
Managing Bug Bounty Programs At Scale - Dr. Jared DeMott - PSW #796
SEYISHAY
Description
<p>Jared has a long, and outstanding, history in cybersecurity. Today, he works for Microsoft helping them run and respond to bug bounty reports. The scale is massive and I think we can all learn a thing or two about vulnerability management and bug bounties!</p> <p>Segment Resources: <a href= "https://www.microsoft.com/en-us/msrc/bounty?rtc=1">https://www.microsoft.com/en-us/msrc/bounty?rtc=1</a></p> <p><a href= "https://www.microsoft.com/en-us/msrc">https://www.microsoft.com/en-us/msrc</a></p> <p><a href= "https://msrc.microsoft.com/report/vulnerability/new">https://msrc.microsoft.com/report/vulnerability/new</a></p> <p><a href= "https://www.microsoft.com/en-us/msrc/bounty">https://www.microsoft.com/en-us/msrc/bounty</a></p> <p><a href= "https://msrc.microsoft.com/blog/">https://msrc.microsoft.com/blog/</a></p> <p><a href= "https://jobs.careers.microsoft.com/global/en/search?q=msrc&l=en_us&pg=1&pgSz=20&o=Relevance&flt=true"> https://jobs.careers.microsoft.com/global/en/search?q=msrc&l=en_us&pg=1&pgSz=20&o=Relevance&flt=true</a></p> <p><a href= "https://www.microsoft.com/bluehat/">https://www.microsoft.com/bluehat/</a></p> <p> In the Security News: Lora projects are popular, simple checksums are not enough, WinRAR: shareware or native OS?, ATM software is vulnerable, attackers could learn from security researchers (but lets hope they don’t), NoFilter and behavior by design, Apple vs. A security researcher: there are no winners, sneaky npm packages, faster Nmap scans, kali on more phones, more LOl drivers, comparing security benchmarks to the real world, tunnelcrack and why VPNs are over-hyped, Ubuntu has lost its mind, and there’s a Python in the sheets! All that and more on this episode of Paul’s Security Weekly!</p> <p>Visit <a href= "https://www.securityweekly.com/psw">https://www.securityweekly.com/psw</a> for all the latest episodes!</p> <p>Follow us on Twitter: <a href= "https://www.twitter.com/securityweekly">https://www.twitter.com/securityweekly</a> </p> <p>Like us on Facebook: <a href= "https://www.fac