“I was a terror, since the public school era” 👨💻📱☁️🕸️🐞👺If you're trying to pitch your software or services to the company I work for, please don't. I have zero say in those decisions.I'm not your typical appsec dude. I didn't get into Infosec for the money. I've been in this game long before it was a career path, and I'd keep doing it even if the industry disappeared tomorrow. It's my passion and I am always grinding to better myself. I always think outside of the box and enjoy solving problems in creative and unconventional ways. I'm not malicious but I believe I am much closer a real hacker than many pentesters are as I don't rely on checklists and I will try to find new issues and misconfigurations by going the extra mile. Whether it's reading through documentation or standing up the product locally as a docker image or VM so I can perform in-depth analysis. Scopes? Personally, I think they're a joke. Real attackers don't care if something's a legacy system or if you've accepted the risk. If you want to just tick a box sure get a pentest but if you you want to actually find issues in your organisation this is not the way to go. I’ve got a lot of experience manually reviewing source code for vulnerabilities in Go, JavaScript/Typescript, Erlang, .NET, and PHP. I'm also skilled in manual testing web and mobile applications using BurpSuite and Frida.Building exploits from scratch? Yeah, I do that too. Custom shellcode to bypass restrictions? reverse engineering with Ghidra and IDA Pro? you name it.I'm not a Nessus Monkey! I love manually hunting down vulnerabilities in network applications. I am well-versed in the use of security tools in Kali and BlackArch Linux platforms.I've also built automated tools using Python, Go, and .NET.Give me something to hack – whether it’s a network, a web app, a mobile app, binary app, hardware device, whatever – and I'll be laser-focused on getting it done.
Bet365
View- Website:
- bet365.com
- Employees:
- 2948
-
Information Security Technical LeadBet365 Mar 2016 - PresentStoke-On-Trent, England, United KingdomPerforming manual source code review. Manual Testing of Web Applications, MobileApplications and Binaries. Including payment gateways, authentication systems, online games,sports book applications, remote access VDIs, Kiosks, Betting Applications, Appliances, Integrations with third party APIs, CD/CI tools, Network Devices and so on. Researching newly reported techniques andvulnerabilities. Reverse Engineering Targeted Malware. Threat Modelling and reviewing designs. Looking after a team of 6 Application Security Testers ensuring they have everything they need complete daily tasks and projects. -
Senior Information Security SpecialistBet365 Mar 2015 - Apr 2016Stoke-On-Trent, England, United Kingdom -
Information Security SpecialistBet365 Apr 2012 - Apr 2015Stoke-On-Trent, England, United Kingdom -
Junior Information Security SpecialistBet365 Mar 2011 - Apr 2012Stoke-On-TrentManual and automatic code review (using HP Fortify) of in-house developed web applications and manual testing with Burpsuite of in-house developed web applications. Dynamic analysis and reverse engineering of third party software to look for zero day vulnerabilities that could be exploited and liaise with external third parties to have these fixed. -
Computer ConsultantEpx Technical Services Aug 2007 - Feb 2011Stafford, England, United KingdomDeveloping fully custom PHP Web Applications ranging from Online Shops to CustomerManagement Systems. Performing Security Testing on Customer’s Web Applications and infrastructure. Providing Second Line support to Customers to repair issues remotely with their Desktops andServers.
Ben S. Education Details
-
Bsc Hons Forensic Computing
Frequently Asked Questions about Ben S.
What company does Ben S. work for?
Ben S. works for Bet365
What is Ben S.'s role at the current company?
Ben S.'s current role is OSWE OSCP OSCE BSCP | AppSec Tech Lead.
What schools did Ben S. attend?
Ben S. attended Staffordshire University.
Who are Ben S.'s colleagues?
Ben S.'s colleagues are David Hayes, Darach Cullen, Doychin Dochev, Ahsen Betül Top, Jack Dignam, Dorinda Bradbury, Jordan Warburton.
Not the Ben S. you were looking for?
Free Chrome Extension
Find emails, phones & company data instantly
Aero Online
Your AI prospecting assistant
Select data to include:
0 records × $0.02 per record
Download 750 million emails and 100 million phone numbers
Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.
Start your free trial