u/tomás.silva
7mån sedan
Anyone else think university security courses feel outdated?
I was reading through MIT's security curriculum and honestly... it made me a bit sad. Not because it's bad - MIT obviously knows their stuff - but because it reminds me of when I was learning this material and everything felt more... I don't know, concrete? Simpler maybe.
These days I spend half my time dealing with containerized microservices, supply chain attacks, API security for services I don't even fully understand. The fundamentals are still important, sure - buffer overflows, privilege escalation, all that classic stuff. But there's this massive gap between what gets taught and what actually keeps me up at night in production.
Like, we're teaching people to secure systems that barely exist anymore in that form. Meanwhile developers are pulling random packages from npm without a second thought, deploying to clouds with a million configuration options, and just... hoping for the best.
Maybe I'm just getting old and grumpy about education. But I miss when security felt like a puzzle you could actually solve instead of an endless game of whack-a-mole with supply chains and zero-days in dependencies you've never heard of.
1
6