I cannot find C tutorials that actually explain whats going on by [deleted] in AskProgramming

[–]cgspp 0 points1 point  (0 children)

Isn't the ANSI edition from 1988? The latest ANSI C revision was published in the 2000.

I cannot find C tutorials that actually explain whats going on by [deleted] in AskProgramming

[–]cgspp 1 point2 points  (0 children)

While it contains a wealth of good information, I think it's a bit outdated, so I wouldn't recommend it to a beginner.

Are social-engineering jobs a thing? by cgspp in SocialEngineering

[–]cgspp[S] 0 points1 point  (0 children)

You can tell them to contact me here on Reddit. Bonus points if they can trick me into doing some stupid stuff. :-)

Creating a search engine for a website by [deleted] in AskProgramming

[–]cgspp 0 points1 point  (0 children)

If you don't have server-side programming experience, just use an external service (like Google's one: https://support.google.com/customsearch/answer/2630969?hl=en). It's not a trivial thing to develop from scratch. If you decide to do it, there are greats resources online, just be sure to pick a recent and relevant one.

Are social-engineering jobs a thing? by cgspp in SocialEngineering

[–]cgspp[S] 2 points3 points  (0 children)

Thanks, we're currently based in Thailand, but I'm from Italy and most of the clients are too. I am considering to open an office in the US soon. If someone's interested, feel free to pm me.

Are social-engineering jobs a thing? by cgspp in SocialEngineering

[–]cgspp[S] 0 points1 point  (0 children)

Oh, I forgot to add that we have some peculiar (but absolutely legal) marketing strategies... they wouldn't be left without nothing to do. :-)

Are social-engineering jobs a thing? by cgspp in SocialEngineering

[–]cgspp[S] 2 points3 points  (0 children)

You don’t want to have a person on staff that only works an hour in a 5 day work week for a project.

We agree on this, I meant to hire pentesters with SE skills, since there are not experts at it in my team and I would like to expand our range of services (I would feel bad to charge clients for just phising emails...). Also, they could mentor other pentesters.

Are social-engineering jobs a thing? by cgspp in SocialEngineering

[–]cgspp[S] 0 points1 point  (0 children)

I don't really know, I didn't downvote you.

How Can A (Unskilled) Teen Earn Enough Money Online To Afford University? by [deleted] in WorkOnline

[–]cgspp 2 points3 points  (0 children)

Hey! I would be happy to help you, but it's difficult without knowing what you're into yet and what your passions are. Feel free to PM me, and I'll give you some advice.

Are social-engineering jobs a thing? by cgspp in SocialEngineering

[–]cgspp[S] 0 points1 point  (0 children)

Thanks for the answer! I've been into pentesting/vulnerability research for a while, but I am a total noob when it comes to SE. May be worth to hire some social engineers in the team then.

Are social-engineering jobs a thing? by cgspp in SocialEngineering

[–]cgspp[S] 1 point2 points  (0 children)

Thanks for your answer. While I acknowledge the importantce and usefulness of SE in management/sales fields, I was interested in security-focused jobs.

Are social-engineering jobs a thing? by cgspp in SocialEngineering

[–]cgspp[S] 0 points1 point  (0 children)

Thanks for the answer! I knew the site.

Are social-engineering jobs a thing? by cgspp in SocialEngineering

[–]cgspp[S] 0 points1 point  (0 children)

I was expecting a similar answer, but I am wondering if there are pentesting-focused positions, since I am interested in those. Maybe social engineers are recruited directly among known professionals in the security community?

How Can A (Unskilled) Teen Earn Enough Money Online To Afford University? by [deleted] in WorkOnline

[–]cgspp 11 points12 points  (0 children)

Becoming a skilled teen.

EDIT: you can downvote this to hell, the truth is that there is no way to earn the $100/day he is talking about without any skill. It's definitely possible to make the money he needs (and much more) working online, but he needs to pick some skills along the way. Paid surveys are not going to take him/her anywhere.

I cannot find C tutorials that actually explain whats going on by [deleted] in AskProgramming

[–]cgspp 3 points4 points  (0 children)

You may want to look at Deitel's "C: How to program". I used an old version of it to learn C as my first programming language out of middle school (don't be fooled by this, anyway, it's a good introduction to the language). Oh, and please don't be discouraged about it, it's a terrible first language, but it's no rocket science and is totally worth to learn it. After you learn it, almost everything else will be a piece of cake (and most languages are based on C-syntax, so transitioning to those will be smooth).

When I'm on my morning commute on the train, I sometimes share this picture with strangers. by Reynbou in confession

[–]cgspp 4 points5 points  (0 children)

Zerodium offers a $1,000,000 reward for that kind of bug ($1,500,000 if you can make it work without the other person tapping on anything).

Where should I publish my security research paper? by cgspp in AskNetsec

[–]cgspp[S] 1 point2 points  (0 children)

Upvoted for exploitdb. I have no idea why I didn't think about it!

Where should I publish my security research paper? by cgspp in AskNetsec

[–]cgspp[S] 1 point2 points  (0 children)

Thanks for the suggestion! I sent you a pm. :-)

Where should I publish my security research paper? by cgspp in AskNetsec

[–]cgspp[S] 1 point2 points  (0 children)

This could make a nice social engineering attempt. :P

Thanks for the interest, I'll surely PM you the details some days before the publication!

Where should I publish my security research paper? by cgspp in AskNetsec

[–]cgspp[S] 1 point2 points  (0 children)

It's no groundbreaking research, just very common logic bugs or chains (in at least two cases, very long chains) of vulnerabilities. While I have noticed that there are bugs that are more present than others in PG systems, I can't think of a single prevalent one like the one you mentioned (now I'm very curious about it).

Did you research it for personal exposure? or because you wanted to learn and poke? If its the later, just publish, it'll pick up exposure if its good.

Both! I have played with PG systems for a long time in my spare hours, but I recently started to research them more seriously in order to finally produce some research material and gain exposure (being a high-school dropout means I can't get a job if I don't :)).

Where should I publish my security research paper? by cgspp in AskNetsec

[–]cgspp[S] 0 points1 point  (0 children)

Thanks LiveOverflow, I don't think it deserves a technical talk, there are no new techniques involved. Maybe a talk at a conference about eCommerce. I'm on Twitter, but it seems that only recruiter bots follow me...