Investors Hangout Stock Message Boards Logo
  • Mailbox
  • Favorites
  • Boards
    • The Hangout
    • NASDAQ
    • NYSE
    • OTC Markets
    • All Boards
  • Whats Hot!
    • Recent Activity
    • Most Viewed Boards
    • Most Viewed Posts
    • Most Posted
    • Most Followed
    • Top Boards
    • Newest Boards
    • Newest Members
  • Blog
    • Recent Blog Posts
    • Recently Updated
    • News
    • Stocks
    • Crypto
    • Investing
    • Business
    • Markets
    • Economy
    • Real Estate
    • Personal Finance
  • Market Movers
  • Interactive Charts
  • Login - Join Now FREE!
  1. Home ›
  2. Stock Message Boards ›
  3. User Boards ›
  4. News Desk 2018 Message Board

Enterprises Increasingly Turning to Hackers, Finds

Message Board Public Reply | Private Reply | Keep | Replies (0)                   Post New Msg
Edit Msg () | Previous | Next


Post# of 617763
(Total Views: 119)
Posted On: 06/28/2017 10:00:03 AM
Avatar
Posted By: News Desk 2018
Enterprises Increasingly Turning to Hackers, Finds Bugcrowd 2017 State of Bug Bounty Report

SAN FRANCISCO, CA--(Marketwired - Jun 28, 2017) - Enterprises are turning to the hacker community to help amp up their cyber security protection at an astounding rate, according to Bugcrowd 's 2017 State of Bug Bounty Report.

The report found that upwards of 44 percent of bug bounty programs are run by businesses with more than 500 employees, a 300 percent increase from the prior year. These organizations reward in cash -- the average amount increasing to $451/bug from last year -- or offer alternative rewards like kudos, or swag -- as opposed to paying an hourly rate as they would with traditional assessment methods.

Over the past year, the report shows organizations paid out more than $4 million to a global crowd of over 60,000 security researchers. This represents an increase in payouts of more than 200 percent over the prior year.

"Enterprise adoption of the crowdsourced security model is fast approaching mainstream," said Casey Ellis, founder and CEO of Bugcrowd . "Bug bounties are challenging traditional ways of thinking about cybersecurity. The model addresses the growing complexity and severity of vulnerabilities in software, hardware, and IoT devices -- all of which form the foundation for today's always-on digital economy."

Key takeaways from the report include:

  • Of more than 600 bug bounty programs, 77 percent were private and 23 percent public with primary growth coming from private programs.
  • Vulnerability submissions have steadily risen, including a 67 percent increase in overall submissions and valid submissions have surpassed 52,000
  • Criticality of bugs has increased: the average today is 3.10 versus 3.75 in March, 2016, with a 25 percent increase in critical vulnerabilities identified. Bugs are rated on a scale of 1 to 5 with 1 being the most critical.
  • Cross-site scripting (XXS) and cross site request forgery (CSRF) remain the most reported vulnerabilities across industries.
  • The top five industries embracing bug bounty programs include automotive, leisure/travel, IoT/computer networking, healthcare, and financial services.

Clients such as Fiat Chrysler of America , Pinterest and Instructure run bug bounty programs to identify vulnerabilities created by human error, untimely updating and patching of vulnerable software, and lack of process to catch security vulnerabilities. Given the constantly evolving security landscape, being able to react in near real-time has become a priority for most organizations. In the first two weeks of a bug bounty program researchers find an average of 5 critical vulnerabilities and 60 valid vulnerabilities.

"The days of the legacy cybersecurity firm are drawing to a close," said Q. Wade Billings, vice president of technology services at Instructure. "With 60,000 researchers in the crowd Bugcrowd has amassed the most impressive and valuable security research team on the planet. Instructure's customers entrust us to protect the privacy and integrity of their data. We take this trust seriously, which is why we in turn trust Bugcrowd to ensure our systems are continuously tested and secure."

According to Ellis, "The combination of broken status-quos, a ballooning attack surface, a dearth of defenders, and the increasing proof of active, efficient adversaries are accelerating this trend. With a larger attack surface, we are experiencing a staggering number of data breaches in which traditional security assessment methods are simply not enough to stem the tide. Crowdsourcing addresses many pain points for even the most traditional of organizations, including tackling the shortage of cybersecurity professionals." 

For a full copy of the report, please visit: bugcrowd.com/resources .

For more information on Bugcrowd's customer programs, visit: https://bugcrowd.com/customers . For a list of public programs, visit: https://bugcrowd.com/programs .

Additional Resources:

  • Learn more about Bugcrowd
  • Follow us on Twitter
  • Follow us on LinkedIn

About Bugcrowd The pioneer and innovator in crowdsourced security testing for the enterprise, Bugcrowd harnesses the power of more than 60,000 security researchers to surface critical software vulnerabilities and level the playing field in cybersecurity. Bugcrowd also provides a range of responsible disclosure and managed service options that allow companies to commission a customized security testing program that fits their specific requirements. Bugcrowd's proprietary vulnerability disclosure platform is deployed by Tesla Motors, Fiat-Chrysler, The Western Union Company, Pinterest, Barracuda Networks and Jet.com. Based in San Francisco, Bugcrowd is backed by Blackbird Ventures, Costanoa Venture Capital, Industry Ventures, Paladin Capital Group, Rally Ventures and Salesforce Ventures. Bugcrowd is a trademark of Bugcrowd, Inc. Learn more at www.bugcrowd.com .

Contact: Alexi Foster Highwire PR Email Contact



(0)
(0)








Investors Hangout

Home

Mailbox

Message Boards

Favorites

Whats Hot

Blog

Settings

Privacy Policy

Terms and Conditions

Disclaimer

Contact Us

Whats Hot

Recent Activity

Most Viewed Boards

Most Viewed Posts

Most Posted Boards

Most Followed

Top Boards

Newest Boards

Newest Members

Investors Hangout Message Boards

Welcome To Investors Hangout

Stock Message Boards

American Stock Exchange (AMEX)

NASDAQ Stock Exchange (NASDAQ)

New York Stock Exchange (NYSE)

Penny Stocks - (OTC)

User Boards

The Hangout

Private

Global Markets

Australian Securities Exchange (ASX)

Euronext Amsterdam (AMS)

Euronext Brussels (BRU)

Euronext Lisbon (LIS)

Euronext Paris (PAR)

Foreign Exchange (FOREX)

Hong Kong Stock Exchange (HKEX)

London Stock Exchange (LSE)

Milan Stock Exchange (MLSE)

New Zealand Exchange (NZX)

Singapore Stock Exchange (SGX)

Toronto Stock Exchange (TSX)

Contact Investors Hangout

Email Us

Follow Investors Hangout

Twitter

YouTube

Facebook

Market Data powered by QuoteMedia. Copyright © 2025. Data delayed 15 minutes unless otherwise indicated (view delay times for all exchanges).
Analyst Ratings & Earnings by Zacks. RT=Real-Time, EOD=End of Day, PD=Previous Day. Terms of Use.

© 2025 Copyright Investors Hangout, LLC All Rights Reserved.

Privacy Policy |Do Not Sell My Information | Terms & Conditions | Disclaimer | Help | Contact Us