To get in touch about speaking at your event, email [email protected]

cje
press Dec 7, 2017 · Ars Technica

Uber used bug bounty program to launder blackmail payment to hacker

Ars Technica reported in 2017 that Uber allegedly used its bug bounty program to conceal a blackmail payment to a hacker by framing it as a standard reward. Casey Ellis, founder of vulnerability disclosure platform Bugcrowd, commented on how the incident damaged trust in bug bounty programs and highlighted the need for transparency in responsible disclosure practices.

Source description — as published

Alleges that Uber used its bug bounty program to conceal a payment to a hacker, framing it as a reward rather than a ransom.