the purpose of podcast discovery, information, and commentary. We make no claim of ownership over any podcast content, artwork, or related materials shown on this platform. All trademarks, service marks, and trade names are the property of their respective owners.
While we strive to ensure all content usage is properly authorized, if you are a rights holder and believe your content is being used inappropriately or without proper authorization, please contact us immediately at hey@podengine.ai for prompt review and appropriate action, which may include content removal or proper attribution.
By accessing and using this platform, you acknowledge and agree to respect all applicable copyright laws and intellectual property rights of content owners. Any unauthorized reproduction, distribution, or commercial use of the content displayed on this platform is strictly prohibited.