Главная
Study mode:
on
1
Introduction
2
Audience Questions
3
Making a Business Case
4
The Role of Bug Bounties
5
Quality of Report
6
Pricing
7
Black Market
8
democratizing bug bounties
9
selling bug bounties to Microsoft
10
competing with Google and Microsoft
11
national bug bounties
12
legal frameworks
13
bug bounty program
14
Google project zero
15
Whats next
Description:
Explore the intricacies of bug bounty programs in this 54-minute conference talk presented by Katie Moussouris at the 44CON Information Security Conference. Gain insights into structuring effective bug bounty programs and maximizing their benefits for both organizations and hackers. Learn about making a business case for bug bounties, the importance of report quality, pricing strategies, and the impact of black markets. Discover how bug bounties are democratizing security research and their role in major tech companies like Microsoft and Google. Examine the challenges of national bug bounties, legal frameworks, and the future of vulnerability disclosure programs. Understand the delicate balance required to maintain successful relationships between bounty providers and security researchers in this comprehensive overview of the bug bounty ecosystem.

Bug Bounties - Relationship Advice for the Hunters and the Hunted

44CON Information Security Conference
Add to list
0:00 / 0:00