How can you become a competent web application security expert without breaking the law?

Posted by hal10001 on Programmers See other posts from Programmers or by hal10001
Published on 2011-06-27T14:17:40Z Indexed on 2011/06/27 16:32 UTC
Read the original article Hit count: 386

I find this to be equivalent to undercover police officers who join a gang, do drugs and break the law as a last resort in order to enforce it. To be a competent security expert, I feel hacking has to be a constant hands-on effort. Yet, that requires finding exploits, testing them on live applications, and being able to demonstrate those exploits with confidence. For those that consider themselves "experts" in Web application security, what did you do to learn the art without actually breaking the law? Or, is this the gray area that nobody likes to talk about because you have to bend the law to its limits?

© Programmers or respective owner

Related posts about web-development

Related posts about web-applications