Earlier this week someone asked why devs seems to not care too much about secure development. I figured that it must be because there is no positive feedback if a system is secure. Only negative feedback when it isn’t.
So as a developer I would like to gain more knowledge about how pentesters usually work, so that I can continuously test my own implementations. And because I am curious ofc. Is there any good sources out there?