

Leaky Weekly
Hosted by Nick Ascoli · Flare
5.0from 18 ratings
- 15
- Episodes
- 18
- Ratings
- Weekly
- Cadence
- 2024
- First episode
About Leaky Weekly
There’s so much happening in the world of cybercrime, it’s hard to keep up for anyone, including security practitioners. Dive in with security researcher Nick Ascoli as he covers the most pressing stories on data leaks, cybercrime, and the dark web from the last week or so. Tune in with short and sweet episodes in about 15 minutes.
- Publisher
- Flare
- Category
- news · technology
- Language
- en
- Explicit
- No
- First episode
- 7 Aug 2024
- Latest episode
- 11 Dec 2025
Latest episodes
15 episodes in the feed.

11 Dec 2025
React2Shell (CVE-2025-55182), 41% of Infostealer Victims Infected by Video Game Files
On this episode of Leaky Weekly, host and security researcher Nick Ascoli discusses findings from Flare Research including: React2Shell (CVE-2025-55182) vulnerability and threat actor chatter Findings from analysis of 50,000 stealer log infections He also mentions instructions for a giveaway for CTF players who would like another shot at unlocking a shirt from a past challenge… Here are the resources on the stories: React2Shell Detailed Report (Lachlan Davis) http://react2shell.com (http://react2shell.com) React2Shell (CVE-2025-55182): A Critical RCE in React Server Components (Flare): https://flare.io/learn/resources/blog/react2shell-cve-2025-55182/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E18 (https://flare.io/learn/resources/blog/react2shell-cve-2025-55182/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E18) How Gamers Became Cybercrime’s Favorite Target: Analysis of 50,000 Infostealer Infections (Flare): https://flare.io/learn/resources/cybercrime-favorite-target-gamers/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E18 (https://flare.io/learn/resources/cybercrime-favorite-target-gamers/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E18) Brought to you by Flare, Threat Exposure Management solution and industry-leading dataset on cybercrime that integrates into your security program in 30 minutes. Check out what’s on the dark web (and more) about your organization: https://try.flare.io/free-trial/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E18 (https://try.flare.io/free-trial/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E18) Check out Flare Academy: https://flare.io/flare-academy/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E18 (https://flare.io/flare-academy/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E18) Our free training series led by experts on critical topics such as threat intelligence, operational security, and advanced investigation techniques (earn CPE credits towards cybersecurity certifications) Our Discord community is a space to learn from and with cybersecurity professionals (including Nick!) and students, check out previous training resources, and keep up with upcoming training

6 Nov 2025
Attack on Identity: Dissecting Microsoft’s 2025 Digital Defense Report
On this episode of Leaky Weekly, host and security researcher Nick Ascoli and Flare’s Identity Security Expert Mike Iaconianni dig into their responses and questions to the Microsoft 2025 Digital Defense Report. Here are the resources on the stories: Microsoft Digital Defense Report 2025 https://www.microsoft.com/en-us/corporate-responsibility/cybersecurity/microsoft-digital-defense-report-2025/ (https://www.microsoft.com/en-us/corporate-responsibility/cybersecurity/microsoft-digital-defense-report-2025/) Screenshot.jpg (When They Got Hacked) by John Hammond https://www.youtube.com/watch?v=4h-bCHVFOs4 (https://www.youtube.com/watch?v=4h-bCHVFOs4) Brought to you by Flare, Threat Exposure Management solution and industry-leading dataset on cybercrime that integrates into your security program in 30 minutes. Check out what’s on the dark web (and more) about your organization (https://try.flare.io/free-trial/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E16). Check out Flare Academy (https://flare.io/flare-academy/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E16): Our free training series led by experts on critical topics such as threat intelligence, operational security, and advanced investigation techniques (earn CPE credits towards cybersecurity certifications) Our Discord community is a space to learn from and with cybersecurity professionals (including Nick!) and students, check out previous training resources, and keep up with upcoming training

8 Oct 2025
NPM Supply Chain Attack, Fake Europol Bounty, and Operation Secure
On this episode of Leaky Weekly, host and security researcher Nick Ascoli covers the NPM supply chain attack, fake Europol bounty, and Operation Secure. Here are the resources on the stories: Largest NPM attack in crypto history stole less than $50: SEAL (Cointelgraph) (https://cointelegraph.com/news/large-scale-npm-attack-compromised-less-50-dollars) Breakdown: Widespread npm Supply Chain Attack Puts Billions of Weekly Downloads at Risk (Palo Alto Networks) (https://www.paloaltonetworks.com/blog/cloud-security/npm-supply-chain-attack/) The largest supply-chain attack ever… (Fireship, The Code Report) (https://www.youtube.com/watch?v=QVqIx-Y8s-s) 2 Billion npm Downloads at Risk From Crypto Malware: A Wake-Up Call for Open-Source Supply Chain Security (OPSWAT) (https://www.opswat.com/blog/2-billion-npm-downloads-at-risk-from-crypto-malware-a-wake-up-call-for-open-source-supply-chain-security) Self-Replicating Worm Hits 180+ npm Packages to Steal Credentials in Latest Supply Chain Attack (The Hacker News) (https://thehackernews.com/2025/09/40-npm-packages-compromised-in-supply.html) Europol confirms $50,000 Qilin ransomware reward is fake (BleepingComputer) (https://www.bleepingcomputer.com/news/security/europol-confirms-that-qilin-ransomware-reward-is-fake/) 20,000 malicious IPs and domains taken down in INTERPOL infostealer crackdown (INTERPOL) (https://www.interpol.int/en/News-and-Events/News/2025/20-000-malicious-IPs-and-domains-taken-down-in-INTERPOL-infostealer-crackdown) Operation Secure: Trend Micro's Threat Intelligence Fuels INTERPOL's Infostealer Infrastructure Takedown (Trend Micro) (https://www.trendmicro.com/en_us/research/25/f/interpol-operation-secure.html) Brought to you by Flare, Threat Exposure Management solution and industry-leading dataset on cybercrime that integrates into your security program in 30 minutes. Check out what’s on the dark web (and more) about your organization (https://try.flare.io/free-trial/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E14). Check out Flare Academy (https://flare.io/flare-academy/?utm_source=Social&utm_medium=Flare+Podcast&utm_campaign=Leaky+Weekly&utm_content=E14): Our free training series led by experts on critical topics such as threat intelligence, operational security, and advanced investigation techniques (earn CPE credits towards cybersecurity certifications) Our Discord community is a space to learn from and with cybersecurity professionals (including Nick!) and students, check out previous training resources, and keep up with upcoming training

10 Sept 2025
Spilling the Tea on the Tea App and TeaOnHer, and Salesforce Tenant Breaches
On this episode of Leaky Weekly, host and security researcher Nick Ascoli spills the tea on data leaks from Tea and TeaOnHer, as well as attacks on Salesforce tenants. Here are the resources on the stories: The Cost of a Call: From Voice Phishing to Data Extortion (Google Threat Intelligence Group) (https://cloud.google.com/blog/topics/threat-intelligence/voice-phishing-data-extortion) ShinyHunters behind Salesforce data theft attacks at Qantas, Allianz Life, and LVMH (BleepingComputer) (https://www.bleepingcomputer.com/news/security/shinyhunters-behind-salesforce-data-theft-attacks-at-qantas-allianz-life-and-lvmh/) Hackers steal images from women's dating safety app that vets men (BBC) (https://www.bbc.com/news/articles/c7vl57n74pqo) Tea app leak worsens with second database exposing user chats (BleepingComputer) (https://www.bleepingcomputer.com/news/security/tea-app-leak-worsens-with-second-database-exposing-user-chats/) TeaOnHer, a rival Tea app for men, is leaking users’ personal data and driver’s licenses (TechCrunch) (https://techcrunch.com/2025/08/06/a-rival-tea-app-for-men-is-leaking-its-users-personal-data-and-drivers-licenses/) Brought to you by Flare, Threat Exposure Management solution and industry-leading dataset on cybercrime that integrates into your security program in 30 minutes. Check out what’s on the dark web (and more) about your organization (https://try.flare.io/free-trial/?utm_source=Social&utm_medium=RSS&utm_campaign=Leaky+Weekly&utm_content=E13). Flare now offers Flare Academy training, which is our (free!) training series led by experts that cover critical topics such as threat intelligence, operational security, and advanced investigation techniques. You can also earn CPE credits toward your cybersecurity certifications. Sign up for your next training here (https://flare.io/flare-academy/). Join the Flare Academy Community Discord (https://try.flare.io/flare-community/?utm_campaign=Leaky%20Weekly&utm_source=podcast&utm_medium=social) to keep up with upcoming training, check out previous training resources, chat with cybersecurity professionals (including Nick!), and more.

27 Aug 2025
Use a Stealer Log, Go to Prison (Part 2): PowerSchool and Snowflake Tenant Breach Arrests
On this episode of Leaky Weekly, host and security researcher Nick Ascoli gets into stealer logs and arrests in the last few weeks of the threat actors who targeted PowerSchool and Snowflake tenants. This is part 2 of a 2 part series, Use a Stealer Log, Go to Prison. Missed part 1? Check it out here on Apple Podcasts (https://podcasts.apple.com/us/podcast/use-a-stealer-log-go-to-prison-part-1-intelbroker/id1773371926?i=1000721838443) or Spotify (https://open.spotify.com/episode/5phQeQy455kI1OMjWQD5wp?si=2R37FO2SSEeGrOiGthiDug). Here are the resources on the stories: Cybersecurity Incident Notice (PowerSchool) (https://www.powerschool.com/security/sis-incident/) Matthew Lane Plea Deal (Thomson Reuters) (https://fingfx.thomsonreuters.com/gfx/legaldocs/egpblxqnnpq/05202025lane_plea.pdf) United States v. Matthew D. Lane (U.S. Department of Justice) (https://www.justice.gov/d9/2025-05/us_v._matthew_lane_-_information.pdf) Update on New PowerSchool Data Breach and Ongoing Protection Measures (Union Intermediate School, Sampson County Schools) (https://www.sampson.k12.nc.us/o/uis/article/2200002) A hacker's ransom: Inside the cyberattack that compromised NC student and teacher records (WRAL) (https://www.wral.com/story/a-hacker-s-ransom-inside-the-cyberattack-that-compromised-nc-student-and-teacher-records/21989281/) Leaky Weekly: PowerSchool Hack; Takedowns & Arrests & Leaks, Oh My!; and ITRC Breach Report (Flare) (https://www.youtube.com/watch?v=YjejzMa0AH4&list=PLUERIuQVl_9PAUwdsrt9t1r2WDbn41taH) Hacker in Snowflake Extortions May Be a U.S. Soldier (Krebs on Security) (https://krebsonsecurity.com/2024/11/hacker-in-snowflake-extortions-may-be-a-u-s-soldier/) United States v. Moucka (CourtListener) (https://www.courtlistener.com/docket/69362701/1/united-states-v-moucka/) Former U.S. Soldier Pleads Guilty to Hacking and Extortion Scheme Involving Telecommunications Companies (U.S. Department of Justice) (https://www.justice.gov/opa/pr/former-us-soldier-pleads-guilty-hacking-and-extortion-scheme-involving-telecommunications) Leaky Weekly: Arrests, RedLine & META Infrastructure Takedown, and MOVEit Leaks (Flare) (https://www.youtube.com/watch?v=-RrziD4BNys) Brought to you by Flare, the world's easiest to use and most comprehensive cybercrime database that integrates into your security program in 30 minutes. Check out what’s on the dark web (and more) about your organization (https://try.flare.io/free-trial/?utm_source=Social&utm_medium=RSS&utm_campaign=Leaky+Weekly&utm_content=E12). Flare now offers Flare Academy training, which is our (free!) training series led by experts that cover critical cybersecurity topics. Check out Flare Academy (https://flare.io/flare-academy/) to keep up with upcoming trainings, check out previous training resources, chat with cybersecurity professionals (including Nick!) in the Flare Academy Community Discord, and more.

13 Aug 2025
Use a Stealer Log, Go to Prison (Part 1): IntelBroker and Scattered Spider(?) Arrests
On this episode of Leaky Weekly, host and security researcher Nick Ascoli gets into stealer logs and arrests in the last few weeks of threat actor IntelBroker and threat actors who targeted retail companies in the U.K. using the DragonForce encryptor. This is part 1 of a 2 part series, Use a Stealer Log, Go to Prison. Stay tuned for part 2, coming soon! Here are the resources on the stories: 2025 Data Breach Investigations Report (DBIR) (Verizon (https://www.verizon.com/business/resources/reports/dbir/)) The Rising Role of Stolen Credentials in Cybercrime: 3 Insights from the 2025 Verizon DBIR (Flare) (https://flare.io/learn/resources/blog/stolen-credentials-in-cybercrime-insights-2025-verizon-dbir/) IntelBroker Threat Actor (TheSecMaster) (https://thesecmaster.com/blog/intelbroker-threat-actor) Following the Bitcoin Trail: The IntelBroker Takedown (Chainalysis) (https://www.chainalysis.com/blog/breachforum-intelbroker-takedown-french-cybercrime-unit-july-2025/) United States of America v. Kai West (“IntelBroker,” “Kyle Northern”) Complaint (U.S. Department of Justice) (https://www.justice.gov/usao-sdny/media/1404616/dl?inline) Four arrested in connection with M&S and Co-op cyber-attacks (BBC) (https://www.bbc.com/news/articles/cwykgrv374eo) Retail cyber attacks: NCA arrest four for attacks on M&S, Co-op and Harrods (National Crime Agency) (https://www.nationalcrimeagency.gov.uk/news/retail-cyber-attacks-nca-arrest-four-for-attacks-on-m-s-co-op-and-harrods) UK police arrest four over cyberattacks on M&S, Co-op and Harrods (Reuters) (https://www.reuters.com/business/retail-consumer/uk-police-arrest-four-connection-with-ms-co-op-cyberattacks-2025-07-10/) Inside DragonForce, the Group Tied to M&S, Co-op and Harrods Hacks (Infosecurity Magazine) (https://www.infosecurity-magazine.com/news/dragonforce-goup-ms-coop-harrods/) Inside the Dragon: DragonForce Ransomware Group (Group-IB) (https://www.group-ib.com/blog/dragonforce-ransomware/) Brought to you by Flare, the world's easiest to use and most comprehensive cybercrime database that integrates into your security program in 30 minutes. Check out what’s on the dark web (and more) about your organization (https://try.flare.io/free-trial/?utm_source=Social&utm_medium=RSS&utm_campaign=Leaky+Weekly&utm_content=E11). Flare now offers Flare Academy training, which is our (free!) training series led by experts that cover critical topics such as threat intelligence, operational security, and advanced investigation techniques. You can also earn CPE credits toward your cybersecurity certifications. Sign up for your next training here (https://flare.io/trainings/). Join the Flare Academy Community Discord (https://try.flare.io/flare-community/?utm_campaign=Leaky%20Weekly&utm_source=podcast&utm_medium=social) to keep up with upcoming training, check out previous training resources, chat with cybersecurity professionals (including Nick!), and more.

2 Jul 2025
LockBit's Fall and the Rise of Ransomware Chaos 2025 with Tammy Harper
Senior Threat Intelligence Researcher Tammy Harper discusses LockBit's collapse and the emergence of RansomHub with host Nick Ascoli, highlighting the increasing chaos in the ransomware landscape in this interview.

18 Jun 2025
To Extort or Not to Extort: Ransomware Group Tactics in 2025 with Tammy Harper
Senior Threat Intelligence Researcher Tammy Harper discusses with host Nick Ascoli how ransomware groups adapt their tactics based on previous data breaches, in this interview.

3 Jun 2025
Committing Cybercrime Gets 5% Easier Each Year?: Ransomware Recap 2024-2025 with Tammy Harper
Senior Threat Intelligence Researcher Tammy Harper informs host Nick Ascoli about the ransomware ecosystem, focusing on the impact of 2024 events on the threat landscape of 2025 in this interview.

20 Feb 2025
PowerSchool Hack; Takedowns and Arrests and Leaks, Oh My!; and ITRC Breach Report Findings
On this first episode of Leaky Weekly after our winter break, host and security researcher Nick Ascoli covers recent events in the cybercrime space the PowerSchool hack, Cracked & Nulled takedown & arrests, Otelier data leak, DeepSeek data leak, and Identity Theft Resource Center (ITRC) breach report findings. Here are the resources Nick mentions: Children’s data hacked after school software firm missed basic security step, internal report says (NBC News) (https://www.nbcnews.com/tech/security/powerschool-hack-data-breach-protect-student-school-teacher-safe-rcna189029) PowerSchool Cybersecurity Incident (PowerSchool) (https://www.powerschool.com/security/sis-incident/) AT&T Paid a Hacker $370,000 to Delete Stolen Phone Records (WIRED) (https://www.wired.com/story/atandt-paid-hacker-300000-to-delete-stolen-call-records/) FBI has warned agents it believes hackers stole their call logs (Fortune) (https://fortune.com/2024/04/01/att-70-million-users-social-security-numbers-dark-web-you-affected/) Law enforcement takes down two largest cybercrime forums in the world (Europol) (https://www.europol.europa.eu/media-press/newsroom/news/law-enforcement-takes-down-two-largest-cybercrime-forums-in-world) Otelier data breach exposes info, hotel reservations of millions (Bleeping Computer) (https://www.bleepingcomputer.com/news/security/otelier-data-breach-exposes-info-hotel-reservations-of-millions/) Wiz Research Uncovers Exposed DeepSeek Database Leaking Sensitive Information, Including Chat History (Wiz) (https://www.wiz.io/blog/wiz-research-uncovers-exposed-deepseek-database-leak) ITRC Annual Data Breach Report (Identity Theft Resource Center) (https://www.idtheftcenter.org/publication/2024-data-breach-report/) Canadian Man Arrested in Snowflake Data Extortions (Krebs On Security) (https://krebsonsecurity.com/2024/11/canadian-man-arrested-in-snowflake-data-extortions/) Brought to you by Flare, the world's easiest to use and most comprehensive cybercrime database that integrates into your security program in 30 minutes. Flare now offers Flare Academy (https://flare.io/learn/resources/blog/flare-academy-is-here/), which can elevate your cybersecurity career. Our (free!) training series are led by experts that cover critical topics such as threat intelligence, operational security, and advanced investigation techniques. You can also earn CPE credits toward your cybersecurity certifications. Join the Flare Academy Community Discord (https://try.flare.io/flare-community/?utm_campaign=Leaky%20Weekly&utm_source=podcast&utm_medium=social) to keep up with upcoming training, check out previous training resources, chat with cybersecurity professionals (including Nick!), and more.

3 Dec 2024
Arrests, RedLine & META Infrastructure Takedown, and MOVEit Leaks
Security researcher Nick Ascoli breaks down recent cybercrime news, including high-profile arrests, takedowns, and massive data leaks, exposing the intricate web of online threats.

17 Oct 2024
Dark Web Forum Arrests, Columbus Ransomware Attack Updates, and American Background Info Data Leak
On this latest episode of Leaky Weekly, host and security researcher Nick Ascoli covers recent news in the cybercrime space such as the LockBit arrests, an update to the Columbus ransomware attack, Bohemia arrests, and MC2 data leak. Here are the resources Nick mentions: LockBit power cut: four new arrests and financial sanctions against affiliates (Europol) (https://www.europol.europa.eu/media-press/newsroom/news/lockbit-power-cut-four-new-arrests-and-financial-sanctions-against-affiliates) Evil Corp: Behind the Screens (National Crime Agency) (https://www.nationalcrimeagency.gov.uk/who-we-are/publications/732-evil-corp-behind-the-screens/file) LockBit Ransomware and Evil Corps Members Arrested and Sanctioned in Joint Global Effort (The Hacker News) (https://thehackernews.com/2024/10/lockbit-ransomware-and-evil-corp.html) LockBit Links to Evil Corp (Secureworks) (https://www.secureworks.com/blog/lockbit-links-to-evil-corp) Dark Web Drama: LockBit and the AN Security Breach Saga (Flare) (https://flare.io/learn/resources/dark-web-drama-lockbit-and-the-an-security-breach-saga/) Columbus pledges $3 million more to fix data breach (NBC4i) (https://www.nbc4i.com/news/local-news/columbus/city-hack/columbus-pledges-3-million-more-to-fix-data-breach/) Internationale actie tegen werelds' grootste darkweb-markt 'Bohemia/ Cannabia' (Politie) (https://www.politie.nl/nieuws/2024/oktober/8/11-internationale-actie-tegen-werelds-grootste-darkweb-markt-bohemia-cannabia.html) One-third of the US population’s background info is now public (Cybernews) (https://cybernews.com/security/us-mc2-background-check-data-leak/) Brought to you by Flare, the world's easiest to use and most comprehensive cybercrime database that integrates into your security program in 30 minutes. Sign up for our free trial here (https://try.flare.io/free-trial/?utm_source=Organic+social&utm_medium=Spotify&utm_id=Leaky+Weekly).

19 Sept 2024
AWS Takeover Campaign, Ransomware Attack on Columbus, and City of Columbus Sues Ransomware Researcher Whistleblower
In Leaky Weekly’s third episode, host and security researcher Nick Ascoli covers recent news in the cybercrime space including the AWS takeover campaign, ransomware attack on Columbus, Ohio, and the city of Columbus suing a ransomware researcher whistleblower. Here are the resources Nick mentions: Leaked Environment Variables Allow Large Scale Extortion Operation in Cloud Environments (https://unit42.paloaltonetworks.com/large-scale-cloud-extortion-operation/) Ransomware Group Claims Columbus Attack, Selling 6 Terabytes of Passwords and More (https://www.msn.com/en-us/news/us/ransomware-group-claims-columbus-attack-selling-6-terabytes-of-passwords-and-more/ar-BB1r2lRx) Researcher Sued for Sharing Data Stolen by Ransomware with Media (https://www.bleepingcomputer.com/news/security/researcher-sued-for-sharing-data-stolen-by-ransomware-with-media/?s=08) He Proved the Columbus Data Leak Hurts the Public. Now, the City has Silenced Him (https://www.nbc4i.com/news/local-news/columbus/city-hack/he-proved-the-columbus-data-leak-hurts-the-public-now-the-city-wants-to-silence-him/) Brought to you by Flare, the world’s easiest to use and most comprehensive cybercrime data set that integrates with your security program in 30 minutes. Sign up for our free trial here (https://try.flare.io/free-trial/?utm_source=Organic+social&utm_medium=Spotify&utm_id=Leaky+Weekly).

21 Aug 2024
Background Check Organization Breach, a Repossessed Ransomware Blog, Feuding Forums, and Double Arrest of “J.P. Morgan”
In Leaky Weekly’s second episode, host and security researcher Nick Ascoli covers recent news in the cybercrime space such as the National Public Data breach, Dispossesser ransomware operation repossession, feuding forums, and the arrest of two “J.P. Morgans.” Here are the resources Nick mentions: National Public Data confirms breach, scope unknown (TechTarget) (https://www.techtarget.com/searchsecurity/news/366605492/National-Public-Data-confirms-breach-scope-unknown) National Public Data com Hack Exposes a Nation’s Data (Krebs on Security) (https://krebsonsecurity.com/2024/08/nationalpublicdata-com-hack-exposes-a-nations-data/) Personal Data of 3 Billion People Stolen in Hack, Suit 1 (Bloomberg Law) (https://news.bloomberglaw.com/privacy-and-data-security/background-check-data-of-3-billion-stolen-in-breach-suit-says?ref=troyhunt.com) Inside the “3 Billion People” National Public Data Breach (Troy Hunt) (https://www.troyhunt.com/inside-the-3-billion-people-national-public-data-breach/) National Public Data Security Incident Announcement (National Public Data) (https://nationalpublicdata.com/Breach.html) FBI disrupts the Dispossessor ransomware operation, seizes servers (Bleeping Computer) (https://www.bleepingcomputer.com/news/security/fbi-disrupts-the-dispossessor-ransomware-operation-seizes-servers/) Ransomware Evolution | How Cheated Affiliates Are Recycling Victim Data for Profit (SentinelOne Blog) (https://www.sentinelone.com/blog/ransomware-evolution-how-cheated-affiliates-are-recycling-victim-data-for-profit/) Ransomfeednews’ X (formerly known as Twitter) Thread on Dispossessor Reposting Leaks (https://x.com/ransomfeednews/status/1771973712801112115?s=20) A Threat Actor Has Allegedly Scraped the Data belonging to the Forum Leakbase (Dark Web Informer) (https://darkwebinformer.com/a-threat-actor-has-allegedly-scraped-the-data-belonging-to-the-forum-leakbase/) Leakbase Information (Searchlight Cyber Dark Web Hub) (https://slcyber.io/dark-web/leakbase/) Leader of International Malvertising and Ransomware Schemes Extradited from Poland to Face Cybercrime Charges (U.S. Department of Justice) (https://www.justice.gov/opa/pr/leader-international-malvertising-and-ransomware-schemes-extradited-poland-face-cybercrime) Brought to you by Flare, the world’s easiest to use and most comprehensive cybercrime data set that integrates with your security program in 30 minutes. Sign up for our free trial here (https://try.flare.io/free-trial/?utm_source=Organic+social&utm_medium=Spotify&utm_id=Leaky+Weekly).

7 Aug 2024
Pilot: Stealer Log Abuse, Hacktivist Groups, and Unauthorized Access Through Third-Parties
In Leaky Weekly’s first episode, host and security researcher NIck Ascoli covers recent news in the cybercrime space, such as the AT&T breach, Snowflake tenant breaches, the hacktivist group SiegedSec, and Disney hack. Here are the resources Nick mentions: The Sweeping Danger of the AT&T Phone Records Breach (Wired) (https://www.wired.com/story/att-phone-records-breach-110-million/) Massive Ticketmaster, Santander data breaches linked to Snowflake cloud storage (The Verge) (https://www.theverge.com/2024/5/31/24168984/ticketmaster-santander-data-breach-snowflake-cloud-storage) UNC5537 Targets Snowflake Customer Instances for Data Theft and Extortion (Mandiant) (https://cloud.google.com/blog/topics/threat-intelligence/unc5537-snowflake-data-theft-extortion) Read the furious texts the Heritage Foundation sent furry hacking collective SiegedSec after breach (Daily Dot) (https://www.dailydot.com/debug/heritage-foundation-hack-sieged-sec-chat-log-retirement/) Hackers Claim to Have Leaked 1.1 TB of Disney Slack Messages (Wired) (https://www.wired.com/story/disney-slack-leak-nullbulge/) Brought to you by Flare, the world’s easiest to use and most comprehensive cybercrime data set that integrates with your security program in 30 minutes. Sign up for our free trial here. (https://try.flare.io/free-trial/?utm_source=Organic+social&utm_medium=Spotify&utm_id=Leaky+Weekly)
Reach and audience
Public platform figures. Ratings count people who left a rating, not total listeners.
- Apple Podcasts (US)
- 5.0 / 5
- 1 ratings
- Spotify
- 5.0 / 5
- 17 ratings
Podcast Authority Score: 14 / 100
A composite of feed quality, social presence, YouTube performance and engagement. Read the methodology.
- Quality
- 8
- Social presence
- 0
- YouTube
- 0
- Engagement
- 51
Contact Leaky Weekly
- Guest appearances
- Books guests
Based on episode analysis; this does not confirm that the show is currently accepting guests.
Questions about Leaky Weekly
Who hosts Leaky Weekly?
Nick Ascoli host the show. Published by Flare.
How often do new episodes come out?
The show publishes weekly, based on its RSS feed.
Does Leaky Weekly take guests?
Yes. Guests have been identified in episode analyses.
Host of Leaky Weekly?
Claim your podcast to manage its listing and keep your show details accurate.
Pod Engine is an independent podcast discovery and analytics service and is not affiliated with or endorsed by this podcast. Artwork and show content belong to their owners. Full legal notice.
Explore this show
Podcast research with Pod Engine