Rephonic
Artwork for Application Security Weekly

Application Security Weekly (Video)

Mike Shema
Application Security
Cybersecurity
Generative AI
Artificial Intelligence
Devops
Threat Modeling
OWASP
Large Language Models
Fuzzing
SQL Injection
Appsec
OWASP Top 10
Ransomware
Supply Chain Security
Open Source Software
CISA
Devsecops
Vulnerability Management
Software Supply Chain Security
Apis

About all things AppSec, DevOps, and DevSecOps. Hosted by Mike Shema and John Kinsella, the podcast focuses on helping its audience find and fix software flaws effectively.

PublishesWeeklyEpisodes712Founded8 years ago
Number of ListenersCategories
NewsTech NewsTechnology

Listen to this Podcast

Artwork for Application Security Weekly

Latest Episodes

We dedicate an episode to catching up on appsec news with Kalyani Pawar. We see parsing problems that led to the BadHost vuln, which exposed lots of LLMs, MCPs, and agents to potential compromise. We wonder where to look for security education and pr... more

YouTube

We showcase recordings from this year's RSAC.

At RSAC Conference 2026, Scott Clinton, Co-Chair and co-founder of the OWASP GenAI Security Project, shares insights from the project's latest research, including new landscape guides and evolving appro... more

YouTube

This year has been a dichotomy of established secure design fundamentals and burgeoning chaos of LLM-driven vuln discovery. Keith Hoodlet returns to share his latest observations on what the recent news about Mythos, models, and harnesses means for a... more

YouTube

If you have to ditch your entire appsec strategy because you expect 2026 to bring more vulns more quickly, then you probably didn't have a good strategy in the first place. Rob Allen shares how the mentality of "assume breach" doesn't have to be a de... more

YouTube

Key Facts

Accepts Guests
Accepts Sponsors
Contact Information
Podcast Host
Number of Listeners
Find out how many people listen to this podcast per episode and each month.

Similar Podcasts

People also subscribe to these shows.

Recent Guests

Scott Clinton
Co-chair and co-founder of OWASP GenAI Security Project
OWASP GenAI Security Project
Episode: AppSec Conversations on Agents, LLMs, and OWASP from RSAC - Scott Clinton, Janet Worthington, Merritt Maxim - ASW #384
Merritt Maxim
VP Research Director at Forrester
Forrester
Episode: AppSec Conversations on Agents, LLMs, and OWASP from RSAC - Scott Clinton, Janet Worthington, Merritt Maxim - ASW #384
Gwyddon Data Owen
Retired Air Force Cyber Warfare Officer; Director of Cybersecurity and Technology for Universal Strategy Group
Universal Strategy Group
Episode: The Human Aspect of Red Teams - Brian Fox, Tom Tovar, T. Gwyddon 'Data' Owen - ASW #379
Tom Tovar
CEO at Appdome
Appdome
Episode: The Human Aspect of Red Teams - Brian Fox, Tom Tovar, T. Gwyddon 'Data' Owen - ASW #379
Cameron Walters
Director of Application Security and Security Engineering
Unknown (OWASP SPVS project co-lead)
Episode: Securing Software's Journey with the OWASP SPVS - Cameron W., Farshad Abasi, Rohan Ravindranath, Ido Geffen - ASW #378
Rohan Ravindranath
Founder/CEO at Zappsec
Zappsec
Episode: Securing Software's Journey with the OWASP SPVS - Cameron W., Farshad Abasi, Rohan Ravindranath, Ido Geffen - ASW #378
Ido Geffen
CEO and co-founder at Novee Security
Novee Security
Episode: Securing Software's Journey with the OWASP SPVS - Cameron W., Farshad Abasi, Rohan Ravindranath, Ido Geffen - ASW #378
Raj Mallempati
CEO and Co-founder at BlueFlag Security
BlueFlag Security
Episode: AppSec News Roundup on Claude Code Leak, Axios NPM Compromise, Secure Design - Idan Plotnik, Raj Mallempati - ASW #377
Idan Plotnik
Co-founder and CEO at Apiiro
Apiiro
Episode: AppSec News Roundup on Claude Code Leak, Axios NPM Compromise, Secure Design - Idan Plotnik, Raj Mallempati - ASW #377

Hosts

Mike Shema
Host of the show
John Kinsella
Co-host

Reviews

4.9 out of 5 stars from 8 ratings
  • Occasional good content

    Keith occasionally has something worth saying, but he lacks solid experience with hardcore software development, and knows almost nothing about lean/agile. He approaches software like an operations problem.

    Paul is unpleasant to listen to and seldom adds anything of value. I wouild not listent to this podcast at all if Paul was the only contributor.

    This week's episode is particularlt vexing, as the bros bray on about American Football. Please find another forum for that. Your listeners are he... more

    Apple Podcasts
    2
    jdtangney
    United States7 years ago

Listeners Say

Key themes from listener reviews, highlighting what works and what could be improved about the show.

Overall, strong technical depth and timely topics, but some listeners want deeper hardcore AppSec focus.
Guests are generally solid experts though pacing and chemistry can vary by episode.
Audiences may seek more examples and measurable outcomes from episodes.
Content is highly relevant for teams building secure software in AI-enabled environments.
Sponsors help bring practical tooling discussions but may color some segments.

Chart Rankings

How this podcast ranks in the Apple Podcasts, Spotify and YouTube charts.

Apple Podcasts
#28
Philippines/News/Tech News
Apple Podcasts
#36
Brazil/News/Tech News
Apple Podcasts
#56
Saudi Arabia/News/Tech News
Apple Podcasts
#60
Finland/News/Tech News
Apple Podcasts
#71
South Africa/News/Tech News
Apple Podcasts
#89
Norway/News/Tech News

Talking Points

Recent interactions between the hosts and their guests.

Top 10 Web Hacking Techniques of 2025 and a Hint for 2026 - James Kettle - ASW #380
Q: How do you view the balance between AI-generated findings and human oversight in ensuring novelty and usefulness?
The host and James discuss that while AI can unlock rapid exploration, human judgment is essential to validate novelty and avoid mislabeling routine findings as new, with governance and open-source practices helping to balance innovation with responsibility.
Top 10 Web Hacking Techniques of 2025 and a Hint for 2026 - James Kettle - ASW #380
Q: What can you tease about the direction of your research and the role of LLMs in your system?
James explains that the system is a harness-driven approach where AI accelerates discovery, but meaningful results come from carefully designed tooling, prompts, and human guidance rather than relying on the model alone.
Securing Software's Journey with the OWASP SPVS - Cameron W., Farshad Abasi, Rohan Ravindranath, Ido Geffen - ASW #378
Q: What is Zero Trust as code and how does it work in practice?
Zero Trust as code embeds security policies in the same repositories and pipelines as infrastructure code, enabling drift detection, automatic remediation, and uniform policy deployment across multiple vendors.
Securing Software's Journey with the OWASP SPVS - Cameron W., Farshad Abasi, Rohan Ravindranath, Ido Geffen - ASW #378
Q: How do AI and agentic software change the control landscape?
AI introduces unpredictable behavior, multi-agent interactions, and new risk vectors like AI bombs, so SPVS adds dedicated AI controls, identity models for AI services, and governance around prompt data and agent frameworks.
AppSec News Roundup on Claude Code Leak, Axios NPM Compromise, Secure Design - Idan Plotnik, Raj Mallempati - ASW #377
Q: Idan, how does Apiiro's Guardian agent change the game for secure coding in an AI-assisted development world?
Idan describes a guardian agent layered on top of coding agents, enriching prompts with a software graph to enforce secure-by-design prompts, enabling proactive prevention of vulnerabilities before code is generated, and maintaining business context across the SDLC.

Audience Metrics

Listeners, social reach, demographics and more for this podcast.

Listeners per Episode
Gender Skew
Location
Interests
Professions
Age Range
Household Income
Social Media Reach

Frequently Asked Questions About Application Security Weekly

What is Application Security Weekly about and what kind of topics does it cover?

This show covers application security, DevSecOps, and related security tooling with a practical, defender-focused lens. Episodes frequently explore proactive defense, AI-assisted security, software supply chain, and secure development practices, often featuring practitioners or researchers explaining how to implement guardrails, threat modeling, and secure-by-design workflows at scale. A notable pattern is hosting technical guests who bring hands-on expertise and real-world anecdotes, along with sponsor segments that anchor practical guidance for enterprise AppSec programs. The format tends to blend deep-dive technical discussion with industry context, making it useful for security teams, developers, and product security and DevOps leaders ... more

Where can I find podcast stats for Application Security Weekly?

Rephonic provides a wide range of podcast stats for Application Security Weekly. We scanned the web and collated all of the information that we could find in our comprehensive podcast database. See how many people listen to Application Security Weekly and access YouTube viewership numbers, download stats, audience demographics, chart rankings, ratings, reviews and more.

How many listeners does Application Security Weekly get?

Rephonic provides a full set of podcast information for three million podcasts, including the number of listeners. View further listenership figures for Application Security Weekly, including podcast download numbers and subscriber numbers, so you can make better decisions about which podcasts to sponsor or be a guest on. You will need to upgrade your account to access this premium data.

What are the audience demographics for Application Security Weekly?

Rephonic provides comprehensive predictive audience data for Application Security Weekly, including gender skew, age, country, political leaning, income, professions, education level, and interests. You can access these listener demographics by upgrading your account.

How many subscribers and views does Application Security Weekly have?

To see how many followers or subscribers Application Security Weekly has on Spotify and other platforms such as Castbox and Podcast Addict, simply upgrade your account. You'll also find viewership figures for their YouTube channel if they have one.

Which podcasts are similar to Application Security Weekly?

These podcasts share a similar audience with Application Security Weekly:

1. The Application Security Podcast
2. Security Weekly News (Audio)
3. Cloud Security Podcast by Google
4. AI Security Podcast
5. Cybersecurity Headlines

How many episodes of Application Security Weekly are there?

Application Security Weekly launched 8 years ago and published 712 episodes to date. You can find more information about this podcast including rankings, audience demographics and engagement in our podcast database.

How do I contact Application Security Weekly?

Our systems regularly scour the web to find email addresses and social media links for this podcast. We scanned the web and collated all of the contact information that we could find in our podcast database. But in the unlikely event that you can't find what you're looking for, our concierge service lets you request our research team to source better contacts for you.

Where can I see ratings and reviews for Application Security Weekly?

Rephonic pulls ratings and reviews for Application Security Weekly from multiple sources, including Spotify, Apple Podcasts, Castbox, and Podcast Addict.

View all the reviews in one place instead of visiting each platform individually and use this information to decide if a show is worth pitching or not.

How do I access podcast episode transcripts for Application Security Weekly?

Rephonic provides full transcripts for episodes of Application Security Weekly. Search within each transcript for your keywords, whether they be topics, brands or people, and figure out if it's worth pitching as a guest or sponsor. You can even set-up alerts to get notified when your keywords are mentioned.

What guests have appeared on Application Security Weekly?

Recent guests on Application Security Weekly include:

1. Scott Clinton
2. Merritt Maxim
3. Gwyddon Data Owen
4. Tom Tovar
5. Cameron Walters
6. Rohan Ravindranath
7. Ido Geffen
8. Raj Mallempati

To view more recent guests and their details, simply upgrade your Rephonic account. You'll also get access to a typical guest profile to help you decide if the show is worth pitching.

Find and pitch the right podcasts

We help savvy brands, marketers and PR professionals to find the right podcasts for any topic or niche. Get the data and contacts you need to pitch podcasts at scale and turn listeners into customers.
Try it free for 7 days