Platform to Launch Security Audit Contests for Crypto Exchanges With $2 Million Reward Pool

Published at: July 2, 2018

An Ethereum blockchain-powered platform Buglab aims to strengthen information security by transforming the process of finding vulnerabilities into challenges — or “contests” — for certified cybersecurity testers. By setting time limits for these experts to find vulnerabilities, they will then be rewarded for their cumulative discoveries. Buglab also plans to secure cryptocurrency exchanges, by hosting the testings with a reward pool of $2 million.

The company says that their methods can help overcome the current problems of traditional security testing: cost inefficiency, lack of resources and irrelevance in reporting. Clients would benefit as several cybersecurity researchers are assigned to the task in a competitive manner. Additionally, these testers could add in-depth analysis of any issues discovered.

In addition to the contests, Buglab has a program called Vigilante Protocol where ‘whitehat’ hackers can share what they have discovered as system vulnerabilities. Buglab would then work with computer emergency response teams (CERTs) worldwide to ensure that the vulnerabilities are not repeated in other instances.

Buglab says they aim to help companies for free, and whitehat hackers will be rewarded by the Vigilante Protocol reserve, which will be funded by 20 percent of the tokens created by the platform.

Addressing cybersecurity gaps

In the current arms race between cybersecurity and online hackers, it appears that the security side is losing. As cyber professionals adopt new methods to block hackers, the criminals, in turn, are able to evolve their methods in new and more imaginative ways. This is not helped by the lack of manpower on the security side. In 2017, data from a Global Information Security Workforce Study projects that by 2022, there will be a shortfall of 1.8 million information security workers.

With Gartner predicting the need for $93 billion spent on information security this year, Buglab’s white paper claims that their service will provide a “unique, competitive, incentivized and easy-to-use platform to address this widespread and growing business need.” They highlight that many companies that already have cybersecurity systems in place may not be aware of gaps or weak spots in their defences. Buglab’s aim is to help these companies identify, and thus mitigate, any cybersecurity gaps that are present.

Recently, Buglab were finalists in the ICO RACE in Lugano, Switzerland, and — from June 16 to 19 — pitched themselves to the Blockchain Economic Forum in San Francisco.

According to the company’s website, the diverse team behind Buglab has a vast range of experience and expertise in blockchain and crypto. Backend developer Alexander Belokon has worked in code for over 15 years. Founder and CEO Reda Cherqaoui has worked in a range of tech environments — from banks to electronics. He said he helped internet giants including Google and Yahoo to find vulnerabilities for free, and in 2011 his platform called Agatha reportedly found a flaw in the security system of Facebook, which gave access to users’ accounts without passwords.

Buglab token and a roadmap

The platform’s own crypto token, BGL, is based on the ERC-20 compatible token, and is used to power all transactions in the Buglab ecosystem, and as a reward incentive for researchers.

Buglab will be running a token distribution event (whitelisting required) from the June 30, 2018, for a period of four weeks.

According to the company, in total Buglab will create 425 million BGL tokens, of which, 40 percent, or 170 million will be allocated to the token distribution event. The BGL token sale price is locked at $0.15 for the duration of the the token sale. Buglab will offer participants a 25 percent token bonus during the presale.

The company says they planned to release public beta version of the platform in Q3 2018, but due to the recent hacks of Bithumb an Coinrail exchanges the team decided to release a private beta and host security testing on crypto exchanges for free.

Every exchange will get the enterprise plan of $10,000 and $10,000 as a bonus. If no vulnerability is found the exchanges will get $10,000 to make them able to run a security contest later. The reward will be paid to researchers in tokens after the sales end.

Buglab’s 2018 roadmap following the presale will see the public sale in Q3, along with the beginning of blockchain migration and the public beta release. Q4 will see the launch of Contest and Vigilante Protocol.

 

Disclaimer. Cointelegraph does not endorse any content or product on this page. While we aim at providing you all important information that we could obtain, readers should do their own research before taking any actions related to the company and carry full responsibility for their decisions, nor this article can be considered as an investment advice.

Tags
Related Posts
Coinbase creates support phone line for account takeovers
Coinbase has announced a new support phone line for customers who believe their account has been compromised by outside actors. Users will be able to speak to a live support agent, who can kick off an investigation immediately. In an industry where support tickets and emails are the standard method of communication, Coinbase expects that this implementation could help users save valuable time when dealing with this type of crisis. Coinbase also offers its customers additional layers of protection that include two-factor authentication, unknown device recognition and advanced hardware security keys. Account takeovers, or ATOs, involve a malicious actor gaining …
Technology / Aug. 19, 2021
Binance Security Report Sheds Light On Crypto Scams
A report released by major crypto exchange Binance illustrates how scams targeting cryptocurrency investors attempt to gain credibility. In the report published on June 30, the exchange explained that its Binance Sentry risk investigation service observed reports of fraudulent investment schemes promising quick or exponential returns on cryptocurrency investments. The frauds do not just concern crypto but also forex, binary options and contracts for difference (CFDs). Binance published the report after a Bitcoin (BTC) scam targeted the residents of Winnipeg, Canada, in late June. Scams are often well-organized, big operations Scam organizations are frequently the subject of regulatory warnings but …
Blockchain / July 2, 2020
Crypto Exchange UpBit Operator Launches Custody Service with Ledger
DXM, a financial services subsidiary of South Korean fintech firm Dunamu, has worked with crypto cybersecurity firm Ledger to launch an institutional crypto asset custody service. The partnership and the new custodian Industry news outlet TheBlock reported on Dec. 4 that DXM plans to launch the custodian under the name Upbit Safe and that Ledger Vault, Ledger’s custody arm, will support the initiative with its technology. Upbit safe will reportedly use Ledger’s hardware security technology to make trading more efficient and safer for its institutional clients. Ledger’s Head of Asia-Pacific region Glenn Woo explained that Ledger Vault offers solutions that …
Blockchain / Dec. 5, 2019
Crypto Security Platform Fireblocks Now Supports 5 More Exchanges
Digital asset cybersecurity startup Fireblocks announced that it now supports five more cryptocurrency exchanges, bringing the total number of covered platforms to 20. According to the official announcement, with this release, market makers, prop traders and OTCs have a simple and secure unified workflow for securing assets in motion between 20 different exchanges. The release states: “Fireblocks, an enterprise platform for securing digital assets in transit, announced today five new exchange integrations, adding support for OKCoin, OKEx, Korbit, Bithub, and HitBTC. This release also expands current integrations with Huobi Global's API and Deribit, extending its umbrella of protection to a …
Blockchain / Sept. 6, 2019
BREAKING: Curve Finance team warns users to avoid using site until further notice
On Aug 9, automated market maker Curve Finance took to Twitter to warn users of an ongoing exploit on its site. The team behind the protocol noted that the issue, which appears to be an attack from a malicious actor, is affecting the service’s nameserver and frontend. Don't use https://t.co/vOeMYOTq0l site - nameserver is compromised. Investigation is ongoing: likely the NS itself has a problem — Curve Finance (@CurveFinance) August 9, 2022 Curve stated via Twitter that its exchange — which is a separate product — appeared to be unaffected by the attack, as it uses a different DNS provider. …
Decentralization / Aug. 9, 2022