OP 09 February, 2022 - 05:28 AM
Quote:ExpressVPN has updated its bug bounty program to make it more inviting to ethical hackers, now offering a one-time $100,000 bug bounty to whoever can compromise its systems. The company also invites security researchers to uncover possible ways to leak the actual IP address of clients and monitor user traffic. The program is run through BugCrowd, which offers a safe harbor for researchers who attempt to breach ExpressVPN's servers as part of the program. The first person to submit a valid vulnerability, granting unauthorized access or exposing customer data, will receive the US$100k bounty.
Source: https://www.bleepingcomputer.com/news/se...s-servers/