Switch to the dark mode that's kinder on your eyes at night time.

Switch to the light mode that's kinder on your eyes at day time.

Switch to the dark mode that's kinder on your eyes at night time.

Switch to the light mode that's kinder on your eyes at day time.

WebCEOSEO Tools
in , ,

Facebook’s Bug Bounty Program Nears Its 10th Birthday

facebook’s-bug-bounty-program-nears-its-10th-birthday

For the third year in a row, the company awarded its highest bug bounty payout to date
kbeis/iStock

WebCEOSEO Tools

By David Cohen

15 hours ago

Facebook’s bug bounty program is approaching its 10th birthday, and the social network said over 50,000 researchers have joined the program to date since its debut in July 2011, with roughly 1,500 of them, from 107 countries, being awarded bounties.

Security engineering manager Dan Gurfinkel shared some highlights in a blog post this week:

  • Since 2011, Facebook has received more than 130,000 reports, of which over 6,900 were awarded bounties.
  • So far, this year, we’ve awarded over $1.98 million to researchers from more than 50 countries.
  • Facebook received some 17,000 reports so far in 2020, and it issued bounties on over 1,000 of them.
  • For the third year in a row, the company awarded its highest bug bounty payout to date.
  • The top three countries based on bounties awarded this year are India, Tunisia and the U.S.

Gurfinkel added that when the program started in 2011, its focus was on the Facebook web page, and it now covers all of the company’s web and mobile clients across its family of applications, including Oculus and Workplace From Facebook.

Its three areas of focus are:

  • Innovating ways to direct and incentivize security research into emerging risk areas, such as misuse of Facebook data by app developers or security bugs in third-party apps and websites.
  • Building tools for the research community to make it easier and more rewarding to hunt for bugs on Facebook.
  • Creating opportunities for collaboration and networking at live hacking events and Facebook’s BountyCon conference.

Gurfinkel wrote, “When we receive a valid report that requires a fix, we look not only at the report as it was submitted, but at the underlying area of code to understand the issue in greater depth. Sometimes this proactive investigation leads us to discover related improvements we can make to better protect people’s security and privacy.”

What do you think?

WebCEOSEO Tools

Comments

Leave a Reply

Your email address will not be published. Required fields are marked *

Loading…

0
WebCEOSEO Tools
ad-tech-deals-are-flowing-again-as-experian-buys-tapad-for-$280-million

Ad-Tech Deals Are Flowing Again as Experian Buys Tapad for $280 Million

local-seo-&-google-my-business-optimization-with-amanda-jordan-[podcast]

Local SEO & Google My Business Optimization with Amanda Jordan [Podcast]

Back to Top
WebCEOSEO Tools
close

Add to Collection

No Collections

Here you'll find all collections you've created before.

Close