Uber Announces Bug Bounty Program, To Pay Up To $10,000 To Friendly Hackers (wired.com) 18
An anonymous reader writes about Uber's newly announced bug bounty program: Taxi aggregator service says it is willing to pay security researchers thousands of dollars if they are able to find vulnerabilities in its apps and websites. The company says that it will reward security researchers who are able to deface its homepage or expose users' email addresses a sum of $5,000. A sophisticated breach, which presumably allows an attacker to get hold of Uber accounts, or facilitate execution of malicious code on an Uber production server will grant him or her up to $10,000. From a TechCrunch report, "Uber's program has several unique components. First of all, it's trying to be as direct as possible with researchers when it comes to ground rules and payments. Greene says one of the issues that researchers/hackers have with these programs is that the payment system can be capricious. Someone finds a bug and a negotiation commences over how valuable it its. He says that this program is going to be crystal clear about what Uber will pay, offering up to $10,000 for a critical bug. Secondly, the company wants to reward loyal researchers, who report lots of bugs, so they are setting up a loyalty program."
Hmm (Score:2)
Re: (Score:2)
I agree, but it's hard to justify security to upper management until they see a threat. Your best bet is to find two vulnerabilities. Exploit one anonymously, watch them raise the bounty and collect on the second.
Re: (Score:2)
Hacking Uber != Hacking cars used by Uber drivers! (Score:2)
There is absolutely no relation relation between the two. It's "High time" that /. admins edit submissions to remove editorial junk like this.
Re: (Score:1)
Re: (Score:1)
(I only noticed that you replied when seeing that my comment had been modded) /. hadn't been doing much of recently and are much appreciated.
Thank you for noting that the sentence was irrelevant, removing it & then replying to inform me. These are all things that
How much for...? (Score:2)
Some more details (Score:2)
Will it be fair? (Score:1)
Better add a couple more zeros on the end (Score:2)
To dumb! (Score:1)
Enough for living? (Score:2)