Tehuty News
  • Login
  • Home
  • News
  • Sport
  • Reel
  • World

    Death of Venezuelan opposition figure in custody ‘vile’, US says

    Fire at popular India nightclub kills 23, Goa officials say

    Legendary US architect dies aged 96

    Police arrest suspect in DC pipe bomb incident, ending years-long manhunt

    Drunk raccoon found passed out on liquor store floor after breaking in

    Flood catastrophe awakens volunteerism in Sri Lanka

    Trump releases fraudster executive days into prison sentence

    Ukraine talks ‘productive’ but more work needed, Rubio says

    More than 70,000 killed in Gaza since Israel offensive began, Hamas-run health ministry says

  • Worklife
  • Travel
  • Future
  • More
    • Culture
    • Music
10 °c
London
15 ° Thu
16 ° Fri
8 ° Sat
7 ° Sun
No Result
View All Result

Welcome to Tehuty News

Monday, December 8, 2025
Tehuty News
  • Home
  • News
  • Sport
  • Reel
  • World

    Death of Venezuelan opposition figure in custody ‘vile’, US says

    Fire at popular India nightclub kills 23, Goa officials say

    Legendary US architect dies aged 96

    Police arrest suspect in DC pipe bomb incident, ending years-long manhunt

    Drunk raccoon found passed out on liquor store floor after breaking in

    Flood catastrophe awakens volunteerism in Sri Lanka

    Trump releases fraudster executive days into prison sentence

    Ukraine talks ‘productive’ but more work needed, Rubio says

    More than 70,000 killed in Gaza since Israel offensive began, Hamas-run health ministry says

  • Worklife
  • Travel
  • Future
  • More
    • Culture
    • Music
No Result
View All Result
Tehuty News
No Result
View All Result
Home Technology

What is bug hunting and why is it changing?

April 29, 2025
in Technology
8 min read
320 3
0
351
SHARES
1.4k
VIEWS
Share on FacebookShare on Twitter


Joe Fay

Technology Reporter

Bugcrowd Two men work at a screen at Bugcrowd Bug Bash 2024Bugcrowd

At events like Bugcrowd Bug Bash hackers compete to find software bugs

Few technology careers offer the chance to demonstrate your skills in exclusive venues worldwide, from luxury hotels to Las Vegas e-sports arenas, peers cheering you on as your name moves up the leaderboard and your earnings rack up.

But that’s what Brandyn Murtagh experienced within his first year as a bug bounty hunter.

Mr Murtagh got into gaming and building computers at 10 or 11-years-old and always knew “I wanted to be a hacker or work in security”.

He began working in a security operations centre at 16, and moved into penetration testing at 20, a job that also involved testing the security of clients’ physical and computer security: “I had to forge false identities and break into places and then hack. Quite fun.”

But in the past year he has became a full-time bug hunter and independent security researcher, meaning he scours organizations’ computer infrastructure for security vulnerabilities. And he hasn’t looked back.

Internet browser pioneer Netscape is regarded as the first technology company to offer a cash “bounty” to security researchers or hackers for uncovering flaws or vulnerabilities in its products, back in the 1990s.

Eventually platforms like Bugcrowd and HackerOne in the US, and Intigriti in Europe, emerged to connect hackers and organizations that wanted their software and systems tested for security vulnerabilities.

As Bugcrowd founder Casey Ellis explains, while hacking is a “morally agnostic skill set”, bug hunters do have to operate within the law.

Platforms like Bugcrowd bring more discipline to the bug-hunting process, allowing companies to set the “scope” of what systems they want hackers to target. And they operate those live hackathons where top bug hunters compete and collaborate “hammering” systems, showing off their skills and potentially earning big money.

The payoff for companies using platforms like Bugcrowd is also clear. Andre Bastert, global product manager AXIS OS, at Swedish network camera and surveillance equipment firm Axis Communications, said that with 24 million lines of code in its device operating system, vulnerabilities are inevitable. “We realized it’s always good to have a second set of eyes.”

Platforms like Bugcrowd mean “you can use hackers as a force for good,” he says. Since opening its bug bounty programme, Axis has uncovered – and patched – as many as 30 vulnerabilities, says Mr Bastert, including one “we deem very severe”. The hacker responsible received a $25,000 (£19,300) reward.

Bugcrowd A group of participants at Bugcrowd's Bug Bash sit around a table.Bugcrowd

The best bug hunters can earn more than a million pounds a year

So, it can be lucrative work. Bugcrowd’s top earning hacker over the last year earned over $1.2m.

But while there are millions of hackers registered on the key platforms, Inti De Ceukelaire, chief hacking officer at Intigriti, says the number hunting on a daily or weekly basis is “tens of thousands.” The elite tier, who are invited to the flagship live events will be smaller still.

Mr Murtagh says: “A good month would look like a couple of critical vulnerabilities found, a couple of highs, a lot of mediums. Some good pay days in an ideal situation.” But he adds, “It doesn’t always happen.”

Yet with the explosion of AI, bug hunters have whole new attack surfaces to explore.

Mr Ellis says organizations are racing to gain a competitive advantage with the technology. And this typically has a security impact.

“In general, if you implement a new technology quickly and competitively, you’re not thinking as much about what might go wrong.” In addition, he says, AI is not just powerful but “designed to be used by anyone”.

Dr Katie Paxton-Fear, a security researcher and cybersecurity lecturer at Manchester Metropolitan University, points out that AI is the first technology to explode onto the scene with the formal bug hunting community already in place.

And it has levelled the playing field for hackers, says Mr De Ceukelaire. Hackers – both ethical and not – can exploit the technology to speed up and automate their own operations. This ranges from conducting reconnaissance to identify vulnerable systems, to analysing code for flaws or suggesting possible passwords to break into systems.

But modern AI systems’ reliance on large language models also means language skills and manipulation are an important part of the hacker tool kit, Mr De Ceukelaire says.

He says he has drawn on classic police interrogation techniques to befuddle chatbots and get them to “crack”.

Mr Murtagh describes using such social engineering techniques on chatbots for retailers: “I would try and make the chatbot cause a request or even trigger itself to give me another user’s order or another user’s data.”

Getty Images Chatbot on phone screenGetty Images

Hackers try to trick AI powered chatbots

But these systems are also vulnerable to more “traditional” web app techniques, he says. “I have had some success in an attack called cross site scripting, where you can essentially trick the chatbot into rendering a malicious payload that can cause all kinds of security implications.”

But the threat doesn’t stop there. Dr Paxton-Fear says an over-focus on chatbots and large language models can distract from the broader interconnectedness of AI powered systems.

“If you get a vulnerability in one system, where does that eventually appear in every other system it connects to? Where are we seeing that link between them? That’s where I would be looking for these kinds of flaws.”

Dr Paxton-Fear adds that there hasn’t been a major AI-related data breach yet, but “I think it’s just a matter of time”.

In the meantime, the burgeoning AI industry needs to be sure it embraces bug hunters and security researchers, she says. “The fact that some companies don’t makes it so much harder for us to do our job of just keeping the world safe.”

That is unlikely to put off the bug hunters in the meantime. As Mr De Ceukelaire says: “Once a hacker, always a hacker.”

More Technology of Business



Source link

Related posts

Production halted at Chinese factory making ‘childlike’ sex dolls

December 8, 2025

Elon Musk’s X fined €120m over ‘deceptive’ blue ticks

December 7, 2025
Previous Post

Spain and Portugal power outage chaos

Next Post

History of The Playhouse Theatre – BBC Reel Histories 2012

Next Post

History of The Playhouse Theatre - BBC Reel Histories 2012

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

RECOMMENDED NEWS

Paralympics 2024: Alice Tai and Becky Redfern win swimming golds

1 year ago

The simple brain training that can help you lose weight BBC REEL

3 years ago

Big banks linked to products with pangolin and leopard parts

2 years ago

The ancient 'computer' that simply shouldn't exist – BBC REEL

3 years ago

FOLLOW US

  • 138 Followers
  • 79.6k Followers
  • 207k Subscribers

BROWSE BY CATEGORIES

  • Business
  • Have your say
  • In Pictures
  • Politics
  • Reel
  • Sports
  • Technology
  • Top News
  • World

BROWSE BY TOPICS

America animation B.B.C. bbc BBC iPlayer B B Ci Player bbcnews BBC NEWS BBC Reel bbcreel breaking news British TV british tv shows documentaire documental documentaries documentary documentary film facts factual features free documentary full documentary funny History india India news iPlayer music NEWS physics reel science Streaming top documentaries TV United Kingdom usa us news Video watch british tv online watch british tv shows online watch uk tv online World world news

Top Stories

  • The Hundred: Who can still reach the knockout stages of men’s and women’s competitions

    356 shares
    Share 142 Tweet 89
  • Flood catastrophe awakens volunteerism in Sri Lanka

    351 shares
    Share 140 Tweet 88
  • Trump says he will pardon ex-Honduras president convicted of drug trafficking

    351 shares
    Share 140 Tweet 88
  • TikTok: Trump says Oracle deal for video app ‘has my blessing’

    356 shares
    Share 142 Tweet 89
  • ai tech reel #history #duet #marvel #memes #bbc #comedy #automobile

    351 shares
    Share 140 Tweet 88

Features

Business

Covid fraud and error cost taxpayers £10.9bn, report will say

by admin
December 8, 2025
0

Josh MartinBusiness reporterGetty ImagesThe report will look at Covid-era programmes like Eat Out to Help Out, which subsidised hospitality...

Read more

FBI Director Kash Patel and Democrat Senator Cory Booker clash during hearing. #USNews #BBCNews

December 8, 2025

Production halted at Chinese factory making ‘childlike’ sex dolls

December 8, 2025

UK Championship 2025: Mark Selby holds off Judd Trump to win third title

December 8, 2025

Death of Venezuelan opposition figure in custody ‘vile’, US says

December 8, 2025

Recent News

  • Covid fraud and error cost taxpayers £10.9bn, report will say
  • FBI Director Kash Patel and Democrat Senator Cory Booker clash during hearing. #USNews #BBCNews
  • Production halted at Chinese factory making ‘childlike’ sex dolls
Tehuty News

Breaking news, sport, TV, radio and a whole lot more.
Tehuty News, educates and entertains - wherever you are, whatever your age.

Follow us on social media:

Category

  • Business
  • Have your say
  • In Pictures
  • Politics
  • Reel
  • Sports
  • Technology
  • Top News
  • World
  •    If you re feeling guilty  there s probably a reason   Watch Love Life on iPlayer   LoveLife  bbciplayer  iplayer
  • When a series of disturbing incidents plagues an insular fishing community  a young man must wrestle with something entirely unexpected      Watch The Terror  Infamy on iPlayer from tonight at 9pm    TheTerrorInfamy  theterror  bbciplayer  iplayer  drama  horror  supernatural
  •  thebodycoach explores how his parents    mental health struggles shaped him in a new documentary  executive produced by  officiallouistheroux  Watch Joe Wicks  Facing My Childhood on iPlayer from 16 May  If you  or someone you know  has been affected by any of the issues in Joe Wicks  Facing My Childhood  the following organisations may be able to help  https   bbc in 3LPZ5xI   JoeWicksFacingMyChildhood  bbciplayer  iplayer  MentalHealth  JoeWicks  TheBodyCoach
  • Ten Dancers  One Iconic Stage     Who will be crowned BBC Young Dancer 2022   BBC Young Dancer  The Final  Saturday 7 May at 7pm  bbctwo  Series catch up on  bbciplayer   bbc  bbcarts  arts  dance  dancing  dancer  dancers  youngdancer  youngdancer2022  bbcyoungdancer2022
  • Election 2022  What does it all mean  Laura Kuenssberg and Chris Mason discuss  Newcast   Listen on BBC Sounds
  • Five home bakers compete in a national competition to create a pudding fit for the Queen  hoping to be crowned winner of the jubilee pudding           Watch The Jubilee Pudding  70 Years in the Baking on iPlayer from 12 May   bbc  bbciplayer  jubilee  platinumjubilee  royalfamily  thequeen  jubileepudding
  • The one and only Polly Gray  forever in our hearts and minds          Watch Peaky Blinders on iPlayer   PeakyBlinders  PollyGray  iPlayer  BBCiPlayer    Drama
  • Accurate depiction of dating in your thirties     Watch Gentleman Jack on iPlayer   GentlemanJack  bbciplayer  iplayer  dating
  • What s a jazz album you think people should check out         gregoryportermusic   palomafaith and  yolandabrown have each recommended a great jazz record for you to try

Recent News

Covid fraud and error cost taxpayers £10.9bn, report will say

December 8, 2025

FBI Director Kash Patel and Democrat Senator Cory Booker clash during hearing. #USNews #BBCNews

December 8, 2025
  • Home
  • News
  • Sport
  • Reel
  • World
  • Worklife
  • Travel
  • Future
  • More

© 2020 Tehuty News

  • Home
  • News
  • Sport
  • Reel
  • Travel
  • WorkLife
  • Future
  • World
  • Technology
  • Login

© 2020 Tehuty News

Welcome Back!

Login to your account below

Forgotten Password?

Create New Account!

Fill the forms bellow to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In