Researchers’ blog
Subscribe to our RRS feed to stay up-to-date with our latest blog articles for researchers.
What is a bug bounty platform? And what are the alternatives?
News
July 25, 2022
Organizations run bug bounty programs as a way to identify and fix vulnerabilities within their systems, assets, and applications. They work by giving ethical hackers permission to test for vulnerabilities and provide a report of what they discover in an effort to reduce their attack surface. Altern
Lighten up; Dark Theme is here!
Product Updates
July 22, 2022
Dark theme is a popular request for every application, website, or operating system (OS) nowadays. There are many reasons for that; some are merely preferences in style, and others are accessibility and health concerns (I think most of us have gotten a headache from staring at overly bright screens
5 considerations when choosing a bug bounty platform
News
July 20, 2022
Anyone assessing the best bug bounty platforms will likely encounter many long lists of platform features. These can be overwhelming and leave you uncertain about how to make the right choice for your company’s cybersecurity needs. So, how do you make an informed choice from the diversity of platfor
Enhanced Reporting Experience
Product Updates
July 1, 2022
In this release, we focused on improving your reporting experience. A quick typo or a cluttered code block is a thing of the past with code syntax highlighting and a native spell check everywhere! New changes to your reporting experience in a nutshell: Native browser spell check in Markdown Code syn
New EU law is changing the game for digital goods producers
News
June 27, 2022
In January 2022, a new EU law came into effect, enforcing a two-year warranty period on digital goods (such as games and software). Directive (EU) 2019/771, EU Member States is now fully in effect and is challenging digital goods producers to improve and maintain quality and security in the interest
4 ways Intigriti empowers its security researcher community to thrive
News
June 27, 2022
Building a strong ecosystem is key to optimizing the collective benefit for both Intigriti clients and researchers. By creating more value for one entity, it provides opportunities and brings stability to the other. At Intigriti, for example, we support the community to become better hackers, and in
Bug Bytes #175 – 60 RCEs in 60min, Free Google Play Store ebooks & How to easily parse Burp Project files
Bug Bytes
June 22, 2022
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. CLICK HERE TO SUBSCRIBE This issue covers
Bug Bytes #174 – From $0 bounties to $150k, Hacker summer school & How to hack Apache Pinot
Bug Bytes
June 15, 2022
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. CLICK HERE TO SUBSCRIBE This issue covers
U.S. Justice Department will no longer bring charges against good-willed security researchers
News
June 14, 2022
There was big news for the crowdsourced ethical hacking community on May 19th this year. The U.S. Department of Justice revised its policy in respect to “ethical” or “good-faith” hackers. It will no longer prosecute them under the Computer Fraud and Abuse Act (CFAA). This is a welcome step forward i
Intigriti achieves ISO 27001 – the industry’s most highly regarded security standard
News
June 10, 2022
Intigriti, Europe’s leading bug bounty and vulnerability disclosure platform, is pleased to announce that it has attained ISO 27001 certification–the rigorous international standard that specifies best practices for information security management systems (ISMS). ISO 27001 certification guarantees t
Getting (back) together to hack!
Product Updates
June 9, 2022
Live Hacking Events (LHEs) are something special for everyone involved. Unlike regular, continuous bug bounty programs, LHEs really focus the attention of a select group of outstanding researchers on a very limited scope with equally limited time. And while we have had some very successful remote LH
Bug Bytes #173 – JDBC attacks reloaded, RCE via email & Benchmarking port scanners
Bug Bytes
June 8, 2022
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. CLICK HERE TO SUBSCRIBE This issue covers
Bug Bytes #172 – Pre-hijacking accounts, CSP bypass using WordPress & Unusual SSRF + Phishing chain
Bug Bytes
June 1, 2022
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. CLICK HERE TO SUBSCRIBE This issue covers
66% of cybersecurity talent are considering bug bounty hunting as a full-time career
News
June 1, 2022
The unique occupation of bug bounty hunting offers a heightened level of freedom and lifestyle that traditional jobs cannot provide, but which today’s security professionals’ desire. Intigriti set out to explore this trend further. Intigriti’s second annual Ethical Hacker Insights Report reveals bug
Bug Bytes #171 – New Android Web Views attacks, Arbitrary file theft on Android & Scanning for PII in images
Bug Bytes
May 25, 2022
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. CLICK HERE TO SUBSCRIBE This issue covers
Bug Bytes #170 – Evasive vulnerabilities, Hacking Swagger UI & Reverse engineering REST APIs
Bug Bytes
May 18, 2022
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. CLICK HERE TO SUBSCRIBE This issue covers
New insightful resources
Product Updates
May 13, 2022
Bug Bounty, Continuous security testing… All relatively new terms and definitely the new way of improving security maturity. But how do you get started? The available information found online is often unstructured, inconsistent and the amount can be overwhelming. Therefore we decided to start from t
Bug Bytes #169 – Psychic signatures, Pwning Cloudflare, Z-winK University & The Bug Hunter’s Methodology for App Analysis
Bug Bytes
May 11, 2022
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. CLICK HERE TO SUBSCRIBE This issue covers
Intigriti invites cybersecurity players to join its global Partner Program initiative
News
May 10, 2022
Intigriti’s Partner Program brings organizations with strong cybersecurity services, solutions, or networks, an impactful framework to bring crowd security offerings to their growing client bases. Intigriti’s bug bounty platform connects organizations with ethical hackers to continuously test and im
Intigriti secures more than €21M in Series B funding
News
April 26, 2022
APRIL 26, 2022 – Brussels – Intigriti, Europe’s leading bug bounty and vulnerability disclosure platform has raised €21,133,700 million in a Series B round, closing the largest funding for a crowdsourced security platform in Europe to date. The round was led by Octopus Ventures, one of Europe’s larg
