Bug bounty program and 4chan

In late April, Chris Poole, also known as moot, founder 4chan, announced that website was violated and they had leaked . Αν και καθυστερημένα, για την πρόληψη μελλοντικών τέτοιων γεγονότων, η εταιρεία ανακοίνωσε, όχι μόνο επιπλέον μέτρα ασφαλείας, αλλά και ένα πρόγραμμα .

4chan

Poole announced it reward program to those who discover on the company's website a few hours ago. The new vulnerability disclosure program is powered by hackerone.

“We hope that by officially rewarding security researchers who submit τα που σχετίζονται με την ασφάλεια, θα είμαστε σε καλύτερη θέση να ανιχνεύουμε και να αντιμετωπίζουμε τρωτά σημεία που μπορεί να επηρεάσουν την ιστοσελίδα και τους χρήστες της” ανέφερε ο Poole.

"Security remains a constant priority and commitment for us. Thank you again for being with us, and sorry if we have disappointed you. ”

The websites included in bug bounty are 4chan.org, 4channel.org, 4cdn.org and their subdomains.

The company explains that if vulnerabilities are detected in third-party services (CloudFlare or nginx), they should refer to those companies rather than 4chan. However, the company is willing to publish the names of those who find such defects in its Hall of Fame.

Currently, 4chan does not offer any cash rewards. Those who disclose they will only be recognized in the company's Hall of Fame and will have a 4chan Pass valid for one year. The value of the 4chan Pass does not exceed 20 dollars.

The reward of the company does not promise the arrival of large security researchers, as they are proposing to deal with the discovery of vulnerabilities by companies paying inexpensively.

Security experts who may have questions about 4chan's new bug bounty program can email security at 4chan.org.

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.087 registrants.

Written by Dimitris

Dimitris hates on Mondays .....

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).