In Russia, they presented a platform for the work of “white” hackers - information security researchers,
The platform is called The Standoff 365 Bug Bounty,on it, companies can place orders to hack into their infrastructure to reveal vulnerabilities, and hackers will do this for a fee. 366 specialists have already registered.
“The researcher must not only find a vulnerability,but also exploit it, increase privileges in the system, take other steps, as a result of which, for example, you can get user data. This approach has a number of advantages both for researchers, since the rewards will be higher, and for companies that will pay only for what the hacker managed to implement, ”said Yaroslav Babin, Product Director of The Standoff 365 Bug Bounty.
In particular, Positive Technologies will pay security researchers from 20,000 to 393,000 rubles.