Category: Mix

Hackerone logo
25
Jan
2025

Six Years of Proactive Defense: Deribit’s Journey with HackerOne

Q: Why did Deribit launch a bug bounty program? A: I like to view security as an onion where each…

Hackerone logo
25
Jan
2025

Introducing the Wells Fargo Public Bug Bounty Program

Since then, we’ve grown the program, collaborated with HackerOne, and built partnerships within the bug bounty community. The valuable insights…

Hackerone logo
25
Jan
2025

How Crypto and Blockchain Organizations Manage Complex Attack Surfaces With Competitive Security Testing Programs

There are three factors that differentiate crypto and blockchain organizations from other industries; their attack surfaces, their most common vulnerabilities,…

Hackerone logo
25
Jan
2025

How a Privilege Escalation Led to Unrestricted Admin Account Creation in Shopify

In a privilege escalation attack, an attacker gains elevated rights, permissions, or entitlements beyond the intended level associated with their…

Hackerone logo
25
Jan
2025

New York Releases AI Cybersecurity Guidance: What You Need to Know

AI adoption is accelerating in the financial services industry, both as an asset for improving business operations and as a…

Hackerone logo
25
Jan
2025

Breaking Down the OWASP Top 10: Insecure Design

In the absence of these considerations, systems can be retrofitted with ineffective security controls or lack them entirely. This can…

Hackerone logo
25
Jan
2025

The OWASP Top 10 for LLMs 2025: How GenAI Risks Are Evolving

Here is HackerOne’s perspective on the Top 10 list for LLM vulnerabilities, how the list has changed, and what solutions…

Hackerone logo
25
Jan
2025

ROI Isn’t Cutting It: 6 Questions to Help CISOs Better Quantify Security Investments

However, in cybersecurity, quantifying net profit becomes significantly more complex due to the intangible nature of its benefits and the…

Hackerone logo
25
Jan
2025

A Partial Victory for AI Researchers

HackerOne has partnered with security and AI communities to advocate for stronger legal protections for independent researchers. Most recently, HackerOne…

Hackerone logo
25
Jan
2025

Introducing Lightspark’s Public Bug Bounty Program

Expanding Our Bug Bounty Program At Lightspark, we’ve always been focused on security that meets and exceeds industry standards. We’ve…

Hackerone logo
24
Jan
2025

Resurrecting Shift-Left With Human-in-the-loop AI

What’s Needed for Secure by Design Success We spent years understanding the culprits of why “shift-left” controls fail to identify…

Hackerone logo
24
Jan
2025

Hope in the Fight Against Cyber Threats: A New Year’s Message to CISOs

Facing the Reality: Cybersecurity’s Mounting Pressures The cybersecurity landscape is evolving at an unprecedented pace. This past year, breaches resulting…