Pornhub Launches Bug Bounty Programme For Security Researchers

Pornhub, one of the world’s biggest adult sites, is launching a bug bounty program for security researchers and pornography enthusiasts who are able to identify flaws on its platform.

Hunters will be paid a minimum of $50 (£34.53) for each vulnerability discovered, with up to $25,000 (£17,263) on offer for particularly vicious flaws, although the site notes that 23 reports have already been resolved.

Targeted

Successful applicants to the scheme will need to be the first person to responsibly disclose an unknown issue, which the Pornhub security team has 30 days to respond to, and up to 90 days to implement a fix base on the severity of the report.

However there are some restrictions, such as users not being allowed to carry out Denial of Service (DDoS) attacks on Pornhub, or even carry out physical attacks on the company’s offices or data centres.

Social engineering tactics are also not allowed, such as phishing attacks against Pornhub employees, and researchers are not allowed to compromise user accounts.

“Security is a top priority at Pornhub,” the company said. “We strive to work with skilled security researchers to improve the security of our service. If you believe you’ve found a security bug in the services listed in our scope, we will be happy to work with you to resolve the issue promptly and ensure you are fairly rewarded for your discovery.”

Due to their louche nature, adult sites have proved attractive propositions to cyber-criminals in the past.

Last December, leading sites including PornHub, YouPorn and Xhamster were revealed as victims of a wide-ranging malvertising attack which left their users at risk of being exposed to malware.

The sites were also targeted back in September by attacks which infiltrated the advertising networks that serve up ads for popular online destinations.

What do you know about Internet security? Find out with our quiz!

Mike Moore

Michael Moore joined TechWeek Europe in January 2014 as a trainee before graduating to Reporter later that year. He covers a wide range of topics, including but not limited to mobile devices, wearable tech, the Internet of Things, and financial technology.

Recent Posts

OpenAI Hit By Austrian Complaint Over ChatGPT ‘False Data’

Rights group argues ChatGPT tendency to generate false information on individuals violates GDPR data protection…

1 day ago

EU Designates Apple’s iPad OS As DMA ‘Gatekeeper’

European Commission says Apple's iPadOS is 'gatekeeper' due to large number of businesses 'locked in'…

1 day ago

Beating the Barbarians in the Cloud

As the cloud continues to be an essential asset for all businesses, developing and maintaining…

1 day ago

Austria Conference Calls For Controls On ‘Killer Robots’

Internatinal conference in Vienna calls for controls on AI-powered autonomous weapons to ensure humans remain…

1 day ago

Taiwanese Chip Giant Exits China Mainland

Major Taiwan chip assembly and test firm KYEC to sell Jiangsu subsidiary, exit mainland China…

1 day ago

Deepfakes: More Than Skin Deep Security

As deepfake technology continues to blur the lines between reality and deception, businesses and individuals…

1 day ago