Post AR42kIzEKhbdCDd1m4 by endomain@hackers.town
(DIR) More posts by endomain@hackers.town
(DIR) Post #AR42kHedHnXH42z41w by endomain@hackers.town
2022-12-27T18:07:09Z
1 likes, 0 repeats
The thing that makes someone an expert in infosec or cryptography is not a certification, or special training, or a phrenological explanation of IQ, or whatever. You can find examples of security and cryptography minded people in all fields without any one thing except: engagement with the subject matter like it matters.This is why I think I'm so angry at the world of cryptography with its "never do anything but what we tell you" strategy. This is not how you get people to engage with the material in a thoughtful and safe way.And as time has gone on, this results in a growing crisis.
(DIR) Post #AR42kIzEKhbdCDd1m4 by endomain@hackers.town
2022-12-27T18:09:03Z
1 likes, 0 repeats
It isn't that everyone needs to be a cryptographer or a infosec specialist. But I think most people need to be able to *consume that work intelligently* to make software in 2022.But the reality is almost no one does, so we end up with these parceled and formulaic approaches to infosec that are often insufficient, and we socially penalize curiosity or inquisitiveness because "this is not your lane, React Developer" or whatever.But it is our collective lane, as people who make software. And we should all engage with it.