How the Best Hackers Learn Their Craft

  Рет қаралды 2,561,754

RSA Conference

RSA Conference

Күн бұрын

Presenter: David Brumley, CEO, ForAllSecure
Do you want to know how to build a top-ranked competitive hacking team? It's all about the system. In sports, we understand systems that coaches can use to build a system for identifying talent, recruiting them, training them up, and competing in big games. Learn our proven system for building an elite team of hackers that win DEFCON. It's surprisingly easy, but not what you'd think.
www.rsaconference.com/usa

Пікірлер: 64
@ChandravijayAgrawal
@ChandravijayAgrawal 2 жыл бұрын
This is no clickbait, this is real knowledge
@chrisbeckner2103
@chrisbeckner2103 2 жыл бұрын
To quote the infamous Rick Flair, “to be the best you gotta beat the best.”
@sjatkins
@sjatkins 2 жыл бұрын
Main thing is enjoying writing that first program and then stretching always to see how much more you can make it do and how beautifully. Having math intuition and sense of what is elegant helps. I think you can hone that over time.
@vladzorin1006
@vladzorin1006 2 жыл бұрын
He even handled that hack diversity question like a boss
@superfreiheit1
@superfreiheit1 2 жыл бұрын
The first Teacher that understand what learning means
@TheBlueArcher
@TheBlueArcher 2 жыл бұрын
Half way through the video, I absolutely agree. The best teachers and professors i've had regarding IT skills, understood that they didn't have all the answers, and allowed for creativity. The worst ones though not only made it really obvious that I knew more than them, but would only take a really specific, often unoptimal answer. and wouldn't try to understand or accept any others. Like, really? you're not even going to try and step through the logic? or ask me to explain it? And absolutely, I've had amazing teachers and professors, who also clearly knew less about a subject than I did, but they accepted that and like you said, found areas an topics for me to explore. Many of them also encouraged me to help others --probably partly to reduce their own workload-- but also inevitably when helping, I would get a question I didn't know the answer to, so I needed to either experiment, or research more, deepening my own understanding too. I always wanted to take a trip to defcon, when coronavirus is over, definitely going to try and plan my next trip to vegas for that. interesting you have that high school challenge pico ctf, I'll dig around . definitely sounds like something I would have loved to have when I was in highschool.
@crisnmaryfam7344
@crisnmaryfam7344 2 жыл бұрын
LOL I wish. We had Photoshop. and Computer Applications. OR "Keyboard Typing" when I was in highschool. I was the kid in the corner playing Roms and Emulators I brought with me (crica 98-2000). Pretty sad when the teacher couldnt even explain it to another student who was curious. She had to point the student to me lol. Public school....ohhh public school...
@_keepitsocial
@_keepitsocial 2 жыл бұрын
This talk is great. It's ideas are easily transferrable throughout your entire life not just hacking
@snk-js
@snk-js 2 жыл бұрын
I think it's about finding your passion, once you find it as soon as possible you can spend all your life on it without any doubts about what to do and when, but the path itself is another environmental problem because if you don't have an initial incentive at least it will be very hard you to proceed with discipline.
@coolandgood1010
@coolandgood1010 2 жыл бұрын
Not everyone is lucky to find their passion at such a young age.
@DrJimmyBob
@DrJimmyBob 2 жыл бұрын
Yo, been looking for a while (since always?) and I'm getting soooo tired of this sentiment. Like, yeah man, be positive and spread hope, but so many of usonly don't identify with a passion, and maybe never will
@aadityaapatill
@aadityaapatill 5 жыл бұрын
I want to learn
@nogareru1
@nogareru1 2 жыл бұрын
great talk and also if you don't know much and get excited from doing ctf's . Don't stop. You'll see how much you're learning and also the last question about being biased because of CM students. I'll say this there's always going to be someone better. So don't feel discouraged and always try something new.
@tjinspace7001
@tjinspace7001 2 жыл бұрын
You're suppose to know binary analysis, web vulnerabilities, and common algorithm math before you go to one. If you go there just knowing how to use Kali tools you won't make it past one challenge
@KartikayBagla
@KartikayBagla 2 жыл бұрын
A great video! Also there's an error at 19:45 with the line 1.75+1.5+0.25 which equals 3.5 rather than 4.
@arkdtk
@arkdtk 2 жыл бұрын
Very interesting talk, always been interested in it
@joshcolbert5613
@joshcolbert5613 4 жыл бұрын
Brilliant iron sharpens iron
@chriskiwi9833
@chriskiwi9833 2 жыл бұрын
Inspirational.
@nospamaz3318
@nospamaz3318 2 жыл бұрын
Error in slide at 19:35, 2nd from last line (9/4) is 2.25, not 1.75
@JPxKillz
@JPxKillz 2 жыл бұрын
so your the legend that corrected the professor during lecture.
@SOC-
@SOC- 2 жыл бұрын
Definitely an interesting job
@jontnoneya3404
@jontnoneya3404 2 жыл бұрын
What about middle aged people looking for new careers? Would this be a good start for someone without CS experience? What about a CS grad that's worked in non-programming, non-hacking jobs looking to get into much more technical work. Is this a good place to start?
@goblinninja1234
@goblinninja1234 2 жыл бұрын
1:05 i thought he was gonna say this video is sponsored by nordvpn
@eremundead6321
@eremundead6321 2 жыл бұрын
"once you learned basic arithmetic you learned trigonometry" who?!?!!?
@teemum.9023
@teemum.9023 2 жыл бұрын
26:55 the graphics are not poor at picoCTF, they are nostalgic
@slide1821
@slide1821 2 жыл бұрын
I don't get it: shouldn't the name of the video be 'how to recruit geniuses'? This is a genuine question. Did I miss anything?
@thewild2334
@thewild2334 2 жыл бұрын
excellent video as a highschool amature hacker,all of this information is super valuable!
@TheRisingMiles
@TheRisingMiles 2 жыл бұрын
Lots of good ideas here!
@AaronDGreen
@AaronDGreen 2 жыл бұрын
Very Cool
@teemum.9023
@teemum.9023 2 жыл бұрын
30:25 bell curve of ability. I learn slowly and can feel intimidated by difficulty. I may not do my homework. I also know that once I have gathered all the details, which I see more and deeper than others, and internalize them, I get faster and more able than average
@rahuljmd
@rahuljmd 2 жыл бұрын
very informative video
@angryman9333
@angryman9333 2 жыл бұрын
6:34 you freaked me out lol
@teemum.9023
@teemum.9023 2 жыл бұрын
22:22 it´s not talking about the cryptography, it´s talking about the implementation, in other words, metadiscourse.
@etako79
@etako79 2 жыл бұрын
And just imagine all these different hackers with all their knowledge and strategies just being funneled and soaked up by AI. With computer learning being more and more prevalent and common, they’re creating the ultimate HACKER that will be able to infiltrate any software or computer in the world. This is where shit gets very very concerning and out of control. It’s like thousands of the best of the best all intertwined into one, HOLY FUCK the boundaries this things won’t have and can’t bust thru.
@lucatowalker2123
@lucatowalker2123 2 жыл бұрын
Interesting
@DaDevil1983
@DaDevil1983 2 жыл бұрын
Amazing
@callisoncaffrey
@callisoncaffrey 2 жыл бұрын
But in Jeopardy you can choose whatever difficulty you want and don't have to progress there.
@Reelix
@Reelix 2 жыл бұрын
19:45 - 1.75 + 1.5 + 0.25 = 3.5 - Not 4 :p
@adrian6185
@adrian6185 2 жыл бұрын
I came here to say this
@teemum.9023
@teemum.9023 2 жыл бұрын
23:13 the highest expert mountain is how child protection bureaucracy deems itself about personal lives of their clients. They do not even go through the scientific process to get there.
@Uneke
@Uneke 2 жыл бұрын
“They can free you from those eco systems” Blue pill, red pill… choose Lol
@teemum.9023
@teemum.9023 2 жыл бұрын
3:15 How would you sell a zero day to Microsoft of Apple? If you use to break their system, they sue you for extortion. If you tell them what it is, they just take the info and don´t pay you 100000s.
@Dong_Harvey
@Dong_Harvey 2 жыл бұрын
This presentation is great, but there is still a clear class divide in regards to any CS and event STEM education in the US at least.. If any major educational institution carded to recognize the problems faced by lower class students, they would also recognize the power of their perspective, especially regarding systematic dissection of social structures like corporate neglect in product design
@LilBogota
@LilBogota 2 жыл бұрын
So the best offense is defense but then you have to also learn how to move from phyton when its overtaken by a better system you said it when it said that it killed you, whats the next python?
@salimr4718
@salimr4718 2 жыл бұрын
when AI will become very advanced, hacking will be the province of only the extremely few.
@user-zz1uf6kx6x
@user-zz1uf6kx6x 2 жыл бұрын
Yea and it'll be many years before that even happens lol
@edwardspencer9397
@edwardspencer9397 2 жыл бұрын
Hackers are passionate people. They don't really care about money. They only care about challenges and problem solving. But they are forced in most cases by other companies or governments. If a group of hackers decide to run the world, the world would be a better and a happier place.
@andychung7922
@andychung7922 2 жыл бұрын
Hacking is like life O.o
@wiczus6102
@wiczus6102 2 жыл бұрын
I don't think this has anything to do with the best hackers. Systemized teaching doesn't get you to solve problems like this. With systemized teaching you can teach students to do sql injections or some cyphers. You need an inherent understanding of a system, which no sane person has. Another problem is that if you seriously do hacking. You competition are experts. If you were attempting to crack AES you'd be competing with a cumulative thousands of years of development by mathematicians and security experts. And with each year, this gap between what you could do and what society already did grows larger and larger. If you do things like that you're a genius and I don't think some university pipeline can reliably make such people.
@happywednesday6741
@happywednesday6741 2 жыл бұрын
True, but mostly people just leave doors unlocked and have weak passwords
@wiredvibe1678
@wiredvibe1678 2 жыл бұрын
I don't think his system "makes" hackers more than identifies people that could be good hackers. All the pentesters I know don't really like ctf because it's not realistic to what we see in the real world. However. The skills you learn with reverse engineering and so on are useful in security research.
@sjatkins
@sjatkins 2 жыл бұрын
You say hacking isn't about breaking into things then you give those examples. Sigh. Hacking is so very much broader than that.
@normanhenderson7300
@normanhenderson7300 2 жыл бұрын
Hacking is making computers do what they were not intended to do? If I am able to make them do what they were ‘not intended to’, obviously they were inherently capable of doing what you make them do. Just that you did not discover the means of making them do what they ‘were not intended to do’.
@user-sv9lf5yq8x
@user-sv9lf5yq8x 2 жыл бұрын
he probably meant 'expected' by the people who designed it initially. not 'intended'
When Cybercriminals with Good OpSec Attack
49:01
RSA Conference
Рет қаралды 173 М.
ВИРУСНЫЕ ВИДЕО / Мусорка 😂
00:34
Светлый Voiceover
Рет қаралды 6 МЛН
SMART GADGET FOR COOL PARENTS ☔️
00:30
123 GO! HOUSE
Рет қаралды 19 МЛН
How To Think Like A Programmer
1:00:07
Coding Tech
Рет қаралды 2 МЛН
How do hackers hide themselves? - staying anonymous online
11:55
Grant Collins
Рет қаралды 1,3 МЛН
60 Hacking Commands You NEED to Know
27:01
NetworkChuck
Рет қаралды 297 М.
Going to Chinese Hacking Competition - Real World CTF Finals
12:47
LiveOverflow
Рет қаралды 1,5 МЛН
Hacker interview-Gummo
42:21
Soft White Underbelly
Рет қаралды 7 МЛН
How I hacked a hardware crypto wallet and recovered $2 million
32:18
The Secret step-by-step Guide to learn Hacking
14:42
LiveOverflow
Рет қаралды 3,3 МЛН
everything is open source if you can reverse engineer (try it RIGHT NOW!)
13:56
Low Level Learning
Рет қаралды 1,1 МЛН
I Played HackTheBox For 30 Days - Here's What I Learned
10:23
Grant Collins
Рет қаралды 270 М.
Finding WEIRD Typosquatting Websites
24:26
John Hammond
Рет қаралды 216 М.
Phone charger explosion
0:43
_vector_
Рет қаралды 2,4 МЛН
Iphone yoki samsung
0:13
rishton_vines😇
Рет қаралды 8 МЛН
Why spend $10.000 on a flashlight when these are $200🗿
0:12
NIGHTOPERATOR
Рет қаралды 16 МЛН