What is the purpose of bug bounty programs used by companies?

IT Exam Items Repository › Category: Ethical Hacker › What is the purpose of bug bounty programs used by companies?

What is the purpose of bug bounty programs used by companies?

  • reward security professionals for finding vulnerabilities in the systems of the company
  • reward security professionals for discovering malicious activities by attackers in the systems of the company
  • reward security professionals for fixing vulnerabilities in the systems of the company
  • reward security professionals for breaking into a corporate facility to expose weaknesses in the physical perimeter

Explanation: Companies (e.g., Microsoft, Apple, Cisco) and government institutions (e.g., the U.S. Department of Defense) use bug bounty programs to reward security professionals when they find vulnerabilities in websites, applications, or any system. This enables the organization to fix these vulnerabilities before threat actors exploit them.

Related exam: 1.4.3 Quiz - Introduction to Ethical Hacking and Penetration Testing Answers