Skip to content

More posts

All →
Security

9 Must-See Talks at #hackersummercamp 2022

Here's a list of the talks that I'm going to get myself along to at Blackhat and DEF CON this year, and why...

04 Aug 2022 · 3 min read
Security

Digital and Personal Self-Care at #hackersummersamp — "New Normalish" Edition

I usually write a piece for first-timers and newbies on how to get the most out of Hacker Summer Camp and how to stay safe digitally and physically. This tradition began in the early days of Bugcrowd, when DEF CON was part of new-hire induction.

28 Jul 2022 · 6 min read
Security

Two-thirds of ethical hackers considering bug bounty hunting as a full-time career

Casey Ellis, founder and CTO at Bugcrowd, said bug bounty hunters are ultimately entrepreneurs in their own right.

30 May 2022 · 1 min read
Security

[TRANSCRIPT] Threats that may have gone unnoticed by organizations during the pandemic

Casey Ellis, the founder, chairman and CTO of Bugcrowd, told SC Media Senior Reporter Joe Uchill that companies should think about the various threat scenarios that emerged over the last year that they may have missed as employees return to the office environment.

20 Aug 2021 · 2 min read
Security

[TRANSCRIPT] Threat hunting in the age of work-from-home

Casey Ellis, the founder, chairman and CTO of Bugcrowd, told SC Media Senior Reporter Joe Uchill that there’s always going to be corporate infrastructure that provides information for a threat hunter, such as VPN, antivirus, and endpoint detection and response.

20 Aug 2021 · 2 min read
Security

IT Visionaries Podcast with Malcolm Harkness

On this roundtable episode of IT Visionaries, we explore the impact A.I. and technology are having on society and cybersecurity with Casey Ellis, the founder and CTO of Bugcrowd and Malcolm Harkins, a cybersecurity advisor, coach and board member.

06 Jul 2021 · 36 min read
Security

The Bar Fight Risk Taxonomy

After hearing "vulnerability" and "threat" used interchangeably for a >9,000th time I decided to do something about it, and the Bar Fight Risk Taxonomy was born.

26 Jun 2021 · 4 min read
Building

My "office" setup — Part 2

This is a follow up from https://cje.io/2021/03/28/my-office-setup which is worth reading first if you haven't yet... Everything in Part 1 is still in play - Part 2 talks through some optimizations and a couple of additions.

22 May 2021 · 4 min read
Building

Bugcrowd at AusCERT2021

AusCERT 2021 was a hybrid conference this year, and one of the first Australian cybersecurity conferences to resume in real life after the onset of the COVID pandemic. I was there representing Bugcrowd across three (!) separate sessions.

19 May 2021 · 1 min read
Policy

The iOS FaceTime vulnerability: What it means and what you can do to protect yourself

Yesterday news broke that a bug in FaceTime that allows callers to listen to the audio of the person they are calling before that person picks

16 May 2021 · 3 min read
Policy

How Governments are Running Effective Bug Bounty Programs

If you’re reading this article, statistically speaking your organization might be getting hacked. In the private sector, the Equifax hack and Intel’s processor vulnerabilities

16 May 2021 · 2 min read
Building

On disclosure, confidentiality, and norms…

A few weeks ago I was tagged by Art Manion of the CERT Coordination Center (CERT/CC) in a tweet asking about Bugcrowd’s approach to

16 May 2021 · 3 min read