Journal 13

Bug bounties are a very important to big tech companies as well as an important tool in the world of cyber security. Bug bounties are ethical hackers and pen testers who try and find vulnerabilities in companies systems for a reward. In this study the researchers looked at the effect and usefulness of bug bounties and how they can benefit these companies. Some of the major findings in the study are very crucial to the understanding of hackers who are capable of finding these vulnerabilities. They found that the hackers supply price is “inelastic” meaning that motivation goes beyond just monetary gain as a lot of these hackers just want experience and practice. As stated this benefits companies that cant grant huge amounts of money for finding bugs in their systems. They also found that business size does not effect the amount of reports for bugs received meaning that these bug bounty reports cover all business fairly equally despite the size of the business. The study concludes that bug bounties are effective and have a broad scope when it comes to helping businesses discover bugs.