Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
Yahoo Bug Bounty Program is Now Live (yahoodevelopers.tumblr.com)
50 points by michiel3 on Oct 31, 2013 | hide | past | favorite | 9 comments


Not long ago, there was a submission about a bug reporter didn't get any kind of reward (except a coupon) for reporting a bug for Yahoo!

Kudos to Yahoo! for listening to community's feedback.


Relevant blog post by Yahoo! from earlier this month:

http://yahoodevelopers.tumblr.com/post/62953984019/so-im-the...


Shame that Microsoft still have such a terrible bug bounty programme.

http://www.microsoft.com/security/msrc/report/bountyprograms...


"we promised to that our program will would address the following areas:"?!


A big yahoo bug is you cannot register an account without giving them a mobile phone number.

I don't own a mobile phone with a phone number.

Very strange way to register people.


Please email marissamayer@tumblr.com to claim your $15,000.


But I wanted the tee-shirt! (we're never happy)


The rewards bullet point says you can still get a shirt if you want. Hope is not lost!


Someone you should tell them about the mother of all security bugs: NSA has full access to their datacenters.

They might want to fix that one first, before caring about the tiny little ones. It doesn't look like they are in a hurry to fix that one yet, though:

http://www.washingtonpost.com/blogs/the-switch/wp/2013/10/30...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: