Now the ransomware gangs are offering bug bounties

It is an accepted practice for software vendors to offer a bug bounty to people who discover a flaw in their software, and report it to them. The vendor can then, hopefully, fix the vulnerability before a threat actor can exploit it.

Now the ransomware gangs are at it – moving from being gangs running opportunistic ransomware attacks to criminal organisations operating RansomwareOps and mimicking legitimate businesses:

LockBit adds a bug bounty program in its revamped ransomware-as-a-service operation – The Record by Recorded Future

This is the reason you need a cyber security plan.

If you do not have one, or want to check yours is up to the job, or you have a third party running your cybersecurity and want to get an understanding of what they should be doing for you – we have the Master Class for you:

Further Reading

Bug bounties are a vendor’s shortcut to software vulnerabilities – UPDATED 26 April 2022 – Smart Thinking Solutions

Bug programmes are a key step in our cyber-security – Smart Thinking Solutions

Please Note:

I am on leave so the news this week is “in brief”. You can still contact me via the contact page and Octagon Technology.

ransomware 200