ALL >> Computers >> View Article
Facebook Alters Bug Disclosure Policy To Encourage Information Security Experts

Security has become the buzzword in the IT industry. Rising number of security breaches has been a cause for concern for organizations, software developers, websites and vendors of security products. While hackers constantly endeavor to exploit vulnerabilities, software developers have to invest considerable resources on other factors such as product innovation, research and marketing along with security. Off late, information security researchers have been discovering bugs in software products, web applications and security products to aid developers in coming up with appropriate security patches. Recently, popular social networking site, Facebook modified its bug disclosure policy to encourage information security researchers to discover vulnerabilities. The wording of the earlier policy gave an impression that information provided by security professionals may be used to take action against them. The wrong wording of the policy scared many researchers from informing vulnerabilities to Facebook. Some of the prominent vendors such as Google and Mozilla ...
... offer financial rewards to security professionals for revealing high and critical vulnerabilities.
Usually, organizations use the services of certified ethical hackers to reveal the vulnerabilities. The new disclosure policy clarifies that no legal action will be initiated against researchers for sharing vulnerabilities, if the action was done in good faith and Facebook receives reasonable time to respond. The clarification will inspire security professionals to help Facebook pre-empt hackers in discovering vulnerabilities and initiating corrective action. The popularity of Facebook has made it an easy target for hackers to uncover loads of personal information to thousands of individuals. Social networking sites such as Facebook and Twitter witness several instances of fake accounts from offenders in the name of celebrities and top officials. Therefore, security is one of the prime concerns for these sites.
Hackers can misuse the vulnerabilities on websites to inject malware, redirect to fake websites, create fake accounts, reveal username and passwords, and gain unauthorized access to associated databases. Organizations must encourage their employees to enroll in IT security courses to keep themselves updated on the latest tools and techniques. Internet users must vary of fake e-mails purportedly coming from a legitimate networking site with invitation from unknown members. The links in the e-mail may lead users to fake websites, where there information may be compromised.
Add Comment
Computers Articles
1. How To Improve The Security Of Android App?Author: goodcoders
2. How To Earn Money From Free Apps?
Author: goodcoders
3. How Artificial Intelligence Is Revolutionizing Accounting?
Author: goodcoders
4. Explain About Web Application Architecture: Components, Types, Best Practices
Author: goodcoders
5. Complete Guide To Fitness App Development
Author: goodcoders
6. Erp For Small And Big Enterprise
Author: AITS Software
7. Top Software Development Company Melbourne
Author: Technothinksup Solutions
8. The Devops Revolution: Accelerating Innovation In The Digital Age
Author: basheer ansari shaik
9. How Ai Is Transforming Software Development
Author: Technothinksup Solutions
10. How To Do Web Scraping With Ruby?
Author: goodcoders
11. How Mobile Apps Blooming In The Fashion Industry?
Author: goodcoders
12. How Cloud Computing Helps In The Field Of Mobile App Development?
Author: goodcoders
13. The Importance Of Cybersecurity In The Digital Age
Author: Mohammad Arsh
14. First-ever ‘identity Management Day’ Is April 13, 2021
Author: Reinfosec
15. Top 5 Project Management Software Of 2025
Author: Ben Gross