top | item 41534767

(no title)

planetpluta | 1 year ago

Maybe not “immediate” but withholding rewards results in fewer researchers participating in bounty programs which defeats the purpose.

discuss

order

jtbayly|1 year ago

Not if the (true) purpose of having the bounty program is simply PR, rather than an honest desire to find and fix bugs.

tptacek|1 year ago

The true purpose of these programs is to direct research to specific threats and engineering areas.