Episode

Sponsored: Understanding CI/CD attack paths

Podcast
Risky Bulletin
Published
Jun 12, 2026
Duration seconds
948
Processing state
not_requested
Canonical source
https://risky.biz/RBNEWSSI131/
Audio
https://dts.podtrac.com/redirect.mp3/media3.risky.biz/RBNEWSSI131.mp3
JSON
/v1/public/podcasts/risky-bulletin-5423259/episodes/sponsored-understanding-ci-cd-attack-paths
Markdown
/podcast/risky-bulletin-5423259/sponsored-understanding-ci-cd-attack-paths.md

Actions

  • POST https://stenobird.com/v1/public/podcasts/risky-bulletin-5423259/episodes/sponsored-understanding-ci-cd-attack-paths/transcription-requests
    Idempotently request low-priority transcript generation for this episode.
  • GET https://stenobird.com/podcast/risky-bulletin-5423259/sponsored-understanding-ci-cd-attack-paths.md
    Read the agent-friendly Markdown representation of this episode resource.

Summary

In this sponsored episode, James Wilson chats with SpecterOps CTO Jared Atkinson about the central role that GitHub has played in recent supply chain compromises. GitHub is where code gets built, tested, and shipped to devices, cloud, and on-prem environments. Understanding the paths an attacker can use to get into GitHub, and where they can pivot to from there, is essential to securing your GitHub repos and CI/CD pipelines.