Ethical Hackers Reported 835 Vulnerabilities, Earned $450K in 2023

By Deeba Ahmed
The US Department of Defense reported the most security vulnerabilities in 2023, with 96 reports or 10% of all reports.
This is a post from HackRead.com Read the original post: Ethical Hackers Reported 835 Vulnerabilities, Earned $450K i… Continue reading Ethical Hackers Reported 835 Vulnerabilities, Earned $450K in 2023

Crowdsourced security is not just for tech companies anymore

There is a misconception that only software and technology companies leverage crowdsourced security. However, data contradicts this belief. Companies across various sectors are increasingly adopting crowdsourced security, as reported by Bugcrowd. The g… Continue reading Crowdsourced security is not just for tech companies anymore

Hackaday Links: January 28, 2024

Hackaday Links Column Banner

From the “No good deed goes unpunished” files, this week came news of a German programmer who probably wishes he had selected better clients. According to Heise Online (English translation), …read more Continue reading Hackaday Links: January 28, 2024

Embracing offensive cybersecurity tactics for defense against dynamic threats

In this Help Net Security, Alexander Hagenah, Head of Cyber Controls at SIX, discusses the critical steps in creating effective offensive security operations and their impact on organizational security strategies. What are the critical steps in creatin… Continue reading Embracing offensive cybersecurity tactics for defense against dynamic threats

Zerocopter Debuts First Hacker-Led Cybersecurity Marketplace

By Deeba Ahmed
Cybersecurity firm Zerocopter has launched the first-ever Cybersecurity Marketplace led by white-hat hackers. With cybercrime projected to cost…
This is a post from HackRead.com Read the original post: Zerocopter Debuts First Hacke… Continue reading Zerocopter Debuts First Hacker-Led Cybersecurity Marketplace

Microsoft announces Defender bug bounty program

Microsoft has announced a new bug bounty program aimed at unearthing vulnerabilities in Defender-related products and services, and is offering participants the possibility to earn up to $20,000 for the most critical bugs. The Microsoft Defender bug bo… Continue reading Microsoft announces Defender bug bounty program

Google expands bug bounty program to cover AI-related threats

Google has expanded its bug bounty program, aka Vulnerability Rewards Program (VRP), to cover threats that could arise from Google’s generative AI systems. Google’s AI bug bounty program Following the voluntary commitment to the Biden-⁠Harr… Continue reading Google expands bug bounty program to cover AI-related threats

Exploit writers invited to probe Chrome’s V8 engine, Google Cloud’s KVM

Google is asking bug hunters and exploit writers to develop 0-day and n-day exploits in Chrome’s V8 JavaScript engine and Google Cloud’s Kernel-based Virtual Machine (KVM). “We want to learn from the security community to understand h… Continue reading Exploit writers invited to probe Chrome’s V8 engine, Google Cloud’s KVM

Email forwarding flaws enable attackers to impersonate high-profile domains

Sending an email with a forged address is easier than previously thought, due to flaws in the process that allows email forwarding, according to a research team led by computer scientists at the University of California San Diego. The issues researcher… Continue reading Email forwarding flaws enable attackers to impersonate high-profile domains