From the course: Launch a Bug Bounty Program
Unlock the full course today
Join today to access over 25,000 courses taught by industry experts.
Your company’s public bug bounty disclosure webpage
From the course: Launch a Bug Bounty Program
Your company’s public bug bounty disclosure webpage
- The primary goal of the bug bounty program is to attract skilled researchers and make your program accessible and visible. A well-crafted webpage is essential for this purpose. There are some key elements to your bug bounty disclosure webpage. Let's look into those. First is introduction. Begin with the concise and engaging introduction that outlines the purpose and benefits of your bug bounty program. Eligibility. Clearly define who is eligible to participate in your program. Specify any age or location requirements, as well as any employee restrictions. Scope. Describe the scope of the program including the product, systems, or services that researchers are allowed to test. Rewards. Explain the reward structure including how vulnerabilities will be treated and rewarded. Be specific about the reward amounts for each severity category. Submission guidelines. Provide clear guidelines on how researchers should submit vulnerability reports. Include information about report format…
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.