Bug Bounty Programs

Below is a list of public bug bounty programs. Through a bug bounty program, companies can tap into a global network of ethical hackers who continuously test a wide range of digital assets within the defined scope.

Bug bounty programs reward ethical hackers with financial incentives when valid vulnerabilities are discovered.

Industry

Program type

Sort by

Search

Say Technologies Bug Bounty Program

Say Technologies Bug Bounty Program

Financial Services and Insurance

Say unlocks the power of investor communications by working with broker-dealers to connect shareholders with the public companies they invest in.

Bug bounty program

View program

Up to $10,000

Capture Our Flag

Capture Our Flag

Software

One submission and 51,337 reasons to get to it. Cybersecurity is part of our nature and we understand that only by challenging our ways, we get to improve. The Capture Our Flag program is a targeted challenge that leverages Intigriti's core assets: submissions. This ensures our core product is secure at all times, and is a testament to the trust we build with our researchers and to our customers.

Sustainable

Bug bounty program

2FA Required

View program

Up to €51,337

Dstny

Dstny

Software

Dstny (https://www.dstny.com/) is a leading European innovator in secure cloud communications, driven by our robust UCaaS solutions and cutting-edge technology. We empower service providers, partners, end-users, and third-party services to thrive within our dynamic ecosystem. Participating in a bug bounty program provides a unique opportunity to enhance our cybersecurity by collaborating with a global community of skilled ethical hackers. With over 15000 domain names and IP addresses in our program, we offer a broad and dynamic scope to ensure comprehensive security testing. This proactive approach reinforces our commitment to delivering secure, reliable communication solutions.

Bug bounty program

View program

Up to €2,205

Veriff Bug Bounty

Veriff Bug Bounty

Software

At Veriff we are passionate about creating a safer environment online. Our mission is to bring transparency to the digital world. We take the security of our systems seriously, and we value the security community. The disclosure of security vulnerabilities helps us ensure the security and privacy of our users. We ask all researchers to follow the guidelines provided.

Bug bounty program

View program

€5 – €6,000

FREEPIK VDP

FREEPIK VDP

Media and Entertainment

Freepik’s mission is to push the boundaries of artificial intelligence to empower creativity worldwide. We are developing cutting-edge AI projects that reimagine how people create, design, and interact with visual content, making creativity more accessible, faster, and smarter. While innovation is at the core of what we do, we also recognize the importance of building securely. We value the work of the security research community in making the internet a safer place. Although our dedicated team applies the best security practices to prevent potential vulnerabilities, we want to open the door for the community to contribute to this effort.

Sustainable

Responsible disclosure

Rivian Bug Bounty

Rivian Bug Bounty

Manufacturing Consumer

Rivian exists to create products and services that help our planet transition to carbon neutral energy and transportation. Rivian designs, develops, and manufactures category-defining electric vehicles and accessories and sells them directly to customers in the consumer and commercial markets. Rivian complements its vehicles with a full suite of proprietary, value-added services that address the entire lifecycle of the vehicle and deepen its customer relationships.

Bug bounty program

View program

$100 – $5,000

Bühler Group VDP

Bühler Group VDP

Manufacturing Industrial

Every day, billions of people come into contact with Bühler technologies to meet their basic needs for food, mobility, and more. Our technologies are in your smartphone, solar panels, diapers, lipstick, banknotes, the food you eat, and the vehicles you drive. We strive to innovate for a better world, with a special focus on healthy, safe, and sustainable solutions. Learn more about Bühler at www.buhlergroup.com.

Responsible disclosure

AMD Product Security Bug Bounty Program

AMD Product Security Bug Bounty Program

Manufacturing Consumer

Advanced Micro Devices, Inc., commonly abbreviated as AMD, is an American multinational semiconductor company based in Santa Clara, California, that develops computer processors and related technologies for business and consumer markets.

Bug bounty program

View program

$500 – $30,000

Webnode

Webnode

Media and Entertainment

Webnode is an amazingly simple website builder. Launched in 2008, it has already helped over 50 million users create their own websites. Webnode has recently been acquired by the number one hosting company in Europe and therefore the product will be used and implemented throughout different brands in Europe.

Bug bounty program

2FA Required

Application Required

View program

€100 – €1,750

DHL Group Vulnerability Disclosure Program

DHL Group Vulnerability Disclosure Program

Transportation and Logistics

DHL Group is a global logistics company providing services in express delivery, freight transportation, supply chain management, e-commerce solutions, as well as postal and parcel services. As part of our commitment to security, we invite researchers to participate in our vulnerability disclosure program, helping us ensure protection of our systems. Join us in identifying and reporting potential vulnerabilities to maintain the highest standards of security for our customers and partners.

Responsible disclosure

Revolut VDP

Revolut VDP

Financial Services and Insurance

Revolut is a financial technology company that offers banking services. It offers accounts featuring currency exchange, debit cards, virtual cards, interest-bearing "vaults", commission-free stock trading, crypto, commodities, and other services to over 60M customers. Please visit our website for more information: www.revolut.com

Responsible disclosure

ING Responsible Disclosure

ING Responsible Disclosure

Financial Services and Insurance

Responsible Disclosure indicates ING’s continued commitment to improve its security posture. As part of this process, we work closely with security researchers to identify and report vulnerabilities they find within our systems. ING appreciates security researchers efforts in reporting vulnerabilities on its systems as long as the discovered vulnerability is in scope, detected without the use of intrusive testing techniques, and follows the disclosure guidelines below:

Responsible disclosure

Universitätsspital Zürich VDP

Universitätsspital Zürich VDP

Hospitals and Healthcare

VULNERABILITY DISCLOSURE PROGRAM (VDP) Above all else, University Hospital Zurich is committed to the care and improvement of human life. Part of that mission is to protect our patients, people, systems, and facilities. We want encourage security researchers to feel comfortable reporting vulnerabilities they’ve discovered to us in good faith.

Responsible disclosure

Social Deal

Social Deal

Leisure and Hospitality

Thank you for visiting our program, we are happy with ethical hackers who want to look have a into our security with an objective view. Social Deal is an online platform for consumers to buy the best deals in their region. With these deals they can discover restaurants/hotels/beauty/zoo and many other retailers for the best price. Social Deal is active in Netherlands, Belgium and Germany. Our customers trust our brand. We want to be sure the data is protected to keep our brand value high.

Bug bounty program

View program

€25 – €750

Axel Springer National Media & Tech

Axel Springer National Media & Tech

Media and Entertainment

AS National Media & Tech (NMT) is a subsidiary of Axel Springer SE, a leading international media company. We develop and operate digital products for Germany’s top news brands, reaching over 50 million users each month. At Axel Springer, we stand for free journalism and unrestricted access to information, allowing people to make free decisions. To protect this, the security of our platforms and users is our top priority. Your contributions help us keep them safe.

Bug bounty program

View program

€15 – €2,500

Ubisoft Responsible Disclosure Program

Ubisoft Responsible Disclosure Program

Media and Entertainment

Ubisoft’s Responsible Disclosure Program provides a safe, public channel for anyone to report security vulnerabilities in Ubisoft-owned, internet‑facing services, official applications and video games. The purpose of this program is to partner with the security community to identify and remediate issues before they can impact our players, employees, partners, or data. We encourage good‑faith, non‑disruptive research and clear, reproducible reports that demonstrate impact with the minimum necessary evidence. Please avoid actions that could affect availability, privacy, or other users, and use test accounts whenever possible. In return, our security team commits to prompt triage, transparent communication, and appropriate recognition in line with program policies. If you believe you’ve found a vulnerability, please submit it through Intigriti so we can investigate and fix it quickly—helping keep Ubisoft’s worlds safe and enjoyable for everyone.

Responsible disclosure

Yahoo Bug Bounty

Yahoo Bug Bounty

Media and Entertainment

Welcome to Yahoo Yahoo is a global media and advertising company connecting people to their passions. With one of the largest online audiences in the world, Yahoo brings people closer to what they love — from finance and commerce, to gaming and news — with the trusted products, content, and tech that fuel their day. For partners, we provide a full-stack platform to amplify businesses and drive more meaningful connections across advertising, search, and media.

Bug bounty program

View program

$100 – $15,000

Ninja Kiwi Games Bug Bounty program

Ninja Kiwi Games Bug Bounty program

Media and Entertainment

Creators of hit computer game franchises Bloons, Bloons TD and SAS: Zombie Assault for mobile and web. We have offices in Auckland, New Zealand and Dundee, Scotland. We are excited to engage with the security community to help us keep our users safe and our services secure. This is our second Bug Bounty program after a successful campaign in 2021.

Bug bounty program

View program

€75 – €4,125

Capital.com

Capital.com

Financial Services and Insurance

Capital.com, voted ‘Most Innovative Tech 2021’ by TradingView is a multi-award winning global investment trading platform authorised and regulated by the UK’s Financial Conduct Authority, the Cyprus Securities and Exchange Commission, and the Australian Securities and Investments Commission. Recognised for its quality 24/7 customer support, seamless trading experience and competitive fees, Capital.com is a fast-emerging leader in the European leveraged trading industry.

Bug bounty program

View program

Up to €15,000

Wolt

Wolt

Leisure and Hospitality

We provide a platform for: - Businesses to sell products (like food, clothing and even electronics). - Customers to purchase such products and get them delivered by Wolt couriers. - Wolt couriers to receive and manage delivery requests. We have more than 30 million registered users and we operate in 20+ countries. Read more about us: https://wolt.com/en/about.

Bug bounty program

View program

€100 – €3,500

WP Engine Bug Bounty

WP Engine Bug Bounty

Media and Entertainment

Welcome! WP Engine invites you to evaluate our products and platforms. WP Engine equips its customers with a suite of agility, performance, intelligence, and integration solutions, so you can build and deploy a range of online experiences from campaign sites to content hubs to e-commerce extensions. Good luck and happy hunting!

Bug bounty program

View program

Up to €2,500

RIPE NCC

RIPE NCC

Non Profit

We're an independent, not-for-profit membership organisation that supports the infrastructure of the Internet through technical coordination in our service region. Our most prominent activity is to act as the Regional Internet Registry (RIR) providing global Internet resources and related services (IPv4, IPv6 and AS Number resources) to members in our service region.

Bug bounty program

View program

Up to €2,000

Housing Application (huisvestingsapp) Bug Bounty Program

Housing Application (huisvestingsapp) Bug Bounty Program

Education

At KU Leuven, we are committed to ensuring the integrity of our Housing Application Program. This program allows both new and returning students to apply for a room in KU Leuven Central Services Residences, helping them find the right accommodation. As with all our platforms, we recognize that vulnerabilities can exist, and we encourage researchers to report any security issues they may discover within this application. If you identify a vulnerability while using the application, please follow our disclosure guidelines to report it safely and responsibly. Your contributions help us maintain a secure and seamless experience for all students!

Bug bounty program

View program

Up to €2,000

De Lijn

De Lijn

Transportation and Logistics

De Lijn is the Flemish public transportation company dedicated to giving their customers a comfortable and quick ride. Due the fact that we use the latest IT equipment and servers is our security ought to be at the top of our game. For this program we are putting the focus at our web clients, APIs and of course the mobile application.

Responsible disclosure