Ransomware groups are now using bug bounty tactics
4•redmug•3h ago
Some ransomware gangs are crowd-sourcing exploits and paying researchers for zero-days. It’s basically a black hat bug bounty program. Are we ready for this shift in the threat landscape?
Comments
bigyabai•3h ago
> Are we ready for this shift in the threat landscape?
Depends on how much your business pays for bug bounties, doesn't it?
PaulHoule•3h ago
I made a decision not to get involved in the dark side of the industry. You can end up like
bigyabai•3h ago
Depends on how much your business pays for bug bounties, doesn't it?
PaulHoule•3h ago
https://en.wikipedia.org/wiki/Vardan_Kushnir
https://en.wikipedia.org/wiki/Davis_Wolfgang_Hawke
Even if you go the "ethical" route you can get sued and have your life made miserable. So I quit looking for security holes.