The B2B Podcast Index
Index
All categories
MarketingSalesSaaSFinanceHROpsLeadershipCustomer SuccessAI & DataProductStartups & FoundersRevOpsEngineering & DevTools
MethodologySubmit
Best of:MarketingSalesSaaSFinanceHROpsLeadershipCustomer SuccessAI & DataProductStartups & FoundersRevOpsEngineering & DevTools
An independent project byFame
SearchBest episodesGuestsInsightsMethodologySubmit a podcast
#81Security Cryptography Whatever80.4 / 100Get badge
← The Index
Security Cryptography Whatever artwork
Engineering & DevTools▲89 this period

Security Cryptography Whatever

Hosted by Deirdre Connolly, Thomas Ptacek, David Adrian

Listed under Technology, Science › Mathematics, News › Tech News

★4.6on Apple Podcasts · 9 recent reviews

Some cryptography & security people talk about security, cryptography, and whatever else is happening.

66 episodes · publishes monthly · latest 2026-07-27 · ~64 min/episode

Rank

#81

Substance

80.4

/ 100

Breakdown

Scored 2026-08
Updated monthly

Engineering & DevTools rank

#9 of 51

Best B2B Engineering & DevTools Podcasts →

Across the index

#81 of 1446

Substance

Top 6%

outscores 94% of the index

Why it scores where it does

Security Cryptography Whatever ranks #81 on The B2B Podcast Index with a substance score of 80.4 out of 100, scored across 5 recent episodes. It scores highest on guest caliber and insight density. Nicholas Carlini is among the most credible guests possible for this topic - he has published extensively on adversarial ML and security, led this exact research at Anthropic, and demonstrated it in practice at scale. He speaks with hard-earned authority grounded in months of real-world experimentation, not abstract theorizing. Few people on earth have done this work at this depth.

The five-dimension breakdown

Averaged across 5 recently scored episodes, with cited evidence.

Insight Density

16.6 / 20

The episode is densely packed with concrete technical insights about LLM capabilities in vulnerability discovery - oracle design, constraint propagation in fuzzing, checksum generation, protocol-aware exploitation, and the asymmetry between finding and patching bugs. However, substantial portions involve methodological explanation and clarification that, while necessary, dilutes pure insight density.

“We have, I don't know, let's say, 10-line Bash script plus Docker container. I just sort of point it at the thing and be like, I've compiled this program with ASan. Please run against it, read the source code, and try to find a bug.”

“The thing that we've been finding most recently is you don't really have to try very hard.”

Originality

15.4 / 20

The work itself is original - demonstrating that minimal prompting (no special harnesses, no domain-specific scaffolding) on production models can find real zero-days at scale is genuinely novel. However, the framing around LLM capability improvement and the observation that 'scaling works' is now relatively well-trodden territory; the originality lies in the concrete execution and measurement, not the conceptual framework.

“the models have gotten good enough that you can do security, meaning use the models to help you with security”

“You don't really have to put in a huge amount of work, which is both good and bad.”

Guest Caliber

17.4 / 20

Nicholas Carlini is among the most credible guests possible for this topic - he has published extensively on adversarial ML and security, led this exact research at Anthropic, and demonstrated it in practice at scale. He speaks with hard-earned authority grounded in months of real-world experimentation, not abstract theorizing. Few people on earth have done this work at this depth.

“I used to do pen testing stuff and this was like the thing that got me into security in large part”

“I have walked through the trace of myself. I spun up the thing because I'm still very paranoid the model is just going to lie to me. I don't want to be the person generating AI slop.”

Specificity & Evidence

16.6 / 20

The episode is rich with named examples (Ghost CMS, Firefox, FFmpeg, Linux kernel NFS daemon) and specific metrics (122 crashing inputs to Mozilla with 100% true positive rate, 22 CVEs, 500 zero-days from OSS-Fuzz). However, some claims lack hard numbers - exact iteration counts vary ('20 times or something,' 'maybe 5 or 10 times'), token costs are dismissed rather than quantified, and generalization curves are acknowledged as unmeasured ('I don't have a very nice scientific plot yet').

“we sent Mozilla 122 crashing inputs and like they confirmed all of these are bugs. Like 100% of the things we crashed them, perfect true positive rate, all bugs”

“It found a SQL injection that goes, nice, an unauthenticated user who has literally no perms, who can compromise the admin database, mint themself a new admin account”

Conversational Craft

14.4 / 20

The hosts ask solid, probing follow-up questions (why stop iterating? how many passes before moving on? what changed between 4.5 and 4.6?) and push back on claims (asking about the generalizability of the approach, comparing to prior work). However, they occasionally let Carlini drift into lengthy explanations without interrupting for clarification, and some conversational threads peter out ('I thought I had more to say about that'). The dynamic is warm but could be tighter.

“I'm stuck on like, so first of all, I said there is like, there were some screenshots of the presentation”

“Do you have your own homegrown spidey sense of being a vulnerability researcher about which files you're like, all right, you've given it a pass or two, but like, I really want you to do like 5 or 10 passes”

Standout episodes

  • AI Finds Vulns You Can't With Nicholas Carlini

    2026-03-26

    100
  • An Odyssey of Lattice Cryptography with Mark Schultz-Wu

    2026-07-27

    95
  • Facing the Vulnpocalypse with lcamtuf

    2026-06-15

    95

Rank over time

2 periods tracked.

Episodes

11 scored on substance · 61 tracked in total.

  • An Odyssey of Lattice Cryptography with Mark Schultz-Wu

    2026-07-27 · 1h 17m

    95 / 100
  • Trump's Golden Post-Quantum EO(s)

    2026-07-02 · 57 min

    80 / 100
  • Facing the Vulnpocalypse with lcamtuf

    2026-06-15 · 1h 11m

    95 / 100
  • AI Finds Vulns You Can't With Nicholas Carlini

    2026-03-26 · 1h 16m

    100 / 100
  • Standardizing Pure PQC

    2026-03-10 · 8 min

    27 / 100
  • Python Cryptography Breaks Up with OpenSSL with Paul Kehrer and Alex Gaynor

    2026-02-02 · 1h 13m

    100 / 100
  • The IACR Can't Decrypt with Matt Bernhard

    2025-12-31 · 57 min

    90 / 100
  • Apple’s Memory Integrity Enforcement

    2025-10-31 · 57 min

    78 / 100
  • Stop Using Encrypted Email with William Woodruff

    2025-08-23 · 1h 11m

    90 / 100
  • Alex Gaynor

    2025-08-16 · 1h 25m

    95 / 100
  • Vegas, Baby!

    2025-07-29 · 1h 1m

    70 / 100

What listeners say on Apple Podcasts

★★★★★
Wonderfully accessible!
Each episode is a great discussion into a large field

- Bob on Ross

★★★★★
Found my new favorite podcast!
Stumbled across this podcast while trying to supplement an applied cryptography class. I couldn’t be more please with the content and excitement the hosts have about cryptography. Definitely worth a listen!

- Ragnaroekk

Frequently asked

What is Security Cryptography Whatever's substance score?
Security Cryptography Whatever scores 80.4 out of 100 for substance and ranks #81 on The B2B Podcast Index. That puts it ahead of 94% of the B2B podcasts we rank and #9 of 51 in Engineering & DevTools. The score reflects insight density, originality, guest caliber, specificity and conversational craft across recent episodes - not downloads.
Is Security Cryptography Whatever worth listening to?
Yes - Security Cryptography Whatever outscores 94% of the B2B engineering & devtools podcasts and shows we rank on substance, so a engineering & devtools operator is likely to come away with something useful.
Who hosts Security Cryptography Whatever?
Security Cryptography Whatever is hosted by Deirdre Connolly, Thomas Ptacek, David Adrian.
How often does Security Cryptography Whatever publish?
Security Cryptography Whatever publishes monthly, has 66 episodes, released its most recent episode on 2026-07-27.
Which Security Cryptography Whatever episode should I start with?
Our highest-scoring recent episode is "AI Finds Vulns You Can't With Nicholas Carlini" (100/100) - a good place to start.

Show off your #9 rank in Engineering & DevTools

Add this badge to your site - it links back here and updates automatically as you rank.

Ranked #9 on The B2B Podcast Index
Embed code
<a href="https://index.fame.so/show/security-cryptography-whatever" target="_blank" rel="noopener">
  <img src="https://index.fame.so/badge/security-cryptography-whatever/badge.svg" alt="Ranked #9 on The B2B Podcast Index" width="360" height="136" />
</a>
Markdown & other formats →

Track Security Cryptography Whatever's rank

Get an email whenever this show moves up or down the Index. Monthly at most, no spam.

Listen / subscribe:WebsiteSpotifyRSS

Frequently discusses

Companies, products and tools that come up most across this show's episodes.

Google · 5Chrome · 5Cloudflare · 2NIST · 2NSA · 2Apple · 2iOS · 2Firefox · 2Signal · 2Yubikey · 2WhatsApp · 2KyberFIPSCMVPAmerican Fuzzy LopBitcoinMythicXZ

Guests who've appeared

Alex Gaynor · 2Mark Schultz-Wulcamtuf (Michael Leski)Nicholas CarliniMr. Tom RiddlePaul KehrerMatt BernhardWilliam Woodruff

Topics this show covers

The themes that come up most across this show's episodes.

Cryptography · 8security · 8post-quantum · 3Post-Quantum Cryptography (PQC) · 2NIST · 2Apple · 2Signal · 2Fully Homomorphic Encryption (FHE)Learning with Errors (LWE)NTRU cryptosystemKyberDilithiumgap-SVP (shortest vector problem)Learning with roundingApproximate GCD problemQuadratic form isometryTeleport SSH accessNIST FIPS standards

More Engineering & DevTools podcasts

See all →
  • DevOps Daily with Fexingo

    Fexingo

    89.0
  • TestGuild Automation Podcast

    Joe Colantonio

    84.0
  • Talos Takes

    Cisco Talos

    82.6
  • The Pragmatic Engineer

    Gergely Orosz

    82.2
  • RunAs Radio

    Richard Campbell

    81.5
  • Unsupervised Learning with Jacob Effron

    by Redpoint Ventures

    81.4

Similar shows

Podcasts that dig into the same topics.

  • The Azure Security Podcast

    Michael Howard, Sarah Young, Gladys Rodriguez and Mark Simos

  • Security & GRC Decoded

    Raj Krishnamurthy

    86.4
  • Secure & Simple

    Dejan Kosutic

    77.4
  • Leaders In Payments

    Greg Myers

    73.6
  • Shielded

    PQShield

    69.8
  • The Money Movement with Jeremy Allaire

    Circle

    78.2