Bugcrowd: Crowdsourced Security Platform
Bugcrowd is a crowdsourced security platform that facilitated the disclosure of the RovoBlast vulnerability in Atlassian Rovo. The platform rated the issue…
Bugcrowd is a crowdsourced security platform that facilitated the disclosure of the RovoBlast vulnerability in Atlassian Rovo. The platform rated the issue…
Beginning July 27, 2026, GitHub will reduce public bug bounty payouts by at least 50% across all severity levels, moving top rewards…
Curl maintainer Daniel Stenberg ended the project's cash bug bounty after confirmed-vulnerability rate fell below 5% due to AI-generated junk reports. Post-change,…
HackerOne is a bug bounty platform used by Intezer to report the Kiro vulnerability to AWS.
Artificial intelligence (AI) is transforming offensive security by accelerating code analysis, payload generation, and testing workflows. However, the core standard of proving…
kvmCTF is a Google-run bug bounty program focused on KVM vulnerabilities, offering up to $250,000 for guest-to-host escapes. The Januscape exploit was…
Researchers discovered a critical vulnerability in Opera GX, the gaming-oriented browser, that enabled malicious websites to silently install browser mods and exfiltrate…
A Google program that accepts zero-day kernel vulnerability submissions. Bad Epoll was submitted here by Jaeyoung Chung.
YesWeHack is a bug bounty platform that co-discovered the ChocoPoC campaign with Sekoia, highlighting the threat to vulnerability researchers.
Wiz reported the Snowflake GitHub Actions vulnerability through HackerOne, a leading bug bounty platform. The coordinated disclosure led to a same-day fix…