Skip to main content

EU to offer bug bounties for finding security flaws in open-source software

Bug bounties are a way for companies to check the security of their software by offering cash to freelancers who hunt for security exploits and then report them so that they can be fixed. The idea is that everyone benefits from this process: the company gets its software checked by a larger variety of people than they could employ by themselves, the bug hunters get offered legitimate cash for finding a security flaw instead of selling that information on the black market, and the public gets software which has been more thoroughly checked for security issues. Big tech companies like Google and Intel have been running bug bounty programs for years.

Now the European Union is getting in on the action too. From January 2019, the EU will be launching a bug bounty program as part of their Free and Open Source Software Audit project (FOSSA), focused on security issues with open-source software. The FOSSA project was started back in 2014 when security vulnerabilities were found in the OpenSSL Open Source encryption library which is used for the encryption of internet traffic. As free and open-source software performs a number of vital functions for every internet user, the European Parliament and others decided to take on the challenge of auditing the free software that they use for security issues.

Since 2014 the FOSSA project has been gathering data, sponsoring hackathons, and deciding on which bug bounties to offer. The first phase of the project focused on auditing the security of the essential Apache and KeePass software, then the project was renewed and extended to cover other open-source software as well. Now 14 out of the 15 total bug bounties will be launched in January, selected from open-source software projects that are used by EU institutions.

You can find a list of the programs included in the project and the amount offered as a bounty for each one at the website of Julia Reda, an internet activist and Member of the European Parliament (MEP) from Germany. The software that is part of the project includes well-known programs like VLC Media Player and 7-zip, and the bounties offered for finding an exploit range from €25,000 (about $28,000) to €90,000 (just over $100,000).

Editors' Recommendations

Georgina Torbet
Georgina is the Digital Trends space writer, covering human space exploration, planetary science, and cosmology. She…
4 CPUs you should buy instead of the Intel Core i9-13900K
Intel Core i9-13900K held between fingertips.

Intel's Core i9-13900K is one of the best processors you can buy. The 24-core behemoth can rip through productivity workloads with ease, and it's easily one of the fastest gaming CPUs money can buy. Even with so much power under the hood, it's not the right choice for everyone.

Supreme power comes at a supreme cost, and for the Core i9-13900K, that comes in the form of heat and power draw. In addition, a recent wave of instability has hit Intel's high-end CPUs like the Core i9-13900K, making alternatives a bit more attractive.

Read more
Best Lenovo laptop deals: Save on Yoga and ThinkPad laptops
Lenovo Yoga 9i Gen 8 front angled view showing display and keyboard deck.

If you’re in the market for a new laptop and want to take some savings home with your as well, you can shop Dell laptop deals or MacBook deals, but here we’d like to turn your attention to Lenovo. Lenovo is almost always among the best laptop brands, and it has several laptop lineups to choose from. Lenovo ThinkPad deals are regularly among the best laptop deals you can shop, and it even places a model among the best laptops now and then. You can currently find some massive savings on Lenovo laptops, which is why we’ve rounded up all of the best Lenovo laptop deals. Below you’ll find some impressive savings, with prices on a new laptop starting as low as $189.
Lenovo IdeaPad Slim 3 Chromebook — $189, was $319

Shopping the best Chromebooks can be a great way to save some money if you only need the bare essentials in a laptop. The IdeaPad Slim 3 Chromebook has, for the most part, entry-level specs, but it’s able to get the job done when it comes to homework, browsing the web, and even some office work. The 14-inch screen comes in at Full HD resolution so you can do some binge watching with this Chromebook. It’s an all-around great choice for students and professionals who don’t depend on high end software to do their work.

Read more
Gaming laptops vs. desktops: here’s how to decide which to buy in 2024
Lenovo Legion 9i front view showing RGB lighting.

Picking between a gaming laptop and a desktop is often pretty straightforward: You either need the portability or you don't. But if you're fine with or without it, then what's the best option?

Even when equipped with the same model of graphics card and processor, laptops and desktops are vastly different. We'll tell you everything you need to know to choose the one that suits you best.
Gaming laptop vs. desktop at a glance

Read more