S1E03 - Bug Bounties

S1E03 - Bug Bounties

Update: 2024-03-18
Share

Description

Welcome to the Boring AppSec Podcast! In Episode 3, we discuss all things bug bounties. The researcher side as well as the program owner's side. Enter at your own will as we have a lot of hot takes.




References:


We will try and add information about all the references we make here. Please enter rabbit holes at will :) 



  1. Bug Bounty Platforms



2. Vulnerability Disclosure Process - https://www.cisa.gov/coordinated-vulnerability-disclosure-process 


3. Google’s Project Zero vulnerability disclosure policy - https://googleprojectzero.blogspot.com/p/vulnerability-disclosure-faq.html  


4. CVSS Calculator - https://nvd.nist.gov/vuln-metrics/cvss/v3-calculator  


5. Handling A Bug Bounty program From A Blue Team Perspective - https://www.youtube.com/watch?v=Vgy150R4bRw&t=0s


6. Consumer Bug Bounty Panel - https://www.youtube.com/watch?v=Y8X6pV7rdbA&t=0s




Contacting Anshuman



  1. LinkedIn: ⁠⁠⁠https://www.linkedin.com/in/anshumanbhartiya/⁠⁠⁠ 

  2. Twitter: ⁠⁠⁠https://twitter.com/anshuman_bh⁠⁠⁠ 

  3. Website: ⁠⁠⁠https://anshumanbhartiya.com/⁠⁠⁠

  4. Instagram: ⁠⁠https://www.instagram.com/anshuman.bhartiya/⁠⁠ 

  5. YouTube: ⁠⁠https://www.youtube.com/@AnshumanBhartiya⁠⁠   


Contacting Sandesh



  1. LinkedIn: ⁠⁠⁠https://www.linkedin.com/in/anandsandesh/⁠⁠⁠ 

  2. Twitter: ⁠⁠⁠https://twitter.com/JubbaOnJeans/⁠⁠⁠ 

  3. Website: ⁠⁠⁠https://boringappsec.substack.com/⁠⁠⁠ 

Comments 
In Channel
S2E9 - Ali Mesdaq

S2E9 - Ali Mesdaq

2025-03-0344:27

S2E8 - Ankita Gupta

S2E8 - Ankita Gupta

2025-02-2443:10

S2E7 - Jonathan Cran

S2E7 - Jonathan Cran

2025-02-1745:40

S2E5 - Drew Dennison

S2E5 - Drew Dennison

2025-02-0142:15

S2E4 - Varun Badhwar

S2E4 - Varun Badhwar

2025-01-2747:05

S2E3 - Robert Wood

S2E3 - Robert Wood

2025-01-2044:05

S2E2 - Dustin Lehr

S2E2 - Dustin Lehr

2025-01-1348:52

S2E1 - Jimmy Mesta

S2E1 - Jimmy Mesta

2025-01-0654:00

S1E09 - Incidents

S1E09 - Incidents

2024-05-1337:48

S1E05 - Threat Modeling

S1E05 - Threat Modeling

2024-04-0101:01:47

S1E03 - Bug Bounties

S1E03 - Bug Bounties

2024-03-1801:11:17

S1E02 - First Security Hire

S1E02 - First Security Hire

2024-03-1101:07:31

loading
00:00
00:00
x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

S1E03 - Bug Bounties

S1E03 - Bug Bounties

The Boring AppSec Podcast