Episode
CCT 364: Third Party Risk Management - How One Vendor Breach Exposed 119,000 Users
- Published
- Aug 3, 2026
- Duration seconds
- 2768
- Processing state
not_requested
Actions
POST https://stenobird.com/v1/public/podcasts/cissp-cyber-training-podcast-cissp-training-program-6068495/episodes/cct-364-third-party-risk-management-how-one-vendor-breach-exposed-119-000-users/transcription-requests
Idempotently request low-priority transcript generation for this episode.GET https://stenobird.com/podcast/cissp-cyber-training-podcast-cissp-training-program-6068495/cct-364-third-party-risk-management-how-one-vendor-breach-exposed-119-000-users.md
Read the agent-friendly Markdown representation of this episode resource.
Summary
Send us Fan Mail A breach can hit your headlines even when your own systems never get touched, and that’s exactly why third-party risk management keeps showing up on the CISSP exam and in real incident reports. We walk through the Vimeo breach tied to its analytics vendor Anodot, where compromised vendor access and authentication tokens gave attackers a clean path to customer data. No video content or payment data was taken, but names, emails, and metadata exposure is still a trust and reputa...