Security News

Amid Bug Bounty Hype, Sometimes Security is Left in the Dust
2019-05-06 13:00

Amidst the PR glitz and popularity of bug bounty programs, experts worry that actual smart security strategy is being left behind.

Microsoft Paid $2,000,000 in Bounty Rewards in 2018
2019-04-03 17:57

Microsoft says it has awarded more than $2,000,000 in bug bounty rewards to security researchers who have reported vulnerabilities via the company’s bounty program.  read more

Facebook Pays Big Bounty for DoS Flaw in Fizz TLS Library
2019-03-21 16:18

While Facebook’s bug bounty program does not typically cover denial-of-service (DoS) vulnerabilities, the social media giant has decided to award a significant bounty for a serious flaw affecting...

Two White Hats Earn Over $1 Million via Bug Bounty Programs
2019-03-01 16:17

Bug bounty platform HackerOne says two of its members have each earned more than $1 million by helping organizations find and fix vulnerabilities in their systems. read more

Video: HackerOne CEO on the Evolving Bug Bounty Landscape
2019-02-22 18:53

Threatpost talks to HackerOne CEO Marten Mickos on the EU's funding of open source bug bounty programs, how a company can start a program, and the next generation of bounty hunters.

GitHub Increases Rewards, Scope For Bug-Bounty Program
2019-02-20 18:34

GitHub is offering unlimited rewards for critical vulnerabilities - and has added "safe harbor" terms to its bug bounty program.

GitHub Increases Bug Bounty Program Rewards, Expands Scope
2019-02-19 18:52

After paying out $250,000 in bug bounties in 2018, GitHub has decided to increase rewards and expand the scope of its bug bounty program. read more

Switzerland Launches Bug Bounty Program for E-Voting Systems
2019-02-11 08:54

The Swiss government last week announced the launch of a public bug bounty program for its electronic voting systems, with rewards of up to $50,000. read more

US lawmakers furious (again) as mobile networks caught (again) selling your emergency location data to bounty hunters (again)
2019-02-08 00:00

Privacy advocates stunned that explicit rules ignored, blame head of FCC US lawmakers have again called for an investigation into mobile companies after it emerged that they have been selling...

Travel Search Website Skyscanner Launches Bug Bounty Program
2019-01-30 16:27

Travel search website Skyscanner announced on Wednesday the launch of a public bug bounty program with rewards of up to $2,000 per vulnerability. Skyscanner has been running a private bug bounty...