{"id":7449,"date":"2022-02-04T18:30:12","date_gmt":"2022-02-04T18:30:12","guid":{"rendered":"https:\/\/www.hostingseekers.com\/blog\/?p=7449"},"modified":"2025-03-06T10:56:09","modified_gmt":"2025-03-06T10:56:09","slug":"cloudflare-brings-out-bug-bounty-program","status":"publish","type":"post","link":"https:\/\/www.hostingseekers.com\/blog\/cloudflare-brings-out-bug-bounty-program\/","title":{"rendered":"Cloudflare Brings Out Bug Bounty Program"},"content":{"rendered":"<p><span style=\"font-weight: 400;\">Cloudflare is headquartered in an American company that primarily focuses on web infrastructure and website security. So, to enhance their expertise, Cloudflare recently announced that they are planning a new public bug bounty program soon.<\/span><\/p>\n<hr \/>\n<h2><b>Paid Big Bounty Program Launched By Cloudflare<\/b><\/h2>\n<p><span style=\"font-weight: 400;\">Rushil Shah, Product Security Engineer at Cloudflare stated that \u2013 they are now launching <\/span><a href=\"https:\/\/blog.cloudflare.com\/cloudflare-bug-bounty-program\/\" rel=\"\u201dnofollow\u201d\"><span style=\"font-weight: 400;\">Cloudflare\u2019s paid public bug bounty program<\/span><\/a><span style=\"font-weight: 400;\">.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Further, he added that we believe that bug bounties are an essential part of every security team\u2019s toolbox. Hence, they have been working very hard to improve and expand their private bug bounty program over the last few years. Well, their hard work paid off.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The newly launched bug bounty program is based on the vulnerability disclosure program without cash bounties that were created back in 2014. Though, the program is still in a new phase, so till now, Cloudflare has received 1,197 reports from which only 13% are valid. This rate is still low because researchers were struggling to understand the infrastructure and products.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Back in 2018, Cloudflare had launched a private bug bounty program that focused on providing a better experience for researchers. By mid-Jan-2022, Cloudflare received an award worth $211,512 for its in-scope vulnerabilities, which grew up from $4,500 in 2018 to $101,075 in 2021.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Cloudflare has also released a sandbox named CumlusFire before the release of a new public bounty program, which provides bug hunters with a standardized playground to test exploits.<\/span><\/p>\n<hr \/>\n<h3><b>Cloudflare\u2019s New Bug Bounty Program Explained<\/b><\/h3>\n<p><span style=\"font-weight: 400;\">From now, if security vulnerabilities are found in Cloudflare products then bug hunters can report them through the company\u2019s new public bug bounty program, hosted on the HackerOne platform.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The breakdown of bounty awards for targets based on the issues\u2019 CVSS3 severity rating is:<\/span><\/p>\n<table>\n<tbody>\n<tr>\n<td>\n<p style=\"text-align: center;\"><span style=\"font-weight: 400;\">Severity<\/span><\/p>\n<\/td>\n<td style=\"text-align: center;\"><span style=\"font-weight: 400;\">Critical (9.0 &#8211; 10.0)<\/span><\/td>\n<td style=\"text-align: center;\"><span style=\"font-weight: 400;\">High (7.0 &#8211; 8.9)<\/span><\/td>\n<td style=\"text-align: center;\"><span style=\"font-weight: 400;\">Medium (4.0 &#8211; 6.9)<\/span><\/td>\n<td style=\"text-align: center;\"><span style=\"font-weight: 400;\">Low (0.1 &#8211; 3.9)<\/span><\/td>\n<\/tr>\n<tr>\n<td>\n<p style=\"text-align: center;\"><span style=\"font-weight: 400;\">Primary Targets<\/span><\/p>\n<\/td>\n<td>\n<p style=\"text-align: center;\"><span style=\"font-weight: 400;\">$3,000<\/span><\/p>\n<\/td>\n<td style=\"text-align: center;\">\n<p style=\"text-align: center;\"><span style=\"font-weight: 400;\">$1,000<\/span><\/p>\n<\/td>\n<td style=\"text-align: center;\"><span style=\"font-weight: 400;\">$500<\/span><\/td>\n<td>\n<p style=\"text-align: center;\"><span style=\"font-weight: 400;\">$250<\/span><\/p>\n<\/td>\n<\/tr>\n<tr>\n<td>\n<p style=\"text-align: center;\"><span style=\"font-weight: 400;\">Secondary Targets<\/span><\/p>\n<\/td>\n<td>\n<p style=\"text-align: center;\"><span style=\"font-weight: 400;\">$2,700<\/span><\/p>\n<\/td>\n<td style=\"text-align: center;\"><span style=\"font-weight: 400;\">$750<\/span><\/td>\n<td style=\"text-align: center;\"><span style=\"font-weight: 400;\">$350<\/span><\/td>\n<td>\n<p style=\"text-align: center;\"><span style=\"font-weight: 400;\">$200<\/span><\/p>\n<\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: center;\"><span style=\"font-weight: 400;\">Other<\/span><\/td>\n<td style=\"text-align: center;\"><span style=\"font-weight: 400;\">$2,100<\/span><\/td>\n<td style=\"text-align: center;\"><span style=\"font-weight: 400;\">$500<\/span><\/td>\n<td style=\"text-align: center;\"><span style=\"font-weight: 400;\">$200<\/span><\/td>\n<td>\n<p style=\"text-align: center;\"><span style=\"font-weight: 400;\">$100<\/span><\/p>\n<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p>&nbsp;<\/p>\n<p><span style=\"font-weight: 400;\">Mitigating factors and Cloudflare\u2019s business risk assessment may hamper a lower security rating.<\/span><\/p>\n<hr \/>\n<h4 id=\"047b\" class=\"ht hu dt hv b hw hx hy hz ia ib ic id ie if ig ih ii ij ik il im in io ip iq dl eq\"><em>If you enjoyed reading this news, you are surely going to cherish these too \u2013<\/em><\/h4>\n<ul>\n<li><strong><a href=\"https:\/\/www.hostingseekers.com\/blog\/prime-data-centers-develops-a-9mw-data-center\/\"><em>Prime Is Developing New 9MW Data Center In Silicon Valley<\/em><\/a><\/strong><\/li>\n<li><strong><a href=\"https:\/\/www.hostingseekers.com\/blog\/h5-data-center-acquired-seven-data-centers\/\"><em>H5 Data Centers Declared Acquisition of 7 Data Centers From vXchnge<\/em><\/a><\/strong><\/li>\n<li><strong><a href=\"https:\/\/www.hostingseekers.com\/blog\/linux-server-faced-rce-attacks\/\"><em>Linux Server Faced RCE Attacks Due to Severe Bugs in CentOS<\/em><\/a><\/strong><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>Cloudflare is headquartered in an American company that primarily focuses on web infrastructure and website security. So, to enhance their&hellip; <a class=\"more-link\" href=\"https:\/\/www.hostingseekers.com\/blog\/cloudflare-brings-out-bug-bounty-program\/\">Continue reading <span class=\"screen-reader-text\">Cloudflare Brings Out Bug Bounty Program<\/span><\/a><\/p>\n","protected":false},"author":2,"featured_media":6612,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[238],"tags":[],"class_list":["post-7449","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news","entry"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.4 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Cloudflare Launched Paid Bug Bounty Program<\/title>\n<meta name=\"description\" content=\"Cloudflare has recently launched a bug program that focuses on high security where bug hunters can easily report malfunctions.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.hostingseekers.com\/blog\/cloudflare-brings-out-bug-bounty-program\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Cloudflare Launched Paid Bug Bounty Program\" \/>\n<meta property=\"og:description\" content=\"Cloudflare has recently launched a bug program that focuses on high security where bug hunters can easily report malfunctions.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.hostingseekers.com\/blog\/cloudflare-brings-out-bug-bounty-program\/\" \/>\n<meta property=\"og:site_name\" content=\"Hostingseekers\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/hostingseekers\" \/>\n<meta property=\"article:published_time\" content=\"2022-02-04T18:30:12+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2025-03-06T10:56:09+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.hostingseekers.com\/blog\/wp-content\/uploads\/2022\/02\/BUG-PROGRAM.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1062\" \/>\n\t<meta property=\"og:image:height\" content=\"597\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"manvinder Singh\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@Hostingseekers1\" \/>\n<meta name=\"twitter:site\" content=\"@Hostingseekers1\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"manvinder Singh\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Cloudflare Launched Paid Bug Bounty Program","description":"Cloudflare has recently launched a bug program that focuses on high security where bug hunters can easily report malfunctions.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.hostingseekers.com\/blog\/cloudflare-brings-out-bug-bounty-program\/","og_locale":"en_US","og_type":"article","og_title":"Cloudflare Launched Paid Bug Bounty Program","og_description":"Cloudflare has recently launched a bug program that focuses on high security where bug hunters can easily report malfunctions.","og_url":"https:\/\/www.hostingseekers.com\/blog\/cloudflare-brings-out-bug-bounty-program\/","og_site_name":"Hostingseekers","article_publisher":"https:\/\/www.facebook.com\/hostingseekers","article_published_time":"2022-02-04T18:30:12+00:00","article_modified_time":"2025-03-06T10:56:09+00:00","og_image":[{"width":1062,"height":597,"url":"https:\/\/www.hostingseekers.com\/blog\/wp-content\/uploads\/2022\/02\/BUG-PROGRAM.jpg","type":"image\/jpeg"}],"author":"manvinder Singh","twitter_card":"summary_large_image","twitter_creator":"@Hostingseekers1","twitter_site":"@Hostingseekers1","twitter_misc":{"Written by":"manvinder Singh","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.hostingseekers.com\/blog\/cloudflare-brings-out-bug-bounty-program\/#article","isPartOf":{"@id":"https:\/\/www.hostingseekers.com\/blog\/cloudflare-brings-out-bug-bounty-program\/"},"author":{"name":"manvinder Singh","@id":"https:\/\/www.hostingseekers.com\/blog\/#\/schema\/person\/76bc9258cab3c5bfe0237d3e290b13ea"},"headline":"Cloudflare Brings Out Bug Bounty Program","datePublished":"2022-02-04T18:30:12+00:00","dateModified":"2025-03-06T10:56:09+00:00","mainEntityOfPage":{"@id":"https:\/\/www.hostingseekers.com\/blog\/cloudflare-brings-out-bug-bounty-program\/"},"wordCount":362,"commentCount":0,"publisher":{"@id":"https:\/\/www.hostingseekers.com\/blog\/#organization"},"image":{"@id":"https:\/\/www.hostingseekers.com\/blog\/cloudflare-brings-out-bug-bounty-program\/#primaryimage"},"thumbnailUrl":"https:\/\/www.hostingseekers.com\/blog\/wp-content\/uploads\/2022\/02\/BUG-PROGRAM.jpg","articleSection":["News"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.hostingseekers.com\/blog\/cloudflare-brings-out-bug-bounty-program\/#respond"]}],"copyrightYear":"2022","copyrightHolder":{"@id":"https:\/\/www.hostingseekers.com\/blog\/#organization"}},{"@type":"WebPage","@id":"https:\/\/www.hostingseekers.com\/blog\/cloudflare-brings-out-bug-bounty-program\/","url":"https:\/\/www.hostingseekers.com\/blog\/cloudflare-brings-out-bug-bounty-program\/","name":"Cloudflare Launched Paid Bug Bounty Program","isPartOf":{"@id":"https:\/\/www.hostingseekers.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.hostingseekers.com\/blog\/cloudflare-brings-out-bug-bounty-program\/#primaryimage"},"image":{"@id":"https:\/\/www.hostingseekers.com\/blog\/cloudflare-brings-out-bug-bounty-program\/#primaryimage"},"thumbnailUrl":"https:\/\/www.hostingseekers.com\/blog\/wp-content\/uploads\/2022\/02\/BUG-PROGRAM.jpg","datePublished":"2022-02-04T18:30:12+00:00","dateModified":"2025-03-06T10:56:09+00:00","description":"Cloudflare has recently launched a bug program that focuses on high security where bug hunters can easily report malfunctions.","breadcrumb":{"@id":"https:\/\/www.hostingseekers.com\/blog\/cloudflare-brings-out-bug-bounty-program\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.hostingseekers.com\/blog\/cloudflare-brings-out-bug-bounty-program\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.hostingseekers.com\/blog\/cloudflare-brings-out-bug-bounty-program\/#primaryimage","url":"https:\/\/www.hostingseekers.com\/blog\/wp-content\/uploads\/2022\/02\/BUG-PROGRAM.jpg","contentUrl":"https:\/\/www.hostingseekers.com\/blog\/wp-content\/uploads\/2022\/02\/BUG-PROGRAM.jpg","width":1062,"height":597,"caption":"Cloudflare Launched Paid Bug Bounty Program"},{"@type":"BreadcrumbList","@id":"https:\/\/www.hostingseekers.com\/blog\/cloudflare-brings-out-bug-bounty-program\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.hostingseekers.com\/blog\/"},{"@type":"ListItem","position":2,"name":"Cloudflare Brings Out Bug Bounty Program"}]},{"@type":"WebSite","@id":"https:\/\/www.hostingseekers.com\/blog\/#website","url":"https:\/\/www.hostingseekers.com\/blog\/","name":"Hostingseekers","description":"Hostingseekers","publisher":{"@id":"https:\/\/www.hostingseekers.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.hostingseekers.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.hostingseekers.com\/blog\/#organization","name":"HostingSeekers Pvt. Ltd.","url":"https:\/\/www.hostingseekers.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.hostingseekers.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.hostingseekers.com\/blog\/wp-content\/uploads\/2025\/04\/Hosting-Seekers-Logo.png","contentUrl":"https:\/\/www.hostingseekers.com\/blog\/wp-content\/uploads\/2025\/04\/Hosting-Seekers-Logo.png","width":451,"height":520,"caption":"HostingSeekers Pvt. Ltd."},"image":{"@id":"https:\/\/www.hostingseekers.com\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/hostingseekers","https:\/\/x.com\/Hostingseekers1","https:\/\/www.linkedin.com\/company\/hostingseekers\/","https:\/\/www.instagram.com\/hostingseekers\/"]},{"@type":"Person","@id":"https:\/\/www.hostingseekers.com\/blog\/#\/schema\/person\/76bc9258cab3c5bfe0237d3e290b13ea","name":"manvinder Singh","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/4373df1ab2b4f1e40b27df8913e40d494a7fd38d128e0ac30e9f7406a4f96e91?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/4373df1ab2b4f1e40b27df8913e40d494a7fd38d128e0ac30e9f7406a4f96e91?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/4373df1ab2b4f1e40b27df8913e40d494a7fd38d128e0ac30e9f7406a4f96e91?s=96&d=mm&r=g","caption":"manvinder Singh"},"description":"Manvinder Singh is the Founder and CEO of HostingSeekers, an award-winning go-to-directory for all things hosting. Our team conducts extensive research to filter the top solution providers, enabling visitors to effortlessly pick the one that perfectly suits their needs. We are one of the fastest growing web directories, with 500+ global companies currently listed on our platform.","sameAs":["https:\/\/www.hostingseekers.com","https:\/\/www.linkedin.com\/in\/manvinder-singh\/"],"url":"https:\/\/www.hostingseekers.com\/blog\/author\/seodeveloper\/"}]}},"_links":{"self":[{"href":"https:\/\/www.hostingseekers.com\/blog\/wp-json\/wp\/v2\/posts\/7449","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.hostingseekers.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.hostingseekers.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.hostingseekers.com\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.hostingseekers.com\/blog\/wp-json\/wp\/v2\/comments?post=7449"}],"version-history":[{"count":4,"href":"https:\/\/www.hostingseekers.com\/blog\/wp-json\/wp\/v2\/posts\/7449\/revisions"}],"predecessor-version":[{"id":35435,"href":"https:\/\/www.hostingseekers.com\/blog\/wp-json\/wp\/v2\/posts\/7449\/revisions\/35435"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.hostingseekers.com\/blog\/wp-json\/wp\/v2\/media\/6612"}],"wp:attachment":[{"href":"https:\/\/www.hostingseekers.com\/blog\/wp-json\/wp\/v2\/media?parent=7449"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.hostingseekers.com\/blog\/wp-json\/wp\/v2\/categories?post=7449"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.hostingseekers.com\/blog\/wp-json\/wp\/v2\/tags?post=7449"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}