Tuesday, July 05, 2022

U.S. Defense Department announces launch of a new bug bounty program

Good news! Good approach! 

The prize money is clearly too stingy and wrongly allocated! The program seems to be narrowly focused only on "any publicly accessible information systems, web property, or data owned, operated, or controlled by DoD."(Source)

Hopefully, they keep any of the current ideological baggage out of this contest!

"Today, the Department of Defense (DoD) announced that the Chief Digital and Artificial Intelligence Office (CDAO), the Directorate for Digital Services and the Department of Defense Cyber Crime Center (DC3) are launching the “Hack U.S.” bug bounty program. ...
To encourage researchers to participate, the DoD will offer a total of $110,000 for vulnerability disclosures. Payouts range between $1,000 for critical severity reports, $500 for high severity reports, and $3,000 for those in additional special categories. ...
According to researchers, the global bug bounty market is in a state of growth, valued at $223.1 million in 2020, and is expected to reach $5,465.5 million by 2027. ..."

DoD announces launch of a new bug bounty program | VentureBeat

No comments: