HN user

bugcrowd

26 karma

Crowdsourced cybersecurity. Bugcrowd is the premier marketplace for security testing on web, mobile, source code and client-side applications.

Posts25
Comments3
View on HN
blog.bugcrowd.com 11y ago

Bugcrowd Raises $6M Series A

bugcrowd
7pts0
www.cbsnews.com 11y ago

Hackers for Hire

bugcrowd
1pts0
bgcd.co 11y ago

Webinar: Key Takeaways from Instructure's Successful Bug Bounty Program

bugcrowd
1pts0
thenextweb.com 12y ago

Heroku Launches Bug Bounty Program

bugcrowd
3pts0
blog.bugcrowd.com 12y ago

List of Heartbeat exploit proof of concepts

bugcrowd
1pts0
blog.azimuthsecurity.com 12y ago

Attacking the iOS 7 early_random() PRNG by kernelpool

bugcrowd
5pts0
blog.bugcrowd.com 12y ago

HP Zero Day Initiative’s vulnerability fix timeline now 120 days

bugcrowd
1pts0
krebsonsecurity.com 12y ago

Target breach repercussions – CC printing backlog of orders

bugcrowd
2pts0
blog.bugcrowd.com 12y ago

How to be sweet to your security researchers

bugcrowd
1pts0
blog.bugcrowd.com 12y ago

Interview w/ Hacker awarded Facebook's largest bug bounty to date

bugcrowd
2pts0
krebsonsecurity.com 12y ago

Adobe urges users to upgrade Flash Player – security breach found

bugcrowd
1pts0
www.reddit.com 12y ago

How to make money finding bugs in software

bugcrowd
1pts0
blog.bugcrowd.com 12y ago

How to bypass 3rd-degree profiles in LinkedIn

bugcrowd
2pts0
krebsonsecurity.com 12y ago

Another Look at the Target Malware - KrebsOnSecurity

bugcrowd
4pts0
blog.bugcrowd.com 12y ago

The need for Responsible Disclosure policies - 16 yo hacker Joshua Rogers

bugcrowd
1pts0
www.itworldcanada.com 12y ago

Pay millions for people to find bugs, argue security researchers

bugcrowd
1pts0
krebsonsecurity.com 12y ago

Firm bankrupted by cyberheist sues bank

bugcrowd
1pts0
blog.bugcrowd.com 12y ago

Top Bugcrowd Charity Hackers of 2013

bugcrowd
1pts0
blog.bugcrowd.com 12y ago

Top Bugcrowd Security Hackers of 2013

bugcrowd
4pts0
www.bizjournals.com 12y ago

World's Largest Live "Bug Bash" at AppSec USA 2013

bugcrowd
2pts0
blog.bugcrowd.com 12y ago

Three ways to avoid duplicates in bug bounty programs

bugcrowd
1pts0
blog.bugcrowd.com 12y ago

Breaking Bugcrowd's CAPTCHA using Google Tesseract OCR

bugcrowd
6pts0
bugcrowd.com 12y ago

Big list of currently active bug bounty programs. Enjoy

bugcrowd
3pts0
www.forbes.com 12y ago

Startup Bugcrowd Raises $1.6 Million To Pay Hacker Hordes To Hunt Clients' Bugs

bugcrowd
5pts0
www.cso.com.au 13y ago

Bugcrowd negotiates CPE points for bug bounty participation

bugcrowd
2pts0

Bugcrowd - San Francisco - (remote for the right people, visa)

We're looking for experienced engineers to join our SF engineering team.

As a member of our engineering team you’ll be in a position to help shape the way we work. It's a very agile development environment where we expect things to change. Because of that we yearn for team members that want to improve the codebase as well as the process that gets code shipped.

Our existing team consists of a broad range of musicians, hipsters, geeks, skateboarders, skiers, snowboarders, nature lovers, Mums & Dads.

We are a very entrepreneurial team and collectively we’ve built, sold, delivered and supported solutions for many enterprise industries. Now as Bugcrowd we do this with the agility and GSD attitude of a startup. We work collaboratively, enjoy working as a team and are extremely focused on happy customers!

Overall it’s not just about what can a new team member do for us, but also how can we help that member be ready for what they want to next, whether it’s acquiring a new technical skill or learning what they need to launch their own business idea.

https://bugcrowd.com/careers

We think it'll be useful.

You're right re the payout amount for blackhats, but it only takes one whitehat to claim a reward for a bug to get killed, and the idea of a sprint is to get a bunch of them focussed on the same target at the same time. We've been running sprints alongside the more traditional ongoing bug bounties since we started, and they're very effective.

Hopefully we will get enough individuals and companies backing this to make the rewards attractive to the right kinds of researchers.

Great to see Github recognizing processes for security researchers between the ages of 13-18 in the FAQ. In the new age of crowdsourced skills, it's good to see age not playing a part as a barrier.