• uriel238@lemmy.blahaj.zone
      link
      fedilink
      English
      arrow-up
      41
      ·
      5 months ago

      White hats can be prosecuted via the CFAA. they usually aren’t (most of us are guilty of CFAA penalties) but some companies got sour to fixing their web security and instead would sue and push to prosecute.

      So in the early 2010s the white hat community went gray to survive. And companies that don’t pay their bounties oe cause trouble don’t get pen tested by white hats (at least not when wearing a white hat).

    • WallEx@feddit.de
      link
      fedilink
      English
      arrow-up
      27
      ·
      edit-2
      5 months ago

      Thats what white hats would do and what these contests are usually for

      But its more like a bughunt with an open Bounty then selling afaik