Apple announces bug bounty program
techcrunch.com
Apple announces bug bounty program
1–10 of 107 posts
Re: Apple announces bug bounty program
#2Re: Apple announces bug bounty program
#3Re: Apple announces bug bounty program
#4I'm a bit surprised, because you'd think that they'd have been doing this already.
1. The exposure wasn't a "bug", so it's not worth a bug bounty.
2. The amount of effort it would take to start a bug bounty program would be far too cost prohibitive. In other words, "Everything's broken. We know it. If we start paying people to find what's broken, we'd go bankrupt." Heh.
So yeah. Don't be surprised.
Re: Apple announces bug bounty program
#5Re: Apple announces bug bounty program
#6I'm a bit surprised, because you'd think that they'd have been doing this already.
I had the.. pleasure.. of speaking to Comcast's CISO after doing a security risk exposure disclosure. Before talking to her, there were mentions of bug bounties, etc (neat). After talking to her, though, she said in a hand-wavy way that: 1. The exposure wasn't a "bug", so it's not worth a bug bounty. 2. The amount of effort it would take to start a bug bounty program would be far too cost prohibitive. In other words,…
Re: Apple announces bug bounty program
#7Re: Apple announces bug bounty program
#8Re: Apple announces bug bounty program
#9Re: Apple announces bug bounty program
#10http://www.reuters.com/article/us-apple-encryption-idUSKCN0X...