Главная
Study mode:
on
1
Introduction
2
Adams background
3
Agenda
4
NonAgenda
5
Three personas
6
Bug hunting is lonely
7
What is this like for bug bounty programs
8
People with suits
9
Why Bug Bounty
10
The Dream
11
Internal Fatigue
12
Bug Bounty Talks
13
Bug Bounty Guide Map
14
Reality Check
15
The Problem
16
Speed of fixes
17
Age of code
18
Why is this happening
19
Investors
20
How does this matter
21
Objections
22
What do you need
23
The Horde
24
No legal side
25
Hopefulness
26
VDPs
27
Limitations
28
Revolutionary times
29
Purity testing
30
What can we all do
31
The more common the better
32
We all need to work together
33
Incremental change
34
QA
Description:
Explore the intricacies of bug bounty programs in this insightful conference talk from NULLCON Goa 2020. Delve into the world of cybersecurity as Adam Ruddermann, Director of Bug Bounty Services Practice at NCC Group, shares his extensive experience and unique perspective. Gain valuable insights into the challenges faced by both bug hunters and program managers, including the loneliness of bug hunting, internal fatigue within organizations, and the complexities of fixing vulnerabilities. Examine the reality behind the bug bounty dream, including investor pressures and the impact of code age. Learn about the importance of Vulnerability Disclosure Programs (VDPs) and the need for collaboration in the industry. Discover practical advice on how to navigate the bug bounty landscape and contribute to incremental positive changes in cybersecurity. Whether you're a seasoned security professional or new to the field, this talk offers a comprehensive look at the current state and future potential of bug bounty programs. Read more

Bug Bounty - Why Is This Happening

nullcon
Add to list