Pornhub Launches Bug Bounty Programme For Security Researchers

Pornhub, one of the world’s biggest adult sites, is launching a bug bounty program for security researchers and pornography enthusiasts who are able to identify flaws on its platform.

Hunters will be paid a minimum of $50 (£34.53) for each vulnerability discovered, with up to $25,000 (£17,263) on offer for particularly vicious flaws, although the site notes that 23 reports have already been resolved.

Targeted

Successful applicants to the scheme will need to be the first person to responsibly disclose an unknown issue, which the Pornhub security team has 30 days to respond to, and up to 90 days to implement a fix base on the severity of the report.

However there are some restrictions, such as users not being allowed to carry out Denial of Service (DDoS) attacks on Pornhub, or even carry out physical attacks on the company’s offices or data centres.

Social engineering tactics are also not allowed, such as phishing attacks against Pornhub employees, and researchers are not allowed to compromise user accounts.

“Security is a top priority at Pornhub,” the company said. “We strive to work with skilled security researchers to improve the security of our service. If you believe you’ve found a security bug in the services listed in our scope, we will be happy to work with you to resolve the issue promptly and ensure you are fairly rewarded for your discovery.”

Due to their louche nature, adult sites have proved attractive propositions to cyber-criminals in the past.

Last December, leading sites including PornHub, YouPorn and Xhamster were revealed as victims of a wide-ranging malvertising attack which left their users at risk of being exposed to malware.

The sites were also targeted back in September by attacks which infiltrated the advertising networks that serve up ads for popular online destinations.

What do you know about Internet security? Find out with our quiz!

Mike Moore

Michael Moore joined TechWeek Europe in January 2014 as a trainee before graduating to Reporter later that year. He covers a wide range of topics, including but not limited to mobile devices, wearable tech, the Internet of Things, and financial technology.

Recent Posts

Apple Announces Record Share Buyback, Amid iPhone Sales Decline

Investor appeasement? Apple unveils huge $110 billion share buyback program, as sales of iPhone decline…

1 min ago

Tesla Backs Away From Gigacasting Manufacturing – Report

Tesla retreats from pioneering gigacasting manufacturing process, amid cost cutting and challenges at EV giant

17 hours ago

US Urges No AI Control Of Nuclear Weapons

No skynet please. After the US, UK and France pledge human only control of nuclear…

18 hours ago

LastPass Separates From Parent After Security Incidents

New chapter for LastPass as it becomes an independent company to focus on cybersecurity, after…

20 hours ago

US To Ban Huawei, ZTE From Certifying Wireless Kit

US FCC seeks to ban Chinese telecom firms at centre of national security concerns from…

1 day ago