Bug Bounties, Security Research, and Smoking Mirrors.

Presented by

Tony UcedaVelez, CEO at VerSprite and Robert Hawes, Practice Manager at VS-Labs

About this talk

Bug Bounties, Security Research, and Smoking Mirrors. Research or simply Crowd Sourced Penetration Testing that Placates Security Budgets? Tales around vulnerability research, responsible disclosure, and failures not commonly shared in the industry. In this talk, we’ll speak on the perception vs. reality between bug bounties, security research, and responsible disclosure. We’ll examine both sides of the vulnerability equation – the researcher and the product owner. We’ll explore the modern bug bounty formats and if they live up to the definition of vulnerability research and if MNCs investing in this service are getting what they were expecting. We’ll also explore the residual risks that companies may be sitting back with as blackhats continue to hold prized vulns for more lucrative online/ offline markets vs. cashing in for smaller payouts in bug bounty programs.
Related topics:

More from this channel

Upcoming talks (0)
On-demand talks (77)
Subscribers (3157)
Welcome to the ISACA Atlanta Chapter web site. We are transitioning 2022 virtual events. For more information please go to ISACA Atlanta Chapter website. Thank you for your understanding. Link to ISACA Atlanta Chapter website - https://engage.isaca.org/atlantachapter/home