Report security vulnerabilities in GitHub services and earn rewards through their official bug bounty program for ethical hackers and researchers.
Earn rewards for reporting GitHub security bugs
GitHub Bug Bounty is a program where you can report security vulnerabilities found in GitHub’s services and receive rewards for your responsible disclosures. If you’re a security researcher or ethical hacker, this is your chance to help improve the safety of millions of developers worldwide while being recognized and rewarded for your efforts.
The site lays out everything you need to know, from eligible targets and rules to submission guidelines and FAQs, so you can get started easily. With substantial rewards for critical findings, it’s designed to encourage collaboration between the GitHub team and the security community. Whether you’re experienced in security or just starting out, you’ll find clear information and a supportive process for contributing to a safer software ecosystem.
Discover websites similar to Bounty.github.com. Section 1 prioritizes sites with matching domain extensions and/or languages. Section 2 offers worldwide alternatives.
Report URI helps you monitor and manage website security by collecting and analyzing reports like Content Security Policy (CSP) and other web security events.
360 Total Security offers free antivirus and cybersecurity tools to protect your PC from malware, ransomware, and online threats. Available for home and business.
Bitdefender offers advanced cybersecurity software to protect your devices and data with threat prevention, detection, and response solutions worldwide.
Learn about Meltdown and Spectre vulnerabilities, their impact on computer security, and access research papers and resources for deeper understanding.
Learn how to use Content Security Policy (CSP) to protect your web applications from vulnerabilities like cross-site scripting with Google’s helpful guide.
Stay updated with the latest Microsoft security news, researcher leaderboards, and resources for reporting vulnerabilities and improving cybersecurity.
SonarQube helps you automatically review code for quality and security issues, offering insights to help developers write clean, secure code faster.
Patchstack helps you secure your WordPress sites by detecting and patching vulnerabilities in plugins and themes, keeping your website safe and protected.
Learn about the Heartbleed Bug, a major security flaw in OpenSSL that exposed encrypted data. Find details, risks, and how to protect your information.
Protect and manage machine identities, secrets, and certificates with CyberArk's security solutions for secure digital operations in your organization.
Test your browser for privacy leaks and security risks with detailed tools that reveal tracking methods, IP leaks, and fingerprinting techniques.
Plugin Planet offers premium WordPress plugins, including advanced firewall tools, to help protect and enhance your WordPress website easily.
Find recommended cryptographic key lengths from top organizations and reports to help you choose secure encryption settings quickly and easily.
Learn how to set up URL filtering on Cisco Email Security Appliances to protect your email gateway and follow best practices for secure email communication.
Learn how to spot scams and protect yourself online with practical tips and guides focused on keeping Brits safe from phone, SMS, email, and web fraud.
PVS-Studio helps you find bugs and security issues in C, C++, C#, and Java code with advanced static analysis tools for multiple platforms.
Check if a website is safe or a scam with ScamAdviser. Get trust scores, fraud alerts, and tips to help you avoid fake or risky online sites.
eScan offers advanced cybersecurity solutions for businesses and enterprises, protecting against malware, ransomware, phishing, and other digital threats.
Kolide helps Okta users ensure only secure devices can access company apps, with device checks, security compliance, and easy fleet visibility.
Emsisoft offers advanced anti-malware and antivirus solutions for businesses, helping you detect, clean, and prevent threats with powerful cloud technology.
GitHub Security Lab helps you discover, understand, and address security threats in open source software through research, tools, and community insights.
Nartac Software offers IIS Crypto, a tool that helps you secure SSL/TLS settings on Windows servers with ease. Simple solutions for server security.
MetaCert helps you spot safe links and trusted websites, protecting your team from phishing, malware, and identity theft in just a minute to set up.
Shield Group Technologies offers digital tools and platforms focused on safety, security, and consumer protection for communities and organizations.
Download free network forensics and security analysis tools to monitor, analyze, and investigate network traffic for IT security and incident response.
Learn why using TLS encryption is essential for secure, private data transfer online and get clear answers about its real-world performance and myths.
Monitor and secure your organization's PKI systems in real time with PKI Spotlight, improving visibility, security, and resilience for your digital assets.
StrangeBee offers advanced security case management tools for incident response teams, helping SOCs and CERTs manage and resolve cyber threats efficiently.
Lockwatch helps you find and recover your lost or stolen Android phone by tracking its location and providing anti-theft features for extra peace of mind.
ESET offers advanced cybersecurity tools for home and business, including antivirus, privacy protection, VPN, and parental controls. Available in Canada.
Check any website’s privacy and data protection measures easily. Webbkoll shows you how sites handle your personal information and online privacy.
See how unique your browser is online and check your digital fingerprint to understand how easily you could be identified on the Internet.
SORBS helps block spam and unwanted email by providing real-time lists of suspicious servers and open relays to improve email security.
Submit your website to the HSTS preload list to ensure browsers always use HTTPS for your domain and boost your site's security and compliance.
Sudo lets system admins safely give select users permission to run specific commands as root, with auditing for security and control on Unix-like systems.
Explore password hashing standards, competition results, and secure algorithms like Argon2. Find resources for strong password protection and security.
This site checks if you're a real person before letting you in, helping keep bots out and protecting the website from unwanted automated traffic.
Snort offers open-source software for detecting and preventing network threats, helping you safeguard your systems on Linux and Windows for free.
Quickly check if your IP is on spam blacklists with this DNSBL lookup tool. Find info on DNS-based block lists and improve your email deliverability.
Analyze and dissect PDF files for hidden threats with free tools for investigating malicious documents and exploring internal PDF structures.