From Curiosity to Impact: How Hackers Help Keep GitHub Secure π‘οΈ #169623
Replies: 1 comment 1 reply
-
What surprised you most about how the program works?This isn't something that surprised me about how the program itself worked BUT this quote from Shilpa did surprise me:
I always somewhat assumed that folks who participate in programs like the bug bounty program are experts and highly experienced. It goes to show that, if this is something that you're interested in participating in, the only thing stopping you is your ability to just start somewhere. What role do you think security should play in the open source community?Iβm a big believer in βsecure by default.β If we set things up so secure choices are the easy, obvious choices, it helps everyone, maintainers, contributors, and users, start from a safer place without extra steps. As a community manager here at GitHub, that means weaving security into the everyday: sharing quick tips on safe contributions, making sure sensitive info isnβt posted in public threads, and connecting reports to the right folks fast. Little habits like these add up to a culture where security is just part of how we work together. Alright Community, I'm excited to hear your thoughts as well! |
Beta Was this translation helpful? Give feedback.
Uh oh!
There was an error while loading. Please reload this page.
Uh oh!
There was an error while loading. Please reload this page.
-
When you think of hacking, you might picture something out of a movie:

In reality, many hackers use their skills to protect systems and help companies stay secure. This is where bug bounty programs come in. They reward security researchers who find and responsibly report vulnerabilities, helping keep platforms like GitHub safe for everyone.

Whether youβre brand new to GitHub or already contributing to projects, learning how security fits into the picture is an important step in your journey. You donβt need to be a security expert to start exploring this world, you just need curiosity and a willingness to learn.
A few months back we spoke with Shilpa Kumari (@shilpakum), a Senior Product Security Engineer on GitHubβs Bug Bounty team, to get a behind-the-scenes look at how the program works and how hackers are making a positive impact.
If youβve ever wondered:
β¦this interview is a great place to start.
π Read the interview here: Hacking for Good: A Behind-the-Scenes Look at GitHubβs Bug Bounty Program π©πΎβπ»
After reading, share your thoughts below:
Beta Was this translation helpful? Give feedback.
All reactions