Bug bounties and broken CVEs with Bryan Brake
Join us for this week's Defender Fridays as we explore bug bounty programs, vulnerability management, and the complexities of the CVE system with Brian Break, a veteran security professional with twenty years of experience across endpoint security, consulting, and product security.
At Defender Fridays, we delve into the dynamic world of information security, exploring its defensive side with seasoned professionals from across the industry. Our aim is simple yet ambitious: to foster a collaborative space where ideas flow freely, experiences are shared, and knowledge expands.
What We'll Discuss
In this episode, Brian shares insights from his extensive experience managing bug bounty programs and working with security researchers. He examines how the CVE system is evolving, the challenges of vulnerability disclosure, and the practical realities of coordinating security across organizations.
Key Topics:
- Bug bounty programs as the last line of defense before public disclosure
- How security researchers bring unique perspectives that traditional testing misses
- The CVE Numbering Authority (CNA) system and its growing challenges
- Vulnerability disclosure coordination across the supply chain
- The downstream impact of open source vulnerabilities
- Balancing transparency and responsible disclosure in bug bounty programs
Register for Live Sessions
Join us every Friday at 10:30am PT for live, interactive discussions with industry experts. Whether you're a seasoned professional or just curious about the field, these sessions offer an engaging dialogue between our guests, hosts, and you – our audience.
Register here: https://limacharlie.io/defender-fridays
Subscribe to our YouTube channel and hit the notification bell to never miss a live session or catch up on past episodes on our website!
Sponsored by LimaCharlie
This episode is brought to you by LimaCharlie, the world's first SecOps Cloud Platform (SCP). Build and customize your security stack like "lego blocks" with our flexible, API-first solution.
Why LimaCharlie?
- Eliminate vendor sprawl and tool complexity
- Deploy and scale effortlessly on native multi-tenant architecture
- Reduce costs with intelligent data routing and free 1-year retention
- Build custom solutions with 100+ security capabilities on-demand
- Improve response times with automation and real-time capabilities
Try the SecOps Cloud Platform free: https://limacharlie.io
Learn more: https://docs.limacharlie.io
Follow LimaCharlie
Sign up for free: https://limacharlie.io
LinkedIn: https://www.linkedin.com/company/limacharlieio/
X: https://x.com/limacharlieio
Community Discourse: https://community.limacharlie.com/
Host: Maxime Lamothe-Brassard - Founder at LimaCharlie
LinkedIn: https://www.linkedin.com/in/maximelb/
#defenders #cybersecurity #bugbounty #vulnerabilitymanagement #secops #infosec #cyberdefense