Pornhub Launches Bug Bounty Programme For Security Researchers

Pornhub, one of the world’s biggest adult sites, is launching a bug bounty program for security researchers and pornography enthusiasts who are able to identify flaws on its platform.

Hunters will be paid a minimum of $50 (£34.53) for each vulnerability discovered, with up to $25,000 (£17,263) on offer for particularly vicious flaws, although the site notes that 23 reports have already been resolved.

Targeted

watching porn laptopSuccessful applicants to the scheme will need to be the first person to responsibly disclose an unknown issue, which the Pornhub security team has 30 days to respond to, and up to 90 days to implement a fix base on the severity of the report.

However there are some restrictions, such as users not being allowed to carry out Denial of Service (DDoS) attacks on Pornhub, or even carry out physical attacks on the company’s offices or data centres.

Social engineering tactics are also not allowed, such as phishing attacks against Pornhub employees, and researchers are not allowed to compromise user accounts.

“Security is a top priority at Pornhub,” the company said. “We strive to work with skilled security researchers to improve the security of our service. If you believe you’ve found a security bug in the services listed in our scope, we will be happy to work with you to resolve the issue promptly and ensure you are fairly rewarded for your discovery.”

Due to their louche nature, adult sites have proved attractive propositions to cyber-criminals in the past.

Last December, leading sites including PornHub, YouPorn and Xhamster were revealed as victims of a wide-ranging malvertising attack which left their users at risk of being exposed to malware.

The sites were also targeted back in September by attacks which infiltrated the advertising networks that serve up ads for popular online destinations.

What do you know about Internet security? Find out with our quiz!

Mike Moore

Michael Moore joined TechWeek Europe in January 2014 as a trainee before graduating to Reporter later that year. He covers a wide range of topics, including but not limited to mobile devices, wearable tech, the Internet of Things, and financial technology.

Recent Posts

Meta’s Community Notes To Use X’s Algorithm

Community Notes testing across Facebook, Instagram and Threads to begin next week in US, using…

18 mins ago

FTC Says It Has Resources To Pursue Amazon Case, In Major U-Turn

Complete 180. FTC attorney now says federal agency can pursuit Amazon trial, after citing “severe…

1 hour ago

Intel Appoints Chip Veteran Lip-Bu Tan As CEO

Former board member and respected chip industry veteran Lip-Bu Tan appointed to lead troubled US…

6 hours ago

Apple To Appeal UK Government Backdoor Order On Friday

MPs demand secret High Court hearing be held in public, after government had ordered a…

7 hours ago

FTC Seeks Delay To Amazon Trial, Citing Staff, Cash Shortfalls

Consequences. As Musk and DOGE continues slash-and burn at federal agencies, FTC asks for trial…

22 hours ago

Mobile Browser Market Not Working Well – CMA

Report from CMA's independent inquiry group concludes mobile browser markets not working well, but cloud…

24 hours ago