Company
Date Published
Author
Michael Skelton, VP of Operations
Word count
1417
Language
English
Hacker News points
None

Summary

The Vulnerability Rating Taxonomy (VRT) has been updated to include new vulnerabilities in the "Insecure OS/Firmware" category, a new category for "Physical Security issues", and several other modifications. The updates focus on hardware vulnerabilities, including weaknesses in firmware updates, poorly configured disk encryption, and recovery of sensitive material from storage media. These additions are designed to help hackers hunt for specific vulnerabilities and create targeted Proof of Concepts (POCs), as well as assist users in designing scope and rewards that create the best outcomes. The VRT is a key component of Bugcrowd's platform, enabling customers like Dell, Xfinity, and iRobot to collaborate with hackers to secure their attack surface spanning hardware, firmware, and software.