Updated Aug 26, 2018

"White hat" hackers fill companies' cybersecurity demand

Hackers congress in Hamburg. Photo: Patrick Lux/Getty

Amid a gaping shortage of skilled cybersecurity hands, a cottage industry has sprung up to fill the demand, with some of the biggest U.S. companies and agencies paying freelance bounties for detecting website vulnerabilities.

What's going on: There are currently some 301,000 cyber industry openings in the U.S., according to Cyber Seek, a firm seeking to close the shortage, forcing unorthodox solutions on the most strategically important employers.

Their target is not college graduates, but simply to lure reliable hackers, or "white hats," out of dark chatrooms and into respectable employ.

  • Websites like Bugcrowd and HackerOne are the Indeeds of this world, reports MIT Tech Review's Martin Giles.
  • Both sites feature "bug bounties" — cash rewards for finding website vulnerabilities.
  • Among those paying bounties: Airbnb, the Pentagon, GM, Lufthansa, and Starbucks, says HackerOne.

Despite the shortage, the pay appears to be generally mediocre or low, the same malady afflicting job categories across the U.S. and European economies.

  • Finding bugs pays in glory more often than in cash, like swag and tours of the U.S. Capitol, writes Tech Review's Erin Winick.
  • In a case study at HackerOne, Shopify said that as of March 15, it had used bounties to resolve 759 bug reports, "thanked" more than 300 hackers, and paid out more than $850,000 in bounties. If all were paid, that comes to about $1,100 per bug report, although in one case, Shopify said, it paid a hacker named @cache-money $15,250 for exposing a critical bug.
  • A Philippine bug hunter profiled by Tech Review earns well under $1,000 a month. At HackerOne, 3% of registered users earn more than $100,000 a year, while 12% earn $20,000 or more.

Go deeper: In February, No Starch Press will publish a how-to book called Real-World Bug Hunting, by Peter Yaworski, subtitled "A Field Guide to Web Hacking."

Go deeper

Coronavirus dashboard

Illustration: Sarah Grillo/Axios

  1. Global: Total confirmed cases as of 1 a.m. ET: 722,435 — Total deaths: 33,997 — Total recoveries: 151,991.
  2. U.S.: Leads the world in cases. Total confirmed cases as of 1 a.m.. ET: 142,502 — Total deaths: 2,506 — Total recoveries: 4,856.
  3. Federal government latest: President Trump says his administration will extend its "15 Days to Slow the Spread" guidelines until April 30.
  4. Public health updates: Fauci says 100,000 to 200,000 Americans could die from virus.
  5. State updates: Louisiana governor says state is on track to exceed ventilator capacity by end of this week — Cuomo says Trump's mandatory quarantine comments "panicked" some people into fleeing New York
  6. World updates: Italy on Sunday reports 756 new deaths, bringing its total 10,779. Spain reports almost 840 dead, another new daily record that bring its total to over 6,500.
  7. What should I do? Answers about the virus from Axios expertsWhat to know about social distancingQ&A: Minimizing your coronavirus risk
  8. Other resources: CDC on how to avoid the virus, what to do if you get it.

Subscribe to Mike Allen's Axios AM to follow our coronavirus coverage each morning from your inbox.

U.S. coronavirus updates: Infections number tops 140,000

Data: The Center for Systems Science and Engineering at Johns Hopkins; Map: Andrew Witherspoon/Axios

The novel coronavirus has now infected over 142,000 people in the U.S. — more than any other country in the world, per Johns Hopkins data.

The big picture: COVID-19 had killed over 2,400 people in the U.S. by Sunday night. That's far fewer than in Italy, where over 10,000 people have died — accounting for a third of the global death toll. The number of people who've recovered from the virus in the U.S. exceeded 2,600 Sunday evening.

Go deeperArrowUpdated 4 hours ago - Health

World coronavirus updates: Cases surge past 720,000

Data: The Center for Systems Science and Engineering at Johns Hopkins, the CDC, and China's Health Ministry. Note: China numbers are for the mainland only and U.S. numbers include repatriated citizens and confirmed plus presumptive cases from the CDC

There are now more than 720,000 confirmed cases of the coronavirus around the world, according to data from Johns Hopkins. The virus has now killed more than 33,000 people — with Italy alone reporting over 10,000 deaths.

The big picture: Governments around the world have stepped up public health and economic measures to stop the spread of the virus and soften the financial impact. In the U.S., now the site of the largest outbreak in the world, President Trump said Sunday that his administration will extend its "15 Days to Slow the Spread" guidelines until April 30.

Go deeperArrowUpdated 5 hours ago - Health