# CCT 364: Third Party Risk Management - How One Vendor Breach Exposed 119,000 Users Page: https://stenobird.com/podcast/cissp-cyber-training-podcast-cissp-training-program-6068495/cct-364-third-party-risk-management-how-one-vendor-breach-exposed-119-000-users Text version: https://stenobird.com/podcast/cissp-cyber-training-podcast-cissp-training-program-6068495/cct-364-third-party-risk-management-how-one-vendor-breach-exposed-119-000-users.md Podcast: [CISSP Cyber Training Podcast - CISSP Training Program](https://stenobird.com/podcast/cissp-cyber-training-podcast-cissp-training-program-6068495) Published: 2026-08-03T11:00:00+00:00 Episode link: https://www.buzzsprout.com/2167626/episodes/19586550-cct-364-third-party-risk-management-how-one-vendor-breach-exposed-119-000-users.mp3 Audio file: https://www.buzzsprout.com/2167626/episodes/19586550-cct-364-third-party-risk-management-how-one-vendor-breach-exposed-119-000-users.mp3 Processing state: not_requested JSON: https://stenobird.com/v1/public/podcasts/cissp-cyber-training-podcast-cissp-training-program-6068495/episodes/cct-364-third-party-risk-management-how-one-vendor-breach-exposed-119-000-users Duration seconds: 2768 ## Resource Send us Fan Mail A breach can hit your headlines even when your own systems never get touched, and that’s exactly why third-party risk management keeps showing up on the CISSP exam and in real incident reports. We walk through the Vimeo breach tied to its analytics vendor Anodot, where compromised vendor access and authentication tokens gave attackers a clean path to customer data. No video content or payment data was taken, but names, emails, and metadata exposure is still a trust and reputa... ## Actions - request_transcript: `POST https://stenobird.com/v1/public/podcasts/cissp-cyber-training-podcast-cissp-training-program-6068495/episodes/cct-364-third-party-risk-management-how-one-vendor-breach-exposed-119-000-users/transcription-requests` — Idempotently request low-priority transcript generation for this episode. - read_markdown: `GET https://stenobird.com/podcast/cissp-cyber-training-podcast-cissp-training-program-6068495/cct-364-third-party-risk-management-how-one-vendor-breach-exposed-119-000-users.md` — Read the agent-friendly Markdown representation of this episode resource. A page view does not enqueue transcription. Agents should invoke `request_transcript` explicitly when they need this episode processed. ## Transcript Full transcripts are not published on public pages unless there is a clear rights basis.