Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Proposed: a Bounty for Bugs
Mark Rasch, 2003-11-10

Instead of paying hard cash to punish computer criminals, vendors should reward grey hat hackers for responsibly finding and reporting the security holes that make cyber attacks possible.

Submit Comment Mode:
Name:
Subject:
Message:
 
  Enter the characters that appear above
 
Proposed: a Bounty for Bugs 2003-11-13
Mark Rasch
The problem is not getting grey hats to contribute, it is getting companies to be responsible for responding. Sure, most of the vulnerabilities are known, and you need good rules to define when someone gets a bounty. Also, the system should allow for simple "credit" or even just compensation for c...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus