Cloudflare on Tuesday added a public bug bounty program, the vendor’s first such initiative since the cloud security company started its bug bounty program in 2014.

In a Feb. 1 blog post, the company said the first iteration of its bug bounty program was pure vulnerability disclosure without cash bounties. In 2018, Cloudflare added a private bounty program, but now anyone interested can report bugs related to Cloudflare products on its public site hosted on HackerOne’s platform.

++

“Bug bounties have their merit in the cybersecurity field, but they still fall into the category of focusing efforts post-deployment and being reactive”, said Archie Agarwal, founder and CEO at ThreatModeler.

Read the full article here

If you’d like to learn more about ThreatModeler’s capabilities, you can contact us here.

ThreatModeler

ThreatModeler revolutionizes threat modeling during the design phase by automatically analyzing potential attack surfaces. Harness our patented functionalities to make critical architectural decisions and fortify your security posture.

Learn more >

CloudModeler

Threat modeling remains essential even after deploying workloads, given the constantly evolving landscape of cloud development and digital transformation. CloudModeler not only connects to your live cloud environment but also accurately represents the current state, enabling precise modeling of your future state

Learn more >

IaC-Assist

DevOps Engineers can reclaim a full (security-driven) sprint with IAC-Assist, which streamlines the implementation of vital security policies by automatically generating threat models through its intuitive designer.

Learn more >