Hack negotiations: Why do platforms with ineffective bounty programs pay a higher price

  • 📰 Cointelegraph
  • ⏱ Reading Time:
  • 25 sec. here
  • 2 min. at publisher
  • 📊 Quality Score:
  • News: 13%
  • Publisher: 51%

Technology Technology Headlines News

Technology Technology Latest News,Technology Technology Headlines

CertiK exec Simon Zhu highlighted that in Web3 minor vulnerabilities can become major overnight and that playing chicken with user deposits is not a responsible approach.

While the recent hacks could’ve been avoided through safe and profitable bug bounty programs, it may be a result of bounty offers not being worth it from the perspective of a white hat or ethical hacker.

“Putting yourself in the shoes of a researcher, if you find an exploit that can create millions of dollars in stolen funds, but the developer is only offering a $5,000 reward, it can create a disproportionate amount of incentive to not take the bounty.” “White hat bug bounty programs are clearly preferable here. Platforms that do not offer a bug bounty program allowing for the safe and profitable disclosure of vulnerabilities may find themselves paying a much higher price.”

 

Thank you for your comment. Your comment will be published after being reviewed.
Please try again later.
We have summarized this news so that you can read it quickly. If you are interested in the news, you can read the full text here. Read more:

 /  🏆 562. in TECHNOLOGY

Technology Technology Latest News, Technology Technology Headlines

Similar News:You can also read news stories similar to this one that we have collected from other news sources.

Criminals Are Using Tiny Devices to Hack and Steal CarsCar thieves are using a series of small hacking tools—sometimes hidden in Nokia 3310 phones or Bluetooth speakers—to break into and steal vehicles. 📷: Michael Duva/Getty Images
Source: WIRED - 🏆 555. / 51 Read more »