SpaceSpank
Posts: 244
Joined: 10/3/2010 Status: offline
|
quote:
ORIGINAL: LadyConstanze people who work in IT (which I don't) told him that this would require somebody who's in a league that would have every company begging the person to work for them because that would be such a rare and extraordinary skillset. I seriously wish I could do it, because then I could put a stop to this idiot harassing me, but even more because then I could simply add at least one 0 to my salary... I work with several people who DO do this stuff, some of which have been the ones to be "First finders" of security issues and report them the Microsoft, Adobe, etc. I assure you, "taking a few minutes" is only for bad Hollywood crime dramas. These guys can spend entire evenings with energy drinks and caffeine crouched over multiple computers just to find an effective way to use a relatively known exploit in new and exciting ways. Finding your own, with the rare exception of those strike of lightning moments, takes days, weeks, months, even years to identify, research, test, and then finally exploit. Things like the black hat conventions have guys prep for months, sometimes years with bugs, exploits, and tools they have developed so they can come in and wow the security world with it. Then everything they find is promptly patched, fixed, or devalued by updates and they start all over again for the next item to wow people with. 0 day exploits are the most effective, but named as such becasue that's how long they usually last before people figure out what is going on... under a day from when they go "wild", then they start getting locked down and are no longer as effective.
|