press Dec 7, 2017 · Ars Technica
Uber used bug bounty program to launder blackmail payment to hacker
Ars Technica reported in 2017 that Uber allegedly used its bug bounty program to conceal a blackmail payment to a hacker by framing it as a standard reward. Casey Ellis, founder of vulnerability disclosure platform Bugcrowd, commented on how the incident damaged trust in bug bounty programs and highlighted the need for transparency in responsible disclosure practices.
Source description — as published
Alleges that Uber used its bug bounty program to conceal a payment to a hacker, framing it as a reward rather than a ransom.