Bug Bounties - Relationship Advice for the Hunters and the Hunted
Offered By: 44CON Information Security Conference via YouTube
Course Description
Overview
Explore the intricacies of bug bounty programs in this 54-minute conference talk presented by Katie Moussouris at the 44CON Information Security Conference. Gain insights into structuring effective bug bounty programs and maximizing their benefits for both organizations and hackers. Learn about making a business case for bug bounties, the importance of report quality, pricing strategies, and the impact of black markets. Discover how bug bounties are democratizing security research and their role in major tech companies like Microsoft and Google. Examine the challenges of national bug bounties, legal frameworks, and the future of vulnerability disclosure programs. Understand the delicate balance required to maintain successful relationships between bounty providers and security researchers in this comprehensive overview of the bug bounty ecosystem.
Syllabus
Introduction
Audience Questions
Making a Business Case
The Role of Bug Bounties
Quality of Report
Pricing
Black Market
democratizing bug bounties
selling bug bounties to Microsoft
competing with Google and Microsoft
national bug bounties
legal frameworks
bug bounty program
Google project zero
Whats next
Taught by
44CON Information Security Conference
Related Courses
Supply Chain Unchained - How To Be A Bad SaaS44CON Information Security Conference via YouTube Aviation Security 101
44CON Information Security Conference via YouTube The Anti-Checklist Manifesto
44CON Information Security Conference via YouTube Why Are We Still Doing Authentication Wrong?
44CON Information Security Conference via YouTube What Do Hackers See When They Look at the Clouds
44CON Information Security Conference via YouTube