Researchers’ blog

Subscribe to our RRS feed to stay up-to-date with our latest blog articles for researchers.

What is a bug bounty platform? And what are the alternatives? 

Bug Bounty & VDP

News

July 25, 2022

Organizations run bug bounty programs as a way to identify and fix vulnerabilities within their systems, assets, and applications. They work by giving ethical hackers permission to test for vulnerabilities and provide a report of what they discover in an effort to reduce their attack surface. Altern

Continue reading: What is a bug bounty platform? And what are the alternatives? 

Lighten up; Dark Theme is here! 

Company News

Product Updates

July 22, 2022

Dark theme is a popular request for every application, website, or operating system (OS) nowadays. There are many reasons for that; some are merely preferences in style, and others are accessibility and health concerns (I think most of us have gotten a headache from staring at overly bright screens

Continue reading: Lighten up; Dark Theme is here! 

5 considerations when choosing a bug bounty platform

Bug Bounty & VDP

News

July 20, 2022

Anyone assessing the best bug bounty platforms will likely encounter many long lists of platform features. These can be overwhelming and leave you uncertain about how to make the right choice for your company’s cybersecurity needs. So, how do you make an informed choice from the diversity of platfor

Continue reading: 5 considerations when choosing a bug bounty platform

Enhanced Reporting Experience

Company News

Product Updates

July 1, 2022

In this release, we focused on improving your reporting experience. A quick typo or a cluttered code block is a thing of the past with code syntax highlighting and a native spell check everywhere! New changes to your reporting experience in a nutshell: Native browser spell check in Markdown Code syn

Continue reading: Enhanced Reporting Experience

New EU law is changing the game for digital goods producers

Trust & Compliance

News

June 27, 2022

In January 2022, a new EU law came into effect, enforcing a two-year warranty period on digital goods (such as games and software). Directive (EU) 2019/771, EU Member States is now fully in effect and is challenging digital goods producers to improve and maintain quality and security in the interest

Continue reading: New EU law is changing the game for digital goods producers

4 ways Intigriti empowers its security researcher community to thrive

Bug Bounty & VDP

News

June 27, 2022

Building a strong ecosystem is key to optimizing the collective benefit for both Intigriti clients and researchers. By creating more value for one entity, it provides opportunities and brings stability to the other. At Intigriti, for example, we support the community to become better hackers, and in

Continue reading: 4 ways Intigriti empowers its security researcher community to thrive

Bug Bytes #175 – 60 RCEs in 60min, Free Google Play Store ebooks & How to easily parse Burp Project files

Bug Bytes

Bug Bytes

June 22, 2022

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. CLICK HERE TO SUBSCRIBE This issue covers

Continue reading: Bug Bytes #175 – 60 RCEs in 60min, Free Google Play Store ebooks & How to easily parse Burp Project files

Bug Bytes #174 – From $0 bounties to $150k, Hacker summer school & How to hack Apache Pinot

Bug Bytes

Bug Bytes

June 15, 2022

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. CLICK HERE TO SUBSCRIBE This issue covers

Continue reading: Bug Bytes #174 – From $0 bounties to $150k, Hacker summer school & How to hack Apache Pinot

U.S. Justice Department will no longer bring charges against good-willed security researchers

Trust & Compliance

News

June 14, 2022

There was big news for the crowdsourced ethical hacking community on May 19th this year. The U.S. Department of Justice revised its policy in respect to “ethical” or “good-faith” hackers. It will no longer prosecute them under the Computer Fraud and Abuse Act (CFAA). This is a welcome step forward i

Continue reading: U.S. Justice Department will no longer bring charges against good-willed security researchers

Intigriti achieves ISO 27001 – the industry’s most highly regarded security standard

Trust & Compliance

News

June 10, 2022

Intigriti, Europe’s leading bug bounty and vulnerability disclosure platform, is pleased to announce that it has attained ISO 27001 certification–the rigorous international standard that specifies best practices for information security management systems (ISMS). ISO 27001 certification guarantees t

Continue reading: Intigriti achieves ISO 27001 – the industry’s most highly regarded security standard

Getting (back) together to hack! 

Company News

Product Updates

June 9, 2022

Live Hacking Events (LHEs) are something special for everyone involved. Unlike regular, continuous bug bounty programs, LHEs really focus the attention of a select group of outstanding researchers on a very limited scope with equally limited time. And while we have had some very successful remote LH

Continue reading: Getting (back) together to hack! 

Bug Bytes #173 – JDBC attacks reloaded, RCE via email & Benchmarking port scanners

Bug Bytes

Bug Bytes

June 8, 2022

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. CLICK HERE TO SUBSCRIBE This issue covers

Continue reading: Bug Bytes #173 – JDBC attacks reloaded, RCE via email & Benchmarking port scanners

Bug Bytes #172 – Pre-hijacking accounts, CSP bypass using WordPress & Unusual SSRF + Phishing chain

Bug Bytes

Bug Bytes

June 1, 2022

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. CLICK HERE TO SUBSCRIBE This issue covers

Continue reading: Bug Bytes #172 – Pre-hijacking accounts, CSP bypass using WordPress & Unusual SSRF + Phishing chain

66% of cybersecurity talent are considering bug bounty hunting as a full-time career

Bug Bounty & VDP

News

June 1, 2022

The unique occupation of bug bounty hunting offers a heightened level of freedom and lifestyle that traditional jobs cannot provide, but which today’s security professionals’ desire. Intigriti set out to explore this trend further. Intigriti’s second annual Ethical Hacker Insights Report reveals bug

Continue reading: 66% of cybersecurity talent are considering bug bounty hunting as a full-time career

Bug Bytes #171 – New Android Web Views attacks, Arbitrary file theft on Android & Scanning for PII in images

Bug Bytes

Bug Bytes

May 25, 2022

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. CLICK HERE TO SUBSCRIBE This issue covers

Continue reading: Bug Bytes #171 – New Android Web Views attacks, Arbitrary file theft on Android & Scanning for PII in images

Bug Bytes #170 – Evasive vulnerabilities, Hacking Swagger UI & Reverse engineering REST APIs

Bug Bytes

Bug Bytes

May 18, 2022

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. CLICK HERE TO SUBSCRIBE This issue covers

Continue reading: Bug Bytes #170 – Evasive vulnerabilities, Hacking Swagger UI & Reverse engineering REST APIs

New insightful resources

Company News

Product Updates

May 13, 2022

Bug Bounty, Continuous security testing… All relatively new terms and definitely the new way of improving security maturity. But how do you get started? The available information found online is often unstructured, inconsistent and the amount can be overwhelming. Therefore we decided to start from t

Continue reading: New insightful resources

Bug Bytes #169 – Psychic signatures, Pwning Cloudflare, Z-winK University & The Bug Hunter’s Methodology for App Analysis

Bug Bytes

Bug Bytes

May 11, 2022

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. CLICK HERE TO SUBSCRIBE This issue covers

Continue reading: Bug Bytes #169 – Psychic signatures, Pwning Cloudflare, Z-winK University & The Bug Hunter’s Methodology for App Analysis

Intigriti invites cybersecurity players to join its global Partner Program initiative 

Company News

News

May 10, 2022

Intigriti’s Partner Program brings organizations with strong cybersecurity services, solutions, or networks, an impactful framework to bring crowd security offerings to their growing client bases. Intigriti’s bug bounty platform connects organizations with ethical hackers to continuously test and im

Continue reading: Intigriti invites cybersecurity players to join its global Partner Program initiative 

Intigriti secures more than €21M in Series B funding

Company News

News

April 26, 2022

APRIL 26, 2022 – Brussels – Intigriti, Europe’s leading bug bounty and vulnerability disclosure platform has raised €21,133,700 million in a Series B round, closing the largest funding for a crowdsourced security platform in Europe to date. The round was led by Octopus Ventures, one of Europe’s larg

Continue reading: Intigriti secures more than €21M in Series B funding