Bug Bounty

Mon
14
Apr

German Telekom Bug Bounty Program - Scope changes! Exclude of 3 Bug Types

The official Telekom Bug Bounty Program announced since december 2013 that in 2014 the vulnerability scope guidlines became a persistent upgrade.

A lot of unauthorized individuals have submitted a lot of client-side cross site scripting vulnerabilities by usage of public security scanners software/scripts.

The reports overflowed the telekom program and as consequence a major update to change came up by exclude of several "small" attacks vectors.

They do not block to receive client-side cross site issues because they also need to patch them but the main scope has been changed to major security issues in 2014.

The german telekom decided to disallow to reward the following categories of bugs:

Tue
25
Mar

Barracuda Networks updates Terms and Conditions of the Bug Bounty Program

Barracuda Networks updates Terms and Conditions of the Bug Bounty Program

Today Barracuda Networks informed all their customers about the following Informations, regarding updates in their Bug Bounty program. Barracuda Labs did some changes to their Bounty Program terms and conditions.

The main updates are in the "what classes of bugs are in scope" section and they're also about to pay an higher bug bounty reward for clean nature and high quality reports.

 

The highlights of the Barracuda Networks notification includes:

Pages

Subscribe to RSS - Bug Bounty