Bugcrowd Blog

Jennifer Helsby, SecureDrop

SecureDrop Lead Developer

Recent Posts

Ethical Security Research on SecureDrop

Posted by Jennifer Helsby, SecureDrop on Sep 19, 2017 11:05:00 AM

The SecureDrop engineering team welcomes the contributions of security researchers. SecureDrop is relied on by sources to talk with journalists at dozens of news organizations, many of whom are taking significant risks to bring information to the public eye. We want to do everything we can to make the whistleblowing process as safe for them as possible. Testing by external security researchers is an important part of that process. In order to minimize risk to SecureDrop users throughout the security research process, in this post we will describe how to ethically perform security research on SecureDrop and what constitutes acceptable and unacceptable behavior.

Read More
Guest Blog, Program Launches