PLAY PODCASTS
Adventures of Alice & Bob

Adventures of Alice & Bob

Merchants Media

109 episodesEN

Show overview

Adventures of Alice & Bob has been publishing since 2022, and across the 4 years since has built a catalogue of 109 episodes. That works out to roughly 100 hours of audio in total. Releases follow a fortnightly cadence.

Episodes typically run thirty-five to sixty minutes — most land between 52 min and 1h — and the run-time is fairly consistent across the catalogue. None of the episodes are flagged explicit by the publisher. It is catalogued as a EN-language Technology show.

The show is actively publishing — the most recent episode landed 4 days ago, with 15 episodes already out so far this year. Published by Merchants Media.

Episodes
109
Running
2022–2026 · 4y
Median length
55 min
Cadence
Fortnightly

From the publisher

Welcome to the Adventures of Alice & Bob Podcast, where we talk shop with pen testers, hackers, and the unsung heroes of the cybersecurity world about the human element of being on the front lines of cyber attacks. Produced by Merchants Media. For booking inquires, email [email protected] RSSVERIFY

Latest Episodes

View all 109 episodes

Ep. 109 – Dealing with Vibe Coding Execs // Geoffrey Mattson

Sep 11, 202643 min

Ep. 108 – The Hugging Face Incident // Dennis Fisher & Madhav Nakar

Aug 28, 202634 min

Ep. 107 – Cybersecurity and InSecurity // Jane Frankland

Aug 28, 202655 min

Ep. 106 – The Client Stole My Laptop // Ulrich Swart

Jul 31, 202658 min

Ep. 105 - The Sim Swap that Changed Everything // Mark Kreitzman

Jul 10, 202654 min

Ep. 104 - Code Red 25th Anniversary // Marc Maiffret & Dennis Fisher

Jun 29, 202650 min

Ep. 103 – Red teaming with Cats, Cheese, and Drones // Brent White & Tim Roberts

Jun 12, 202655 min

Ep. 102 - Lions, Gazelles, and Pig Butchering // Robert Siciliano

May 22, 20261h 2m

Ep. 101 – Cyber Security and the Art of Story Telling // Jeffrey Wheatman

May 8, 202655 min

Ep. 100 - 100th Episode Celebration!

Apr 17, 20261h 8m

Ep. 99 – Breaches, Births and Battling BS // Rob Black

Apr 13, 202651 min

Ep. 98 – From Special Ops to Mob Boss // Dahvid Schloss

In this episode, James Maude sits down with Dahvid Schloss, CEO of Emulated Criminals who started his career in special operations comms and pivoted into “not defense” cyber operations for the U.S. military. From painting rocks green for the military to accidentally becoming "APT Big Daddy" in industry when his red team tools were detected triggered a security alert Dahvid’s stories are both entertaining and educational. He explains why cybersecurity is "the wedding industry of IT ", why red teams are failing their clients by not actually emulating real threats, and how that inspired him to become an (emulated) mob boss. Hear how shoveling snow can provide elevated access privileges, why you should write your own malware and reasons to rethink what’s in an ICMP packet.

Mar 20, 202658 min

Ep. 97 - The Quantum State of Security / Pete Herzog

In this episode, James sits down with Pete Herzog, co-founder of ISACOM and creator of the OSSTMM — a comprehensive security control testing framework. He shares stories from his early days: hacking cigarettes vending machines to trade for access to computers, building a fake ID operation out of a college gerontology department, and social engineering his way onto the internet before most people knew it existed. But Pete isn't just telling war stories. He reveals how he helps unmask cybercriminals for law firms using metadata and fake account networks, explains why platforms and domain registrars are financially incentivized to protect scammers, and explains why people need help because the FBI won't touch a fraud case under $20 million anymore. From romance scam victims left with no recourse to rethinking where you place resources to secure systems, Pete shares why he thinks security isn't something we build — it's something written into the fabric of the universe, waiting to be discovered.

Mar 20, 20261h 4m

Ep. 96 - Hacking a Bank Through the Front Door (Literally) // Brandyn Murtagh

In this episode, James sits down with Brandyn Murtagh, founder of MurtaSec and top-ranked bug bounty hunter. He shares stories from his early days: learning exploitation from World of Warcraft at age 9, dropping out of college after three days, and how landing an apprenticeship at 16 led him from blue team analyst to elite penetration tester who's discovered critical flaws in banks, healthcare providers, and AI platforms. But Brandyn isn't playing it safe. He reveals how he chained public Wi-Fi access into complete bank control through IBM mainframes older than him, explains why a seven-character password limit enabled total financial system takeover, and demonstrates the reality of locking himself in server racks and wading through snow at 3 AM during physical security assessments. From 48-hour incident response marathons to fabricating funds at will, Brandyn shows why with enough time, anything can get popped eventually.

Feb 25, 202655 min

Ep. 95 - Phishing 2.0, Deepfakes, and the Death of 'Trust But Verify' // Tim Chase

In this episode, James sits down with Tim Chase, Principal Technical Evangelist at Orca Security and 20-year cybersecurity veteran. He shares stories from his early days: learning from "Hacking Exposed" books at Barnes & Noble, getting caught with hacking tools an hour after installing them, and how dropping out of college after designing one trebuchet led him from functional testing to CISO roles.But Tim isn't dwelling on the past. He reveals the nation state that manipulated open source binaries because diplomatic channels failed, explains why security awareness training is fundamentally broken, and demonstrates why AI will actually favor defenders over attackers—a refreshingly optimistic take. From acronym overload to the "Negative Nelly" problem, Tim shows why cybersecurity desperately needs a positive mindset shift.

Feb 25, 202653 min

Ep. 94 – Mistakes, Malware and Missile Industry Day // Silas Cutler

In this episode, James sits down with Silas Cutler, Principal Security Researcher at Census and founding member of Oni Scans, to explore his unconventional journey through threat intelligence and malware analysis. What happens when your first day as a SOC analyst takes down a Fortune 500 company—and Anonymous gets the credit? From accidentally causing international headlines to going undercover in ransomware gangs, Silas has built a career on creative problem-solving and community building. He's become Facebook friends with hackers he investigates, created Malshare (a community malware repository), and founded B-Sides Pyongyang—a security conference celebrating "Missile Industry Day" that started as a joke but attracted 490 attendees.

Dec 27, 202558 min

Ep. 93 - From Pwn2Own to Pwning AI // Aaron Portnoy

In this episode, James and Marc sit down with Aaron Portnoy, Head of Research at MindGuard and founder of Pwn2Own.He shares stories from his early days: learning exploitation from anonymous IRC hackers, getting visits from both the IRS and FBI, a chance meeting with HD Moore at a party, and how his ability to reverse engineer fast led him to become the youngest manager at Zero Day Initiative where he helped create the Pwn2Own competition. But Aaron isn't living in the past. He reveals how he found a persistent RCE in Google's brand-new Anitgravity IDE within its first 24 hours, explains why AI security is fundamentally broken, and demonstrates how AI agents become insider threats that enterprises can't control or understand. From six-hour firewall exploits to decimal IP bypasses, Aaron shows why the attack surface has become "literally endless."

Dec 10, 20251h 4m

Ep. 92 – Births, Badges, and Breaches // Chris Neuwirth

In this episode, James Maude sits down with Chris Neuwirth, VP of Cyber Risk at Networks Group, whose path into cybersecurity might be the most unconventional you'll ever hear—from delivering babies as a teenage EMT to penetration testing critical infrastructure today. Chris's journey includes serving as an LAPD officer at Venice Beach, responding to 9/11 at the Pentagon, managing IT during Hurricane Sandy, and running operations as assistant commissioner at New Jersey's Department of Health during COVID-19. Along the way, he's been hacking everything he could get his hands on—from war driving through Manhattan in the early 2000s to conducting sophisticated penetration tests at hospitals and airports today. Chris discusses the importance of organizations being prepared and shares the uncomfortable truth: sometimes the easiest way past your defenses is just showing up and plugging in.

Nov 21, 20251h 3m

Ep. 91 - Inside the Target Breach War Room // Charles Herring

In this episode, James talks to Charles Herring about what happens when an IT wizard runs away to join the Navy, works on fighter jets, and then gets thrown into cybersecurity right after 9/11? He shares his unconventional journey from the Wild West days of network defense—complete with fighting worms with worms—to being CISO during the Target breach. Plus: why trauma creates silos, why your SOC is like throwing receipts in garbage bags, and what it takes to build a "good neighborhood" in cybersecurity.

Nov 7, 20251h 1m

Ep. 90 - The History of L0pht : The Winnebago Incident and Testifying Before Congress // Chris Wysopal

In this episode, we sit down with Chris Wysopal (aka Weld Pond), co-founder of the legendary L0pht Heavy Industries and CTO/co-founder of Veracode. Chris takes us on a journey from programming BASIC on cassette tapes in the 1970s, through the golden age of BBS culture and phreaking, to testifying before the U.S. Senate as one of the first hackers to bring security concerns to Capitol Hill. You'll hear the untold story of an early penetration test gone spectacularly right—involving command injection, a manhole fire, voicemail hacking, and one very confused executive wondering why hackers wanted a Winnebago. Chris shares what it was like building the first hacker space in America, the challenges of turning hacking from hobby to business, and why creating a new security category took over a decade.

Oct 24, 20251h 3m
All rights reserved