Journal Entry 11

Read this article and write a summary reaction to the use of the policies in your journal. Focus primarily on the literature review and the discussion of the findings.

The article studies on freelance security researchers (hackers) that are paid handsomely for identifying vulnerabilities in companies’ code bases called bug bounties. These are essential for companies to keep their security constantly secured and impenetrable. Another reason they are used is because it is a cheaper alternative that is evenly effective as hiring professional security researchers. The study puts bug bounties to test whether they actually improve cybersecurity and are able to successfully identify vulnerabilities their company technical team misses. The lack of vulnerability disclosure policies (VDPs) is the factor that driven this study as companies were unaware of any blind spots they had in their cybersecurity, causing them to be vulnerable to attacks and quickly shut down. Small businesses would begin to experience financial losses and breaches then close within just six months. Bigger companies like Chase exhaust around $600 million on cybersecurity to stay invulnerable to attacks. It is amazing to think that hackers can keep one’s business thriving but also be the factor to bring it down. However, the issue is that there is little known of bug bounty markets and the supply is not as bountiful. Overall, their study does find that bug bounties are as effective and cost-efficient as they are able to work for companies of all sizes and be paid by their performance.