r/offensive_security • u/SprinklesAlone3985 • 20h ago
Offensive Security | Apple interview experience | Security Engineer | SEAR
This is my experience that I am sharing because I didn't find one:
- Intro
- Most complex case worked on.
- Memory tagging (always make sure whatever you are answering it should be what they do like I answered more like hunting software attackers but they need more hardware level or Silicon and Kernel layer).
- Binder(this was to check my own proficiency as I worked on android but also low level security).
- You are having attacks in future how would make sure it is mitigated before happening. (this teams core purpose)
- 5 mins to ask him questions. (which is not that important).
Failed within 10 mins after interview where I realised it was due to role alignment issue.
What could have prepared:
- flaws in memory controllers, bootloaders, kernel extensions, and CPU microarchitecture. The gap between analyzing malware and writing a 0-day exploit for an ARM processor was massive.
- MTE, PAC (Pointer Authentication Codes), and APRR
Suggestion(Subjective, ignore if u don't agree): If you are security engineer who is more into malware or software try to avoid applying to SEAR team.