Security news that informs and inspires

Archive

7 results for tag Bug Bounty:

Time, Not Money, Kills Bugs

The measure of a bug bounty program's success is not how much researchers were paid, but how the organization handled the volume of new reports. GitLab's James Ritchey share some of the lessons learned in the company's first year of the public bug bounty program.

Bug Bounty, Gitlab

Taking Hype Out of Bug Bounty Programs

“Bug bounty apostate” and Luta Security founder Katie Moussouris said bug bounty programs have veered away from their original mission: help organizations become more secure.

Bug Bounty

Open Source Software Needs Funding, Not Bug Bounty Programs

Bug bounty programs fill a need, but the European Union's offer to pay bug bounties for vulnerabilities in open source forgets one thing: projects don't need more flaws. Open source projects need people to fix the flaws.

Software Security, Open Source, Bug Bounty

Facebook Brings Bug Bounty to Developer Ecosystem

Facebook is expanding its bug bounty program to third-party apps and websites that might expose user tokens improperly.

Facebook, Bug Bounty

Disclose.io Offers Security Researchers Safe Harbor

Disclose.io provides a clear legal framework to protect organizations and researchers engaged in vulnerability disclosure programs. The goal is to protect those engaged in good-faith security research from legal action.

Vulnerability Disclosure, Bug Bounty, Bugcrowd