OnePlus is launching a bug bounty program after disclosing the second breach in two years

Subscribers:
4,200
Published on ● Video Link: https://www.youtube.com/watch?v=-2yUCsCf3mc



Duration: 2:32
16 views
1


Reported today on The Verge

For the full article visit: https://www.theverge.com/2019/12/19/21030187/oneplus-bug-bounty-program-data-breach-november-january-hackerone-prize

Reported today in The Verge.

OnePlus is launching a bug bounty program after disclosing the second breach in two years

OnePlus announced its second data breach in two years back in November, and the phone maker promised to launch a bug bounty program by the end of the year to beef up its security. A bug bounty program could, in theory, prevent future breaches. Today, OnePlus announced that its bug bounty program is now live.

If you find a bug or vulnerability, you can submit it here (although you'll need to make an account first), and it seems the company will be updating a leaderboard of top contributors and featuring the top three contributors on the bug bounty program's main page.

On a page about the program, OnePlus says it will offer rewards according to the following tiers:

Special cases: up to $7,000

Critical: $750–$1,500

High: $250–$750

Medium: $100–$250

Low: $50–$100

However, it's unclear what the criteria are for each tier, and OnePlus only says that the reward you might receive is "determined based on vulnerability severity and actual business impact."

In November, OnePlus also said it would be partnering with a "world-renowned security platform next month." Today, OnePlus announced that platform is bug bounty startup HackerOne. The collaboration with HackerOne is starting as a pilot program where select security researchers will be invited to test against OnePlus' systems, and OnePlus says a public version of the program will launch in 2020.

In November's breach, OnePlus said that some customer names, contact numbers, emails, and shipping addresses were possibly exposed, but payment and account information was apparently safe. The company didn't disclose how many customers were affected. In January 2018, OnePlus said that a security breach affecting up




Other Videos By Colin Boyd SEO


2019-12-20The dark side of tech: why the Guardian asks tough questions about Silicon Valley
2019-12-20All I want for Christmas: A custom username for each subreddit
2019-12-20OnePlus launches a bug bounty program with rewards of up to $7,000
2019-12-20The 2020 Ford Mustang GT350 and GT350R Heritage Editions are killer throwbacks - Roadshow
2019-12-20Lincoln is heating up windshield wiper tech with the VisioWiper system - Roadshow
2019-12-20Apple reportedly working on satellite technology for direct wireless iPhone data transmission
2019-12-20Top 10 Best MMOs
2019-12-2016 predictions for social networks in 2020
2019-12-20France slaps Google with $166M antitrust fine for opaque and inconsistent ad rules
2019-12-19Anybody can now make HomeKit accessories
2019-12-19OnePlus is launching a bug bounty program after disclosing the second breach in two years
2019-12-19TiVo to merge with Xperi to create ‘one of the largest licensing companies in the world’
2019-12-19How to live-stream tonight’s 2020 Democratic debate
2019-12-19Scientists create mesmerizing color-changing chocolate without additives
2019-12-19Z-Wave is making a huge change so it doesn’t get left behind in the smart home wars
2019-12-19US votes to raise age for buying tobacco — including e-cigs — from 18 to 21
2019-12-19New York governor promises net neutrality legislation in 2020 - CNET
2019-12-19Christopher Nolan doesn't give anything away in intriguing new Tenet trailer - CNET
2019-12-19Get or give unlimited tech support for just $85 - CNET
2019-12-19See Michelangelo's David as a super-tiny 3D-printed sculpture - CNET
2019-12-19Senate passes bill to stop robocalls - CNET