Was just reading this on Krebs:
https://krebsonsecurity.com/2020/02/hackers-were-inside-citrix-for-five-months/#comments
Even after this I am still shocked that a company like this still looks for more red team than blue!
Just take a look on indeed! I think in certain areas red team and hacking has been far too glamorized. In one of their post they require the person to write exploits, why?!? I feel a good number of the problems in have in the industry stem from this. It's "cool" to be a hacker, in my book you can replace hacker with car jacker! We are encouraging and rewarding this type of behavior when we should be blocking and punishing it. And no I don't want to hear it's research, if you are caught "researching" how to make a bomb or shoot people you go to jail, but since the bomb is virtual it's ok! I think not.
OK, end RANT! Just frustrated about how many red team jobs I see opposed to blue team when we have so many people getting broken into...
John-