312-50V10 · Question #944
What is the common name for a vulnerability disclosure program opened by companies In platforms such as HackerOne?
The correct answer is B. Bug bounty program. Bug bounty programs are the industry-standard term for structured vulnerability disclosure initiatives where companies reward researchers for responsibly reporting security flaws.
Question
What is the common name for a vulnerability disclosure program opened by companies In platforms such as HackerOne?
Options
- AVulnerability hunting program
- BBug bounty program
- CWhite-hat hacking program
- DEthical hacking program
How the community answered
(42 responses)- B90% (38)
- C2% (1)
- D7% (3)
Why each option
Bug bounty programs are the industry-standard term for structured vulnerability disclosure initiatives where companies reward researchers for responsibly reporting security flaws.
'Vulnerability hunting program' is not a recognized industry or platform term and does not describe the formal, reward-based, scoped disclosure structure offered through HackerOne or similar platforms.
A bug bounty program is the formally recognized industry term for a company-sponsored vulnerability disclosure program hosted on platforms like HackerOne or Bugcrowd, where organizations define scope and rules of engagement and offer monetary rewards or recognition to researchers who discover and responsibly disclose valid security vulnerabilities.
'White-hat hacking program' is a general colloquial phrase describing ethical hacking broadly and is not the specific, recognized name for structured vulnerability disclosure programs with defined rewards on third-party platforms.
'Ethical hacking program' broadly refers to authorized penetration testing engagements and is not the specific term used for company-sponsored, platform-hosted vulnerability disclosure programs that reward independent researchers.
Concept tested: Bug bounty programs and vulnerability disclosure platform terminology
Source: https://www.hackerone.com/knowledge-base/what-is-bug-bounty
Topics
Community Discussion
No community discussion yet for this question.