Mato
ShowsHow it worksAI talentsFree toolsPricing
Book a demo
ShowsHow it worksAI talentsFree toolsPricingSign in
Mato
Mato

The first generation of AI talents. Live AI media for brands, networks and creators.

ElevenLabs GrantsAWS ActivateGoogle for StartupsNVIDIA Inception Program

Product

  • How it works
  • AI talents
  • Documentation
  • The studio
  • Pricing
  • Embed player
  • Mato MCP
  • Mato Voice
  • Voice Studio
  • Changelog

Company

  • About
  • Vision
  • Partners
  • Affiliates
  • Blog
  • CustomersComing soon
  • CareersComing soon
  • Press kit
  • Contact

Resources

  • Investor overview
  • Free podcast tools
  • Free podcast transcription
  • Podcast ROI calculator
  • API docsComing soon
  • SecurityComing soon
  • StatusComing soon

© 2026 Mato. All rights reserved.

English · Multiple languages available

PrivacyTerms

Live Interview

And why does that matter?

This is how a Mato agent talks. Take the other seat: answer a few and feel it follow the thread.

Try it yourself

Podcast charts

Down the Security Rabbithole Podcast (DtSR)

Published by Rafal (Wh1t3Rabbit) Los

  • Technology
  • News
  • Tech news

This is Cybersecurity's premier podcast. Running strong since 2011 Rafal Los, James Jardine, and Jim Tiller bring a no-nonsense, non-commercial approach to our profession. DtSR brings interviews and discussion with people you want to meet, and stories you have to hear. So whether you're just starting out, or are decades deep into your career, you'll always learn something on this show. On Twitter/X: https://twitter.com/@DtSR_Podcast On YouTube: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq On LinkedIn: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/

Listen on Apple Podcasts, opens in a new tabMake something like it

On the charts

5 chart placements

Every published chart this podcast appears in, in the snapshot behind this page. Each one links to the chart it came off.

  1. Number 147Tech newsAustralia
  2. Number 175Tech newsCanada
  3. Number 114Tech newsUnited Kingdom
  4. Number 96Tech newsNorway
  5. Number 135Tech newsUnited States

From the feed

Recent episodes

The latest episodes published to this podcast’s own RSS feed. Titles and descriptions are the publisher’s.

  1. DtSR Episode 723 - Richard Bird Security is Built Wrong

    Sep 15, 202639 min

    TL;DR: This week's guest is Richard Bird, who has a new book coming out. He says, "Cybersecurity measures activity while its adversaries measure opportunity," and thirty years of spending has been priced against the wrong scoreboard. Great start, and you know it's going to get a little punchy. Guest: Richard Bird Description Cybersecurity spending has exploded for 30 years, and the scoreboard still looks brutal. We sit down with Richard to talk about his new book, “Built Wrong: Why Cybersecurity is Failing and How We Can Rebuild It,” and we don’t sugarcoat the core claim: defenders measure activity while adversaries measure opportunity, and our metrics push us toward more tools, more dashboards, and more noise instead of fewer breaches and smaller blast radii. We dig into why common security metrics behave like “measuring the weather” and how that creates a self-perpetuating cycle of reports, blinky lights, and ROI stories that don’t hold up in financial terms. Richard shares a blunt economic lens through his Hacker in a Hoodie framing, then we connect the dots to cyber insurance and how premium pricing can accidentally reward planned security purchases rather than proven loss reduction. If losses go up while premiums go down, something is broken in the measurement and incentive chain. From there we get practical: how do we justify investments like firewall upgrades without relying on vendor promises and buzzwords? We talk about using real evidence like the Verizon DBIR and OWASP Top 10, and Richard offers a simple way to organize security thinking and metrics into three buckets: exposure, interdiction, and consequence. We also push on the leadership problem: if “security is everyone’s job” but only the CISO gets penalized, accountability will always be uneven. If you care about cybersecurity metrics, cyber risk management, CISO leadership, and building a security program that speaks the CFO’s language, this conversation will challenge your defaults. Subscribe, share this with a security leader who’s tired of vanity metrics, and leave us a review with one measurement you think the industry needs to stop using. YouTube Video: https://youtu.be/sOdKjIibIKc Have something to say? Let's hear it. Support the show >>> Please consider clicking the link above to support the show! -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq LinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/ X/Twitter: https://twitter.com/dtsr_podcast

  2. DtSR Episode 722 - Vulnerability Math Ain't Mathing

    Sep 9, 202648 min

    TL;DR: Robert "RSnake" Hansen & Jeremiah Grossman join the pod to talk about the "Vuln-pocalypse", or rather, the lack thereof. We do some math, discuss whether it's worth patching vulnerabilities attackers don't exploit, and discuss a potential alternative to the madness of vuln management and patching we're all living with today. Guests Robert "RSnake" Hansen Jeremiah Grossman Description The “vulnerability apocalypse” makes great headlines, but our day-to-day reality is stranger: more scanners, more CVEs, more urgency, and still the same breaches. We sit down with Jeremiah Grossman and Robert Hansen from Root Evidence to ask a blunt question most security teams avoid saying out loud: if the overwhelming majority of known vulnerabilities are never exploited, why are we treating every patch like a debt we must repay at any cost? We dig into where vulnerability management went off the rails. CVSS scores and severity tiers often turn into a kind of black magic, especially at enterprise scale where “patch everything” can be operationally impossible and sometimes actively dangerous. We share real-world patching fallout, talk about why prioritizing millions of findings is like turning the Titanic with a teaspoon, and outline what “reasonable” can look like when you stop optimizing for perfect dashboards and start optimizing for outcomes. The turning point is data. Cyber insurance carriers and DFIR teams perform root cause analysis on real claims, and that actuarial view shows which remotely exploitable vulnerabilities actually drive financial loss. We talk about focusing on known exploited vulnerabilities, why a relatively small list of CVEs can matter more than thousands of “critical” alerts, and how controls like MDR, canary tokens, and segmentation help prevent exploitation from becoming a business-ending event. We also pressure-test the AI panic. According to multiple carriers, AI-attributed losses are effectively zero when you exclude phishing, raising an uncomfortable thought: are we funding fear instead of risk reduction? If you want a more evidence-based approach to patch management, cyber risk, and cybersecurity ROI, hit play, subscribe, and share the episode, then leave us a review with the one change you’d make to how your team prioritizes vulnerabilities. YouTube Video: https://youtube.com/live/wC1v8Vg7qr4 Have something to say? Let's hear it. Support the show >>> Please consider clicking the link above to support the show! -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq LinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/ X/Twitter: https://twitter.com/dtsr_podcast

  3. DtSR Episode 721 - Finance Masterclass for Cyber (Part 2)

    Sep 1, 20261 hr 6 min

    TL;DR: This pod is part 2 of a 2-part series in which Patrick shares his insights on the world of finance as it relates to cyber startups and financing. As promised, the tracksuit shows up, and it's an epic episode! Guest: Patrick Dennis Description Private equity can feel like a plot twist: one day you are celebrating growth, the next day you are hearing new words like EBITDA, leverage, recap, and “value creation plan,” and everything from headcount to product scope is suddenly under a microscope. We sit down with Patrick to explain what is actually happening behind the scenes when a cybersecurity company moves from venture-backed momentum into private equity discipline. We start with a clean breakdown of venture capital vs private equity. VC funds can afford many misses because a few massive outcomes pay for everything, whereas PE makes fewer investments and needs them to work more reliably. That difference shapes company behavior, especially when “grow at all costs” collides with a finite market, customer concentration, and the hard truth that bookings and ARR only matter if they turn into cash. Then we demystify the metrics and mechanics that operators keep hearing but rarely get explained: why cash flow becomes the real governor, why EBITDA becomes the shared language among management, lenders, and investors, and how a value-creation plan drives changes in spend, pricing, and operating discipline. We also get candid about the darker fork in the road: down rounds, running out of cash, taking on debt through leveraged buyouts, and what happens when a company cannot service interest, and lenders end up in control. Finally, we map the exit paths and what they mean for employees: IPO vs strategic sale vs sponsor-to-sponsor trades, plus how cash and stock deals can (and cannot) translate into payouts for option holders. If you want to evaluate your company’s trajectory with clearer eyes, subscribe, share this with a teammate, and leave a review with the finance term you want us to unpack next. Youtube Video: https://www.youtube.com/live/3YfiJiTdLhk?si=oiGXZVhHofb3ijnk Have something to say? Let's hear it. Support the show >>> Please consider clicking the link above to support the show! -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq LinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/ X/Twitter: https://twitter.com/dtsr_podcast

  4. DtSR Episode 720 - Finance Masterclass for Cyber (Part 1)

    Aug 25, 202646 min

    TL;DR: This week's pod features a Masterclass on finance for Cyber folks, led by Patrick Dennis, where we ask all kinds of questions and go from idea to the pre-growth stage of a company. What's next? Check out part 2 coming next. Guest: Patrick Dennis Description A splashy funding announcement can feel like proof you’re winning, but it can also be the moment the clock gets louder. We sit down with returning guest Patrick Dennis, a multi-time [cybersecurity] CEO and operator who “swims in these waters,” to translate the funding ecosystem into plain English and remove the mystique from venture money without dumbing it down. If you’ve ever wondered why a Series D gets celebrated, what that really signals, and what it costs later, this conversation is for you. We walk step-by-step through the early-to-late funding path: angel investors and seed rounds, venture capital at Series A and B, growth equity, and how private equity can show up as companies scale. Along the way, we tackle the words people throw around at conferences as if they’re obvious: valuation, dilution, burn rate, cap table, down rounds, and liquidity. Patrick breaks down why valuation is largely “on paper” until an exit, why investor timelines often point to a three-to-seven-year window, and why the higher you push the price, the smaller your list of realistic buyers becomes. We also talk about the “markup” incentive system that can quietly trap teams into needing a bigger round or a bigger exit than the market will support. Then we bring it back to operating reality: how the zero-interest-rate [ZIRP] era trained cybersecurity companies to spend aggressively, and what changes when money is no longer cheap. We close with the human part founders underestimate most: taking money means giving up control and choosing a partner, and “hands-off” becomes “hands-on” fast when performance slips. Subscribe for part two, share this with a founder or operator in your circle, and leave a review with the funding question you want answered next. YouTube video: https://youtube.com/live/zbDNnbHKEaU Have something to say? Let's hear it. Support the show >>> Please consider clicking the link above to support the show! -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq LinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/ X/Twitter: https://twitter.com/dtsr_podcast

  5. DtSR Episode 719 - Budget Season for CISOs

    Aug 18, 202637 min

    Guests Jack Korzeniowski Ken Foster TL;DR: Budget season is upon us, and Rafal & James sit down with Ken Foster and Jack Korzeniowski to get some insights into how CISOs deal with budgets, separate truth from fiction, and get down into the dirty secrets. Description Budget season can feel like a slow-motion incident response: everyone has competing priorities, nobody wants surprise spend, and security still has to defend the enterprise. We sit down with experienced security leaders to talk candidly about how cybersecurity budgeting really works when you’re fighting for headcount, renewals, and new controls while leadership asks for ROI and says, “Nothing’s happened for three years, so why are we spending so much?” We share what actually lands in a budget deck that survives scrutiny and what gets cut even when it is clearly needed. From there, we get practical about the messy realities that break a clean plan. Audit findings can free up money faster than any risk narrative, but relying on that is a terrible strategy, so we discuss how to model “what happens if we don’t renew” and how to translate risk tolerance into finance language. We also dig into surprise drivers like mergers and acquisitions, sudden asset growth, and cross-team dependencies, where security buys the tool, but IT and app teams handle deployment and ongoing operational workload. If you don’t align early, you don’t just miss timelines; you damage trust across the organization. Then we tackle the newest budget collision: AI. Tokenomics, unpredictable utility bills, rising infrastructure costs, shadow AI, and rapidly forming “AI debt” can turn a reasonable forecast into a painful true-up. We outline ways to cap spend, phase rollouts, and keep governance tight without killing innovation. Finally, we give vendors and consultants a clear playbook for being better partners: multi-year price predictability, phased licensing, honest roadmap commitments, no surprise true-ups, and real total cost of ownership and ROI modeling that helps us sell the work internally. If you found this useful, subscribe, share it with a security leader heading into budget season, and leave a review with the one budget surprise you never want to relive. Youtube Video: https://youtube.com/live/al7gQvb7C_Q Have something to say? Let's hear it. Support the show >>> Please consider clicking the link above to support the show! -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq LinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/ X/Twitter: https://twitter.com/dtsr_podcast

  6. DtSR Episode 718 - Black Hat Recap And The Rush To Rebrand Everything

    Aug 11, 202635 min

    Guest : Dr. Chase "ZeroTrust" Cunningham TL;DR: AI Marketing slop took over Black Hat Las Vegas 2026, and Rafal sits down for a one-on-one with Chase Cunningham. Featuring their patented level of snark, real analysis, and hype detection, it's a fun conversation. Description Black Hat is supposed to be where the security industry shows its best work. This year, it also showed its biggest temptation: slap “AI” on everything, crank the volume, and sort out the truth later. We break down what we saw on the floor and what it says about cybersecurity right now, with Chase Cunningham (Dr. Zero Trust) bringing receipts from vendor go-to-market changes and the money flowing into “AI-first” security startups. We talk about why so many tools sound identical, how “AI infrastructure” became the new catch-all label, and why the word “leader” stops meaning anything when everyone uses it. Then we get practical: how do you ask a booth team to define their artificial intelligence, what counts as autonomy, and what answers should make you walk away? The conversation gets real when “AI security” turns out to be a polished UI sitting on top of a large language model API call. We dig into vendor lock-in, pricing and subsidy risk, and the uncomfortable question of who eats the impact when model providers change costs or terms. From there we go straight at the hottest promise in security operations: autonomous SOC and agent swarms. Non-deterministic models can be useful, but mistakes at machine speed can turn into outages and bad calls, so we map where automation helps and where humans still matter. We also call out what we didn’t see: serious talk about hiring, growing junior talent, or serving SMB security needs even though many breaches flow through third parties and smaller vendors. If you care about security outcomes more than security slogans, this one’s for you. Subscribe, share, and leave a review, then tell us: what’s the most inflated AI claim you’ve heard lately? YouTube video: https://youtu.be/mww1YpP-J0k Have something to say? Let's hear it. Support the show >>> Please consider clicking the link above to support the show! -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq LinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/ X/Twitter: https://twitter.com/dtsr_podcast

  7. DtSR Episode 717 - Your UI is Bullshit

    Aug 4, 202640 min

    Guests: Michael Farnum , Sam Van Ryder TL;DR: Most cybersecurity dashboards don’t fail because they’re ugly. They fail because they don’t change what we do next. Description In Episode 717, Rafal sits down with Michael Farnum (Cybersec Community) and Sam (Dragos, a long-time OT and industrial cybersecurity practitioner) to talk about the uncomfortable truth behind security UI/UX: much of what shows up in the GUI is pure noise. We dig into the split between “pretty but useless” interfaces and tools that are practical but painful, then map out what a real practitioner-focused dashboard should deliver: contextual metrics, clear workflows, and data that drives action inside a SOC, an MDR, or an enterprise security team. From SIEM and EDR lessons to product management realities, we unpack why companies miss the mark when marketing drives the roadmap or when engineering builds for engineers only. We also get candid about the analyst ecosystem, the difference between grounded practitioner feedback and “ivory tower” trend-chasing, and how that can steer executives toward tools that are hard to operationalize. Then we move into AI and CTEM, continuous threat exposure management, and why the win isn’t a flashier interface. The win is faster telemetry correlation, so we can answer the questions that matter: is this vulnerability reachable in our environment, is it exploitable, and what should we prioritize right now? We also touch on modern “interfaces” like APIs and MCP, where the UX becomes how efficiently you can get results, even when the user is another machine. If you care about security tools that actually work under pressure, hit play, subscribe, share the episode with a teammate, and leave a review with your biggest UI pet peeve. YouTube Video: https://youtube.com/live/ts2rU1-j4EI Have something to say? Let's hear it. Support the show >>> Please consider clicking the link above to support the show! -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq LinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/ X/Twitter: https://twitter.com/dtsr_podcast

  8. DtSR Episode 716 - What if Context Replaced Alerts Entirely

    Jul 28, 202632 min

    Guests: Jason Vest & Josh Neil TL;DR: Alert fatigue is still a problem; detection isn't generationally better - but we have all this AI. So what gives? Description Alert fatigue is not just a workload problem; it is a product design problem. We dig into a provocative claim sparked by a LinkedIn post: today’s “AI SOC triage” can be a band-aid if it only cleans up alerts after the fact instead of improving threat detection where it starts, in raw telemetry and early signal extraction. We’re joined by Jason Vest (CTO at Binary Defense) and Josh (a statistician with experience from Los Alamos, the Department of Energy, and leading the Microsoft Defender for Endpoint data science team). Together we unpack why rules and detection engineering still matter: they encode what we know is bad, but rigid rule matches and atomic alerts can also trap teams in an endless false positive vs. false negative trade-off. Josh goes as far as to argue that alerts should “die in a fire,” pushing us to think in terms of attack stories and enterprise-wide context, not isolated hits. From there we explore what actually scales: when anomaly detection works, why “model everything” breaks down, and how trigger-based just-in-time modeling can build lightweight models on demand, score the nearby context, then disappear. We also talk about moving from alerts to “situations,” using agentic AI to gather more context across identity, endpoint, and network, plus what transparency should look like for model validation and community standards. Subscribe, share this with your SOC team, and leave a review. Where do you think detection should evolve next: better rules, better models, or a world without alerts? YouTube Video: https://youtube.com/live/GYjePXCiKM0 Have something to say? Let's hear it. Support the show >>> Please consider clicking the link above to support the show! -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq LinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/ X/Twitter: https://twitter.com/dtsr_podcast

  9. DtSR Episode 715 - Reducing The Toil of the SOC Analyst

    Jul 21, 202639 min

    TL;DR: David Kennedy & Larry Whiteside, Jr. join the podcast to talk about how 'alerts' are a terrible measure of work in the SOC, and what we're doing about it. We discuss the analyst experience, why it's so difficult and leads to burning our best staff out, and also David introduces his latest: NightBeacon CMD. You need to hear this. I'm starting to edit my own videos, so hopefully you like the new format. YouTube Video: https://youtu.be/aMTFaXwRl_A Have something to say? Let's hear it. Support the show >>> Please consider clicking the link above to support the show! -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq LinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/ X/Twitter: https://twitter.com/dtsr_podcast

  10. DtSR Episode 714 - Limitations and Expectations for AI SOC Part 2

    Jul 14, 202632 min

    TL;DR: This week's pod is the conclusion to the 2-part series on AI SOC with Anton Chuvakin, Daniel Miessler, Rock Lambros, Erik Bloch, and Raja Mukerji. We talk about the rational application of AI to cybersecurity and what the future holds for the various options. You won't want to miss this one. Youtube Video: https://youtu.be/5YIpZuQLTMg Have something to say? Let's hear it. Support the show >>> Please consider clicking the link above to support the show! -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq LinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/ X/Twitter: https://twitter.com/dtsr_podcast

  11. DtSR Episode 713 - Limitations and Expectations for AI SOC Part 1

    Jul 7, 202631 min

    TL;DR: Join Raja Mukerji , Anton Chuvakin , Daniel Miessler , Rock Lambros , and Erik Bloch for a banger of an episode (part 1 of 2) where we debate the potential of AI and the current state of delivery for SOC and security applications. This episode was made possible by a group of people with much better things to do than record a podcast who donated their time. Please join me in thanking them for their generous contributions. YouTube video: ...coming soon, blame Anton Have something to say? Let's hear it. Support the show >>> Please consider clicking the link above to support the show! -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq LinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/ X/Twitter: https://twitter.com/dtsr_podcast

  12. DtSR Episode 712 - Lies My AI SOC Salesman Tells

    Jun 30, 202632 min

    TL;DR: Seth Summersett of Embed Security joins the podcast to talk about the snake oil that's coming from the AI SOC sellers. There's such a significant gap between what you're being sold and what's real. Seth and the gang talk about what's real, what you should expect, and where the line of bullsh** is. YouTube video: https://youtube.com/live/Z8R19cjTjwA? Have something to say? Let's hear it. Support the show >>> Please consider clicking the link above to support the show! -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq LinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/ X/Twitter: https://twitter.com/dtsr_podcast

  13. DtSR Episode 711 - Tim Chase Boring but Necessary

    Jun 23, 202634 min

    TL;DR: This week's pod features Tim Chase , a field CISO and, by background, a practitioner. We talk about "prioritization", a topic that's boring but incredibly necessary, as I am confident nobody out here has this solved yet! YouTube Video: https://youtube.com/live/099rUu0pV0g Have something to say? Let's hear it. Support the show >>> Please consider clicking the link above to support the show! -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq LinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/ X/Twitter: https://twitter.com/dtsr_podcast

  14. DtSR Episode 710 - Leading and Innovating in Security

    Jun 16, 202647 min

    TL;DR: This week's podcast features Adam Ely - innovator, leader, and founder. Adam's led some of the world's largest security orgs, and started a tiny start-up. He's got knowledge and wisdom to share, so take it in. YouTube video: https://youtube.com/live/PVTDaiiwlMs Have something to say? Let's hear it. Support the show >>> Please consider clicking the link above to support the show! -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq LinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/ X/Twitter: https://twitter.com/dtsr_podcast

  15. DtSR Episode 709 - Zero Trusting OT

    Jun 9, 202615 min

    TL;DR: Phillip Wylie joins Rafal live from Zero Trust World 2026 in Orlando, FL, to talk about Operational Technologies (OT) in the context of Zero Trust. As the Joker once said, "Hubba Hubba, who do you trust?" YouTube: https://youtu.be/N5sI85IwxIQ Have something to say? Let's hear it. Support the show >>> Please consider clicking the link above to support the show! -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq LinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/ X/Twitter: https://twitter.com/dtsr_podcast

  16. DtSR Episode 708 - Does AI Give Threat Actors an Advantage

    Jun 2, 202652 min

    TL;DR: This week's pod features Karim Hijazi, Adam Meyers, and Will Gragido on AI and the potential advantages for adversaries . It's a fascinating discussion with in-depth analysis, commentary, and relatable stories that will give you the insights you can't get anywhere else. Buckle in, this one's an hour but completely worth it. YouTube Video: https://www.youtube.com/live/w7nBe_uS8G4 Energy-Based Model company (that Karim referenced): https://logicalintelligence.com/ Have something to say? Let's hear it. Support the show >>> Please consider clicking the link above to support the show! -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq LinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/ X/Twitter: https://twitter.com/dtsr_podcast

  17. DtSR Episode 707 - Impact of AI on the Intelligence Game

    May 26, 202644 min

    TL;DR: Today's pod features Will Gragido , a multi-time returning guest with deep expertise in cyber intelligence, threat actors, and related activity. Will shares his expertise with us on how AI will impact the gathering, analysis, dissemination, and utilization of adversary and threat intelligence. YouTube Video: https://youtube.com/live/l7mrBPRTokQ Have something to say? Let's hear it. Support the show >>> Please consider clicking the link above to support the show! -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq LinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/ X/Twitter: https://twitter.com/dtsr_podcast

  18. DtSR Episode 706 - Practical AppSec for the AI Vulnpocalypse

    May 19, 202638 min

    TL;DR: How are organizations like the Motley Fool handling AppSec right now ? How are companies building sustainable, measurable, and resilient software security programs, even as AI looms overhead? Catch Paolo del Mundo , Director of Application Security at the Motley Fool , and hear his insights on how he and his team make it work. YouTube video: https://youtube.com/live/s6z-OytApF0 Have something to say? Let's hear it. Support the show >>> Please consider clicking the link above to support the show! -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq LinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/ X/Twitter: https://twitter.com/dtsr_podcast

  19. DtSR Episode 705 - Idiocracy or Star Trek

    May 12, 202638 min

    TL;DR: Howard Holton's back for part 2 of this 2-part special on the cybersecurity market, procurement's role, innovation, and now with 100% more AI discussion (drink up). Will it be Idiocracy? Or Star Trek? I know what I think. YouTube video (still sorry for the crap quality): https://youtube.com/live/q15xAwcPur8 Have something to say? Let's hear it. Support the show >>> Please consider clicking the link above to support the show! -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq LinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/ X/Twitter: https://twitter.com/dtsr_podcast

  20. DtSR Episode 704 - Market Saturation, Innovation and Procurement

    May 5, 202634 min

    TL;DR: Buckle up. Howard Holton, CEO of GigaOm , joins for a 2-part special on the cybersecurity market, innovation, market saturation, and more. What an absolute blast of a podcast. YouTube video (apologies for the crap quality): https://youtube.com/live/q15xAwcPur8 Have something to say? Let's hear it. Support the show >>> Please consider clicking the link above to support the show! -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq LinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/ X/Twitter: https://twitter.com/dtsr_podcast

Ranking source

Apple Podcasts rankings via the Mato Topic Intelligence Platform.

Observed September 20, 2026.

Apple and Apple Podcasts are trademarks of Apple Inc., registered in the U.S. and other countries.

Pairs with

What to do with a chart

01ShowsThe shows Mato publishesEvery public Mato show, its episodes, and the Apple placements it holds.02AI talentPick the voice before the formatThe live roster of hosts, each with samples you can listen to before you commit.03How it worksFrom an idea to a published episodeWhat Mato does between the brief and the feed, step by step.

Steal the structure, not the show

Bring this source into Mato to read its transferable patterns, then turn them into an original show for your own audience.

Hear a Mato showCreate a show inspired by this