Fad or Future - Getting Past the Bug Bounty Hype

Fad or Future - Getting Past the Bug Bounty Hype

Black Hat via YouTube Direct link

How to get application teams engaged

27 of 35

27 of 35

How to get application teams engaged

Class Central Classrooms beta

YouTube videos curated by Class Central.

Classroom Contents

Fad or Future - Getting Past the Bug Bounty Hype

Automatically move to the next video in the Classroom when playback concludes

  1. 1 Intro
  2. 2 About me
  3. 3 About the panelists
  4. 4 Scope of the bounty programs
  5. 5 Numbers and results
  6. 6 What is a bug bounty
  7. 7 What do you wish youd known before launching
  8. 8 How to forecast and plan both resourcing and budget
  9. 9 Understanding the value of a vulnerability
  10. 10 Communication is key
  11. 11 Mature OPSEC practice
  12. 12 Competition
  13. 13 Complementing Security
  14. 14 Silent Circle
  15. 15 Training
  16. 16 Private vs Public
  17. 17 Vendor Agreements
  18. 18 Bug Bounty Program
  19. 19 Disclosure
  20. 20 Balancing the Bounty
  21. 21 Tactical Resources
  22. 22 Team Structure
  23. 23 Handling lowquality bugs
  24. 24 Lowquality bugs
  25. 25 Respect your research
  26. 26 Technical risk vs business risk
  27. 27 How to get application teams engaged
  28. 28 Prioritize internally
  29. 29 Technical vs business risk
  30. 30 Reward
  31. 31 Out of Scope
  32. 32 Rewards
  33. 33 Scope
  34. 34 Charles
  35. 35 Patrick F

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.