Ask HN: Should I just give up my ambition of being a decent security researcher?
That's just to say I always had the mindset of breaking stuff. However, lack of resources and guidance, and just life in general, led to a different career path for me as an adult.
About 10 years later now, I have had a relatively successful career in software development – though I feel I have so so much to learn yet. I still don't feel like a "senior" dev, even though some would say I am.
My desire to "break" things has never diminished, however. I have fun doing various exploitation CTF challenges, (e.g. exploit.education), but that's where my hacking skills stop.
I would like to start working on "real" exploitation, like browser or kernel exploitation, but at this point I'm wondering whether that's the right thing to do. I know it's not too late to get started in the literal sense, but I feel like perhaps focusing on improving myself on the development side of things is a better use of my time.
Heck, maybe I've already made my decision subconsciously, and I'm hoping a bunch of internet strangers will approve that decision. Time is a finite resource, and I don't know what the best decision would be for me. I'm sure there's a lot of people who've been on the same situation before, so I'd appreciate your thoughts and experiences.