The security mindset
March 26, 2008
Small post, because Bruce, as ever, has said it all.
The "tricks/hacks/techniques" of testing any system can always be learnt, but you just have to have that security mindset to start off with. Having that way of thinking means all the rest is downhill work, and anyone with a good "security mind" given any exploit idea can often just work it out. I’m not sure though that it can be taught – I believe that it’s just in you or it’s not.
However, I’m all for more people being aware of security – the would can only get better for asking these questions. In any case, well worth a read.

Posted in

