Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

The Uber Breach: Extortion Does Not Equal Bug Bounty

Summary

Bugcrowd CSO David Baker clarifies that bounties pay for in-scope vulnerability findings, while Uber's concealed $100,000 payment was extortion, and failing to report the breach violated the law.
Published
Collected

original ↗

Related coverage

back