Bugcrowd is especially recommended for businesses and organizations, regardless of size, that are looking to proactively manage their security risks through a sustainable and controlled vulnerability disclosure or bug bounty program. It is also suitable for companies that lack the internal resources to conduct continuous, effective security testing.
Based on our record, Bugcrowd should be more popular than Cobalt.io. It has been mentiond 8 times since March 2021. We are tracking product recommendations and mentions on various public social media platforms and blogs. They can help you identify which product is more popular and what people think of it.
Cobalt.io | Data Engineering | US, UK, or Germany (Remote/Hybrid) | Full-time | https://cobalt.io Cobalt helps secure leading companies (e.g. Dropbox, PagerDuty) by connecting them with on-demand pentesting experts. Our application brings both sides together to identify, triage and fix vulnerabilities. Ten years in and over 40K commits later, our technology has been battle tested by thousands of users and we’re... - Source: Hacker News / 9 months ago
I would be tempted to say yes. It's important to keep in mind that most tech companies out there don't have a giant budget and 1000 employees so they often can't afford a red team. This in turn creates a big demand for external contractors such as Cobalt. I personally, however, prefer to work for the company itself rather than being a contractor as it lets me not only find the problem, but help them fix the issue. Source: over 2 years ago
Cobalt.io | Multiple roles | Remote, US, Germany | Full-time | https://cobalt.io Cobalt helps secure hundreds of leading companies (GoDaddy, HubSpot) by connecting them with on-demand pentesting experts. Our application brings both sides together to identify, triage and fix vulnerabilities. Seven years and over 20K commits later, our technology has been battle tested by thousands of users. We’re a rapidly growing... - Source: Hacker News / almost 4 years ago
Imagine this you would be an ex-blue team member looking to join red team to fight against the blue team. Don't let your passion for Offsec red teaming die, keep building those skills on the side there are many many opportunities to do so! I would recommend to check out places like cobalt.io or Synack red team to kind of get part time red teaming experience if you really are that driven. (Would make for a... Source: about 4 years ago
Cobalt.io | Multiple roles | Remote, US, Germany | Full-time | https://cobalt.io Today, Cobalt helps secure hundreds of leading companies (GoDaddy, HubSpot) by connecting them with on-demand pentesting experts. Our application brings both sides together to identify, triage and fix vulnerabilities. Seven years and 20K commits later, our technology has been battle tested by thousands of users. What’s next? Cobalt is... - Source: Hacker News / about 4 years ago
I like bugcrowd.com but there are others. Source: about 2 years ago
Depending on what type of cybersecurity you want to do, there's other ways to set yourself apart as well. Another way I'd get confidence in someone's abilities is if they've made bug bounties on bugcrowd.com or hackerone.com, for example. Even then, at big companies those people still have to go through HR just like everybody else. Source: over 2 years ago
CTFs are the suitable choice in your early phases of learning , just keep an eye on ctftime.org and play some CTFs , if you are confident enough of your skills and disagree with the idea of having a pre-vulnreable software/app then you can do bug bounties on platforms like : Https://Hackerone.com Https://bugcrowd.com. Source: over 3 years ago
Something else that looks great on a resume is bug bounties. There are a number of responsible disclosure websites like HackerOne and BugCrowd where you can find companies willing to either pay or provide thanks for responsibly disclosing security flaws in their products. Look up some tips on bug bounty hunting and if you get lucky you might be able to find something! Source: over 3 years ago
Hackerone.com and bugcrowd.com but you need hacking skills. Source: almost 4 years ago
Astra Pentest - Astra’s is the cloud-based hacker-style Pentest
HackerOne - HackerOne provides a platform designed to streamline vulnerability coordination and bug bounty program by enlisting hackers.
Strobes PTaaS - Perform recurring and on-demand pentests.
YesWeHack - Global Bug Bounty & Vulnerability Management Platform
AT Internet - Transform your data into action with our powerful and flexible digital analytics solution.
Intigriti - Intigriti offers bug bounty and agile penetration testing solutions powered by Europe's #1 leading network of ethical hackers.