Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Busted
Tim Mullen, 2004-05-17

The arrest of Sasser's author proves bounties work to catch cyber vandals. Now, if the security industry would just stop egging them on ...

Comments Mode:
Success, or Illusion? 2004-05-17
Matthew Murphy (1 replies)
Success, or Illusion? 2004-05-19
Mene Tekel
Another reason why bounties are often bad, is that they increase the false positive rate, and can be abused. When there's no penalties for false reports, it's tempting to report anyone you think might be suspicious -- even if 99% of those you report are innocent of what you report them for, a $250k bounty makes it worthwhile.
For this and other reasons, private bounties are even outlawed in some jurisdictions.


[ reply ]

Link to this comment: http://www.securityfocus.com/comments/columns/242/26236#26236
Busted yeah...you are 2004-05-17
Anonymous
Busted 2004-05-18
Anonymous (1 replies)
Busted 2004-05-19
Anonymous (2 replies)
Busted 2004-05-20
Anonymous
Busted 2004-05-21
Anonymous
"The bounty program is working." 2004-05-18
Penguinisto
Fahrenheit 911 2004-05-19
Wim Remes
Proof? 2004-05-19
Anonymous
*YAWN* 2004-05-19
Rip van Winkle
Consequence for a reward system 2004-05-20
Anonymous
Busted 2004-05-21
D3@7i0
Busted 2004-05-23
blacklight
Busted 2004-05-24
Coldman







 

Privacy Statement
Copyright 2009, SecurityFocus