Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I wonder how many job offers this guy's going to get from security companies over the next 24 hours...


Probably not many. He used a buffer overflow exploit (found by someone else) to achieve arbitrary code execution (in a program not designed for security). That is not a trivial task (given the limited number of op-codes he was able to use), but not something that deserves job offers.


I think you overestimate how easy it is to hire people capable of overflowing buffers on their own initiative.


I think you underestimate how easy it is to exploit buffer overflows on systems with no exploit mitigations. Come back when you have ASLR and DEP running on the gameboy.




Consider applying for YC's Fall 2026 batch! Applications are open till July 27.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: