What is the purpose of bug bounty programs used by companies?
- reward security professionals for finding vulnerabilities in the systems of the company
- reward security professionals for discovering malicious activities by attackers in the systems of the company
- reward security professionals for fixing vulnerabilities in the systems of the company
- reward security professionals for breaking into a corporate facility to expose weaknesses in the physical perimeter
Explanation & Hints:
Companies (e.g., Microsoft, Apple, Cisco) and government institutions (e.g., the U.S. Department of Defense) use bug bounty programs to reward security professionals when they find vulnerabilities in websites, applications, or any system. This enables the organization to fix these vulnerabilities before threat actors exploit them. |