Read this article https://academic.oup.com/cybersecurity/article/7/1/tyab007/6168453?login=true and write a summary reaction to the use of the policies in your journal. Focus primarily on the literature review and the discussion of the findings.
After I study and read the Bug bounty policy article, it makes me know many things about bug bounty policies that it is a policy that the organization or company pays money to the individual employee for identifying the vulnerability of the company’s network or company’s system (company’s cyber infrastructure). So, ethical hackers will be invited by the company for exploring the cyber infrastructure and find the vulnerability by using their penetration testing skills to get the money. From the article, it shows me that a bug bounty program is an efficient tool to benefit the economy which can help the company to have stronger security and it doesn’t matter to the size of the company and level of prominence. Moreover, it found that bug bounty programs also receive fewer valid reports over time because the hackers’ supply is price inelastic, and they want a high bounty. So, if the bug bounty program does not increase its bounties, the company will get fewer reports from the bug bounty program which may affect the security of the company. However, this article also tells me this is just simple information about the bug bounty policy that points out how little people know about the bug bounty markets. Anyway, it makes me think and feel we should give more attention to the bug bounty policy that is useful to the company and business.
