Bug hunting: the rise of the ethical hacker in search of big bounties
As HackerOne reaches the milestone of $100m paid out in bug bounties, EGR delves into the potentially lucrative world of ethical hacking and hears how Kindred Group and Sky Bet use their bug bounty programmes to pinpoint and repair vulnerabilities
15/06/2020
ForbesForbes
Get with the programme
revealed in JanuaryEGRCan you hack it?
Blue-sky thinking
Rich pickings
Hackers
“I would say [ethical hacking] has exploded in the past three or four years and we are up to seven or eight millionaires,” says Mattsson. “Before if you were an ethical hacker and you try to report something to a company you never really knew whether they would respond. In some cases, they would have threatened lawsuits and the whole shebang, so that doesn’t actually encourage someone who wants to do something good. That is where the bug bounty platforms come in and will help the researcher and the companies to do it in an organised way.” He adds: “By having a bug bounty programme, we get access to some of the most talented security researchers in the world who can help identify security vulnerabilities in our assets.”