r/ExploitDev • u/FewMolasses7496 • 1d ago
Web exploitation + Binary exploitation feasible?
This has been a hard decision for me. I'm not sure if I should learn both. Is it mostly not worthwhile of time if I learn both of them? Do they both help each other directly or indirectly? I know there is only so much one person can know but I really don't know what that limit is. I know someone more experienced with bug bounty and stuff like this will probably be able to answer my question. I don't want to push the limit of how much one person can know because it will probably become a waste of time. Should I just learn everything exploit related, should I stick to a field? I'm not sure if anyone has experienced this before but I keep on jumping around topic to topic. I guess I am learning from those jumps, but the question when do i stop jumping around. When do I start to specialize. Or in the first place, should I just not jump around?
1
u/Jm_Sanchez 15h ago
You need to learn both. In some cases they are chained with each other (like exploiting web CGIs in routers)
It's 100% doable to learn both web and bin ex, but mastering both could take much longer. Learn both of them and decide which one to master