Proceedings of the 37th ACM/SIGAPP Symposium on Applied Computing 2022
DOI: 10.1145/3477314.3506968
|View full text |Cite
|
Sign up to set email alerts
|

A longitudinal study of hacker behaviour

Abstract: Bug bounty programmes employ the skills and curiosity of independent security researchers (hackers) to support pre-and postdeployment security. Driven by the question How effective are bug bounty platforms at retaining the interest of hackers?, this paper aims to address two issues concerning hackers' behaviour. First, to resolve the information asymmetry between programme and platform operators, it is necessary to measure the number of active hackers on a platform. Second, to assist programme operators' under… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
3
1

Citation Types

0
4
0

Year Published

2022
2022
2024
2024

Publication Types

Select...
3

Relationship

0
3

Authors

Journals

citations
Cited by 3 publications
(4 citation statements)
references
References 21 publications
0
4
0
Order By: Relevance
“…A distrust of hackers by some organisations is also found by Tanczer (2020) . A lack of hacker motivation and a difficulty in maintaining participants is reported by Walshe and Simpson (2022) .…”
Section: Related Workmentioning
confidence: 96%
See 3 more Smart Citations
“…A distrust of hackers by some organisations is also found by Tanczer (2020) . A lack of hacker motivation and a difficulty in maintaining participants is reported by Walshe and Simpson (2022) .…”
Section: Related Workmentioning
confidence: 96%
“…In exchange for the submission of a valid vulnerability report, hackers may be rewarded with monetary payouts, 'swag' (such as a company t-shirt), public recognition, or employment ( Hata et al, 2017 ). Although hackers may be motivated by the eye-catching rewards offered as payouts from many Bug Bounty Programmes (BBPs) ( Walshe and Simpson, 2022;Zhao et al, 2014 ), such as the $1,0 0 0,0 0 0 bounties offered by Apple ( Hern, 2019 ), some act out of altruism and report vulnerabilities to ensure the privacy, safety and security of the general public ( HackerOne, 2021 ).…”
Section: Introductionmentioning
confidence: 99%
See 2 more Smart Citations