An open API service indexing awesome lists of open source software.

https://github.com/gwen001/bb-datas

Tools and datas related to Bug Bounty.
https://github.com/gwen001/bb-datas

bugbounty pentesting security

Last synced: about 1 year ago
JSON representation

Tools and datas related to Bug Bounty.

Awesome Lists containing this project

README

          

**Last update:** 2019-01-07



![hackerone](images/bb-platform-hackerone.png)

Link: [https://hackerone.com/](https://hackerone.com/)
Country: **US**
Registration: **public**
Researchers: **?**
Programs: **1200+**
Visibility: **public, private**
Public disclosure: **yes**
Reputation: **based on reports status and rewards**
Additional metrics: **signal, impact, badges**
Payout methods: **Paypal, Coinbase, bank transfer**


![Bugcrowd](images/bb-platform-bugcrowd.png)

Link: [https://www.bugcrowd.com/](https://www.bugcrowd.com/)
Country: **US**
Registration: **public**
Researchers: **?**
Programs: **?**
Visibility: **public, private**
Public disclosure: **no**
Reputation (kudos): **based on reports criticity**
Additional metrics: **accuracy**
Payout methods: **Paypal, Payoneer**


![Yes We Hack](images/bb-platform-yeswehack.png) (previously Bounty Factory)

Link: [https://www.yeswehack.com/en/](https://www.yeswehack.com/en/)
Country: **France**
Registration: **public**
Researchers: **~750**
Programs: **?**
Visibility: **public, private**
Public disclosure: **no**
Reputation: **based on reports status, rewards and reports quality**
Additional metrics: **no**
Payout methods: **bank transfer**


![Yogosha](images/bb-platform-yogosha.png)

Link: [https://www.yogosha.com/](https://www.yogosha.com/)
Country: **France**
Registration: **test required**
Researchers: **~150**
Programs: **?**
Visibility: **public, private**
Public disclosure: **no**
Reputation: **?**
Additional metrics: **reports quality**
Payout methods: **bank transfer**


![HackenProof](images/bb-platform-hackenproof.png)

Link: [https://hackenproof.com/](https://hackenproof.com/)
Country: **Estonia**
Registration: **public**
Researchers: **~1000**
Programs: **?**
Visibility: **public, private, vetted**
Public disclosure: **yes**
Reputation: **reports status and reports severity**
Additional metrics: **-**
Payout methods: **HKN (Hacken crypto currency)**


![cobalt](images/bb-platform-cobalt.png)

Link: [https://cobalt.io/](https://cobalt.io/)
Country: **US**
Registration: **invitation required**
Researchers: **?**
Programs: **?**
Visibility: **invite only**
Public disclosure: **no**
Reputation: **none**
Additional metrics: **no**
Payout methods: **Paypal, Bitcoin**


![Synack Red Team](images/bb-platform-synack.png)

Link: [https://www.synack.com/red-team/](https://www.synack.com/red-team/)
Country: **US**
Registration: **tutorial, video interview, technical assessments, background check, ID verification**
Researchers: **~3000**
Programs: **?**
Visibility: **private**
Public disclosure: **no**
Reputation: **reports quality, rewards, target hardening**
Additional metrics: **?**
Payout methods: **Paypal**


![Intigriti](images/bb-platform-intigriti.png)

Link: [https://www.intigriti.com/](https://www.intigriti.com/)
Country: **Belgium**
Registration: **public**
Researchers: **?**
Programs: **?**
Visibility: **public, confidential, private, vetted**
Public disclosure: **no**
Reputation: **based on reports criticity**
Additional metrics: **quality score**
Payout methods: **bank transfer**


![Zerocopter](images/bb-platform-zerocopter.png)

Link: [https://www.zerocopter.com/](https://www.zerocopter.com/)
Country: **Netherlands**
Registration: **disabled**
Researchers: **?**
Programs: **?**
Visibility: **private, vetted**
Public disclosure: **no**
Reputation: **no**
Additional metrics: **no**
Payout methods: **Paypal, Bitcoin, bank transfer**
**Extra info:**
Rewards fixed by the platform ([https://www.zerocopter.com/en/vulnerability-price-list](https://www.zerocopter.com/en/vulnerability-price-list))


![Detectify](images/bb-platform-detectify.png)

Link: [https://cs.detectify.com/](https://cs.detectify.com/)
Country: **Sweden**
Registration: **invite only**
Researchers: **150+**
Programs: **N/A**
Visibility: **private**
Public disclosure: **no**
Reputation: **vulnerability severity and popularity**
Additional metrics: **?**
Payout methods: **payment handled through Bugcrowd**
**Extra infos:**
Vulnerabilities are submitted to Detectify continuously, implemented into Detectify scanners and researchers are rewarded as their vulnerabilities are found in Detectify customer's scans, a unique model which separates Detectify Crowdsource from other platforms. Detectify does not work with programs in that sense, but instead focus Detectify researchers' attention towards technology types used by a range of companies.


![AntiHack.me](images/bb-platform-antihackme.png)

Link: [https://www.antihack.me/](https://www.antihack.me/)
Country: **Singapore**
Registration: **public**
Researchers: **?**
Programs: **?**
Visibility: **public, private**
Public disclosure: **no**
Reputation: **based reports status and rewards**
Additional metrics: **hit rate, impact**
Payout methods: **Paypal**


![BugBounty.jp](images/bb-platform-bugbountyjp.png)

Link: [https://bugbounty.jp/](https://bugbounty.jp/)
Country: **Japan**
Registration: **public**
Researchers: **~1500**
Programs: **?**
Visibility: **public, private**
Public disclosure: **no**
Reputation: **based on reports status and rewards**
Additional metrics: **-**
Payout methods: **Paypal, bank transfer (Japan)**


![CESPPA](images/bb-platform-cesppa.png)

Link: [https://www.cesppa.com/](https://www.cesppa.com/)
Country: **US**
Registration: **public**
Researchers: **?**
Programs: **?**
Visibility: **public, private, exclusive**
Public disclosure: **no**
Reputation: **work in progress**
Additional metrics: **no**
Payout methods: **Paypal, cryptocurrency (BTC, LTC, ETH)**
**Extra infos:**
Triage team can be reached on Bug Bounty World slack at #cesppa


![SafeHats](images/bb-platform-safehats.png)

Link: [https://safehats.com/](https://safehats.com/)
Country: **India**
Registration: **public**
Researchers: **?**
Programs: **?**
Visibility: **private**
Public disclosure: **?**
Reputation (karma score): **reports status and rewards**
Additional metrics: **relevancy score, bounty score**
Payout methods: **Paypal, Bitcoin**


![Federacy](images/bb-platform-federacy.png)

Link: [https://www.federacy.com/](https://www.federacy.com/)
Country: **US**
Registration: **public**
Researchers: **~20**
Programs: **~20**
Visibility: **public, private**
Public disclosure: **no**
Reputation: **work in progress**
Additional metrics: **no**
Payout methods: **Paypal, Venmo, Bitcoin, Ethereum, Stripe on the way**
**Extra infos:**
Currently in a closed beta. If you signed up without an invitation code, there is a hard limit set on your account allowing only 3 reports to be submitted per week.


![Hacktrophy](images/bb-platform-hacktrophy.png)

Link: [https://hacktrophy.com/en/](https://hacktrophy.com/en/)
Country: **Slovak Republic**
Registration: **public**
Researchers: **600+**
Programs: **?**
Visibility: **public, private**
Public disclosure: **yes**
Reputation: **no**
Additional metrics: **no**
Payout methods: **Paypal, Bitcoin, bank transfer**
**Extra infos:**
Programs set reward limit by month/year.


![Hackrfi](images/bb-platform-hackrfi.png)

Link: [https://hackr.fi/en/](https://hackr.fi/en/)
Country: **Finland**
Registration: **public**
Researchers: **?**
Programs: **?**
Visibility: **?**
Public disclosure: **?**
Reputation: **?**
Additional metrics: **?**
Payout methods: **Paypal, bank transfer (Finland)**


![Open Bug Bounty](images/bb-platform-openbugbounty.png)

Link: [https://www.openbugbounty.org/](https://www.openbugbounty.org/)
Country: **?**
Registration: **public**
Researchers: **7500+**
Programs: **N/A**
Visibility: **N/A**
Public disclosure: **yes**
Reputation: **?**
Additional metrics: **recommendations, badges**
Payout methods: **up to the company**
**Extra infos:**
Open Bug Bounty is a non-profit Bug Bounty platform. The responsible disclosure platform allows independent security researchers to report XSS and similar security vulnerabilities on any website they discover.


![BountyGraph](images/bb-platform-bountygraph.png)

Link: [https://bountygraph.com/](https://twitter.com/BountyGraph/status/1065452023406055425) (closed)
Country: **US**
Registration: **public**
Researchers: **?**
Programs: **?**
Visibility: **?**
Public disclosure: **?**
Reputation: **?**
Additional metrics: **?**
Payout methods: **Paypal, Stripe**


![BugsBounty](images/bb-platform-bugsbounty.png)

Link: [https://bugsbounty.io/](https://bugsbounty.io/)
Country: **India**
Registration: **currently running internally**
Researchers: **?**
Programs: **?**
Visibility: **?**
Public disclosure: **?**
Reputation: **?**
Additional metrics: **?**
Payout methods: **?**


![Crowd Shield](images/bb-platform-crowdshield.png)

Link: [https://crowdshield.com/](https://crowdshield.com/)
Country: **CA**
Registration: **public**
Researchers: **?**
Programs: **~20**
Visibility: **public, private**
Public disclosure: **yes**
Reputation: **reports criticity**
Additional metrics: **?**
Payout methods: **?**


![Cyber Army](images/bb-platform-cyberarmy.png)

Link: [https://www.cyberarmy.id/](https://www.cyberarmy.id/)
Country: **Indonesia**
Registration: **public**
Researchers: **~20**
Programs: **~10**
Visibility: **?**
Public disclosure: **no**
Reputation: **?**
Additional metrics: **?**
Payout methods: **?**


![BugBountyZone](images/bb-platform-bugbountyzone.png)

Link: [https://www.bugbountyzone.com/](https://www.bugbountyzone.com/)
Country: **France**
Registration: **good luck**
Researchers: **?**
Programs: **?**
Visibility: **?**
Public disclosure: **?**
Reputation: **?**
Additional metrics: **?**
Payout methods: **?**


![Secuna](images/bb-platform-secuna.png)

Link: [https://secuna.io/](https://secuna.io/)
Country: **Philippines**
Registration: **Background check, ID verification, Video interview**
Researchers: **100+**
Programs: **5+**
Visibility: **Public, Private**
Public disclosure: **Yes**
Reputation: **Based on report status**
Additional metrics: **?**
Payout methods: **PayPal and Bitcoin**


**0 day platforms:**



![Zerodium](images/bb-platform-zerodium.png)

Link: [https://zerodium.com/](https://zerodium.com/)
Country: **US**
Registration: **no need**
Researchers: **N/A**
Programs: **N/A**
Visibility: **N/A**
Public disclosure: **no**
Reputation: **N/A**
Additional metrics: **N/A**
Payout methods: **wire transfer, Bitcoin**


![Zero Day Initiative](images/bb-platform-zdi.png)

Link: [https://www.zerodayinitiative.com/](https://www.zerodayinitiative.com/)
Country: **US**
Registration: **public**
Researchers: **N/A**
Programs: **N/A**
Visibility: **N/A**
Public disclosure: **no**
Reputation: **?**
Additional metrics: **?**
Payout methods: **wire transfer**


![Crowdfense](images/bb-platform-crowdfense.png)

Link: [https://www.crowdfense.com/](https://www.crowdfense.com/)
Country: **UAE**
Registration: **no need**
Researchers: **N/A**
Programs: **N/A**
Visibility: **N/A**
Public disclosure: **no**
Reputation: **N/A**
Additional metrics: **N/A**
Payout methods: **?**