GitHub has launched its GitHub Bug Bounty, a program aimed to help security researchers in finding bugs and flaws in system. The company is reportedly willing to pay between $100 and $5,000 for each security vulnerability discovered and responsibly disclosed by hackers.
Only the GitHub API, GitHub Gist, and GitHub.com. GitHub are available for the above mentioned program, but the company says its other Web properties and applications are not part of the program though vulnerabilities found “may receive a cash reward at our discretion.”, as they pointed out.
The amount of money given for bugs and flaws is said to be “based on actual risk and potential impact to our users.” Meaning, the bigger the potential scope and the bigger the severity of the issue, the larger the payout.
“If you find a reflected XSS that is only possible in Opera, which is 60% of our traffic, will earn a much larger reward.” GitHub gave as an example.
Even spotting a very low-level bug is worth disclosing for the extra cash. Not only are you getting paid for your hard work, but you’re making the Web safer in the long-run. Bug bounty programs are becoming more and more popular because they work. The damages caused by exploited bugs are much greater than simply paying security researchers for finding them first.
Thank you TheNextWeb for providing us with this information
Image courtesy of GitHub
Are you ready for the PC release of Ghost of Tsushima? I know I am,…
Size of the steel table frame: 8cmx5cm, which is thicker than the frame of other…
Incredible Sound Loved by 20 Million+ People Astonishing Sound: Breathtaking stereo sound with deep bass…
🎧【Modern Design Style】- Devoko L shaped gaming desk design will maximise the use of space,…
【Ultra-Long Distance Wireless Range】This wireless doorbells offers a remote connection of up to 300 M/1000…
【500mm/s Lightning-Fast Speed】Equipped With Klipper firmware and powerful processor, ELEGOO Neptune 4 pro can print…