The Application Security Podcast
The Application Security Podcast is a practitioner-led show for anyone building or securing modern software—and now AI-powered applications. Hosts Chris Romeo and Robert Hurlbut talk with the people shaping application security about AI and LLM security, threat modeling, secure development, OWASP, cloud, DevSecOps, security champions, and building programs that help engineering teams move faster and safer. With more than 300 episodes, the show turns real-world experience into practical guidance for developers, architects, AppSec professionals, and security leaders.
The Application Security Podcast
Phillip Wylie -- Pen Testing from Somebody who Knows about Pen Testing
Use Left/Right to seek, Home/End to jump to start or end. Hold shift to jump forward or backward.
Philip Wiley shares his unique journey from professional wrestling to being a renowned pen tester. We define pen testing and the role of social engineering in ethical hacking. We talk tools of the trade, share a favorite web app pentest hack and offer good advice on starting a career in cybersecurity. Philip shares some insights from his book, ‘The Pentester Blueprint: Starting a Career as an Ethical Hacker. ’ And we discuss the impact of AI on pen testing and where this field is headed in the next few years. Our guest in this episode is Phillip Wiley. We explore the definition of pentesting, its relationship with red team activities, and the role of social engineering in ethical hacking.
The Application Security Podcast is brought to you by Security Journey.
About Security Journey
Security Journey is an enterprise-class solution with lessons that are built on learning science principles to deliver long-term measurable results.
→ Learn more about Security Journey
Connect with Phillip Wylie:
→ Phillipwylie
→ Ranakhalil1
Mentioned in this episode:
→ The Pentester Blueprint: Starting a Career as an Ethical Hacker
→ The Web Application Hacker's Handbook
→ The Hacker Maker
→ The Phillip Wylie Show
→ @PhillipWylie
→ Phillipwylie
→ The Web Application Hacker
→ The Pentester BluePrint: Starting A Career As An Ethical Hacker P 9781119684305
→ Burp Suite
→ OWASP ZAP
→ Metasploit
→ Nessus
→ sqlmap
→ Kali Linux
→ Bugcrowd
→ SANS Institute
→ Ranakhalil1
→ PCI DSS
Follow the Application Security Podcast:
➜ Home
➜ X
➜ LinkedIn
➜ YouTube
➜ Instagram
➜ Facebook
Chapters:
00:00 Meet Phillip Wylie: Pen Testing from Somebody who Knows about Pen Testing
02:33 Right. Oh, the typical story. No, unfortunately, I wish it was
06:19 So one, one last wrestling question. This is quickly becoming the
09:31 I gotta imagine that there's a certain amount of improv though
11:19 Good decision there. So Phillip, how about security
15:13 Mm-hmm. So pen testing, I think, is the, is the primary
19:30 Yeah, that's a good, that's a good, good way to summarize
22:45 You mentioned SQL injection. I'm always curious to understand from somebody
24:12 Okay. So it's not something that's, uh, yeah, that's interesting that
27:03 I wanted to circle back on, you mentioned social engineering and
29:18 With payloads, like I said. Yeah. So if we think about
32:52 Let's shift a little bit. Uh, I know that you've done
35:47 We want to just mention and hear a little bit more
38:36 Yeah, that's really cool. And I want to, um, I want
39:31 I, and the pet peeve I have is Talk to a
46:46 Yeah. How is, um, another just off the top of my
50:11 Phillip, I want to just, I know you do podcasts and
Follow the Application Security Podcast:
➜ Home: appsecpodcast.com
➜ X: @AppSecPodcast
➜ LinkedIn: The Application Security Podcast
➜ YouTube: @ApplicationSecurityPodcast
➜ Instagram: @appsecpodcast
➜ Facebook: Application Security Podcast
People on this episode
Podcasts we love
Check out these other fine podcasts recommended by us, not an algorithm.
The Security Table
Izar Tarandach, Matt Coles, and Chris Romeo