

Adventures of Alice & Bob
Merchants Media
Welcome to the Adventures of Alice & Bob Podcast, where we talk shop with pen testers, hackers, and the unsung heroes of the cybersecurity world about the human element of being on the front lines of cyber attacks.
Produced by Merchants Media.
For booking inquires, email booking@merchantsmedia.com
RSSVERIFY
Produced by Merchants Media.
For booking inquires, email booking@merchantsmedia.com
RSSVERIFY
Episodes
Mentioned books

May 12, 2025 • 1h 5min
Ep.78 - Champagne at 2AM: The International Zotob Takedown // Kymberlee Price
In this episode, cybersecurity veteran, Kymberlee Price joins James and Marc for a riveting conversation that traces her unconventional path from public health to becoming a pioneering force at Microsoft Security. Kymberlee opens up about her classified work tracking down the creators of the infamous Zotob worm, and how that experience helped reshape how companies collaborate with security researchers. With clarity and candor, she tackles the pitfalls of the vulnerability “whack-a-mole” approach, the art of communicating real risk, and why the best cybersecurity minds don’t always come from traditional backgrounds. It’s a must-listen for anyone curious about the human side of threat hunting—and the hidden strengths in forging your own path.

Apr 25, 2025 • 52min
Ep. 77 - Bugs in the System: When Moths Hack Power Plants // Lesley Carhart
In this episode, James Maude chats with industrial cybersecurity expert Lesley Carhart (aka "Hacks for Pancakes"), whose journey from programming on her family farm to protecting critical infrastructure was shaped by curiosity and determination. Lesley reveals how moths accidentally activating a power plant touchscreen led to a late-night "Chinese hackers" investigation, explains why she carries a "marriage counseling" sign when mediating between feuding IT and OT teams, and delivers a passionate wake-up call about the industry's mentorship crisis and the brutal reality facing cybersecurity newcomers today.

Apr 11, 2025 • 58min
Ep. 76 - Phishing, Predictions, and Starship Troopers // Brian Kime
In this episode, James Maude chats with cyber threat intel pro Brian Kime, whose journey from the Army’s infamous “chemical guy” to security expert was partly inspired by Starship Troopers. Brian dishes on his legendary Dell SecureWorks phishing op that hit a wild 50% click rate—by predicting an IPO years ahead of time. He also unpacks why vulnerability management can stall business and how design thinking can reshape threat intel.

Mar 28, 2025 • 54min
Ep. 75 - DOS Viruses & Catching Chinese APT Hackers // Roger Grimes
James Maude chats with Roger Grimes, a 36-year cyber veteran and KnowBe4’s Defense Evangelist. From hacking DOS viruses for John McAfee to catching Chinese APT hackers red-handed, Roger’s war stories are unforgettable. But he’s not just here for the drama—he lays out a bold plan to fix Internet security and reveals why social engineering remains our biggest blind spot. Don't miss this episode—it's a masterclass in cyber warfare, deception, and the battle for a safer digital future!

Mar 14, 2025 • 54min
Ep. 74 - The Accidental Worm that Shutdown a University // Sounil Yu
In this episode, James sits down with Sounil Yu, the mind behind the Cyber Defense Matrix and DIE Triad frameworks that have transformed how organizations approach security. From his early days getting stuffed in lockers as a self-described computer geek to becoming a disruptive force at Bank of America and co-founding Gnostic, Sounil shares the mental models that have guided his three-decade journey in cybersecurity. They discuss how an accidental college worm shutdown taught valuable lessons in OpSec, and why Sounil starts with the icebreaker question: "What's the most IT damage you've caused without getting fired?"

Feb 28, 2025 • 56min
Ep. 73 - How a Magazine Article Led to a Cybersecurity Empire // Richard Stiennon
In this episode, James chats with Richard Stiennon—cybersecurity analyst, author, and former aerospace engineer—whose 20+ year journey spans from designing car seats to hacking corporate systems for giants like Dell. Hear how a 1992 magazine article led him to launch his own ISP and rise to prominence at Gartner. Richard shares his personal stories from the frontlines of cybersecurity, his crusade against risk management jargon, and bold predictions on AI’s impact on security. Plus, private jet mishaps and the unconventional wisdom behind IT Harvest.

Feb 14, 2025 • 55min
Ep. 72 - Recreating the Hackers Movie // Keren Elazari
Step into the fascinating mind of Keren Elazari—the first Israeli woman to give a TED Talk and a trailblazing force in cybersecurity. Once rejected by her school’s D&D group, she defied expectations to become a globally recognized security analyst, reshaping the narrative around hackers.In this episode, we dive into Keren’s remarkable journey—from a curious young girl armed with an encyclopedia and inspired by the movie Hackers to a leading voice in digital security. She shares personal stories from her early hacking days, her groundbreaking work in building inclusive tech communities, and her bold vision for the future of cybersecurity.And as a special treat, get exclusive insights into a never-before-seen fan remake of Hackers featuring legendary industry figures.Here is a link to the Hackers remake - https://vimeo.com/178240969

Jan 31, 2025 • 1h 12min
Ep. 71 - From Prison to Millions: The Hacker Who Struck Yahoo Bug Bounty Gold // Tommy DeVoss
In this episode, James sits down with Tommy DeVoss (aka Doggy G), who went from a teenage hacker dodging federal prison to becoming one of the most successful ethical hackers in the world. Tommy spills raw, unfiltered stories about his wild days in IRC channels, running with the infamous World of Hell hacking group, and somehow managing to turn his life around to rake in over $4 million in bug bounties. You'll hear how a 10-year computer ban gave him enough pent-up tech energy to power a small country and how his boredom waiting for a friend led to a $180,000 Yahoo bug discovery. Yeah, some people text while waiting—Tommy casually breaks the internet.

Jan 17, 2025 • 53min
Ep. 70 - Hotmail Honeypot: Catching Cheaters through Fake E-Greeting Cards // Mishaal Khan
Join James as he sits down with Mishaal Khan, a seasoned cybersecurity expert with over 20 years of experience in outsmarting attackers. From his early days hacking PC games to his current mission of safeguarding high-profile individuals, Mishaal offers fascinating insights into the world of open-source intelligence (OSINT) and social engineering. Discover how he’s intentionally erased his digital footprint, including keeping his own photos offline, hear the intriguing story of how he exposed cheaters using fake e-greeting cards, and learn why you should proactively "stalk yourself" to secure your personal data before someone else does.

Jan 3, 2025 • 54min
Ep. 69 - When the Data Center is Literally on Fire // Evil Mog
Today, James Maude sits down with Dustin Haywood, better known as Evil Mog, Executive Managing Hacker at IBM's X-Force. Together, they talk about Evil Mog's fascinating journey from telemarketing to becoming a globally recognized expert in password security. He shares stories, including how he managed a high-stakes data center crisis, creatively navigated IBM's corporate culture through social engineering, and transformed the landscape of password cracking. The conversation also delves into the cutting-edge world of authentication security, the ever-evolving nature of cyber threats, and why a password manager could be your ultimate ally.


