Monday, April 28, 2025
HomeBug BountyEU Starts Bug Bounties for 15 Free and Open Source Software Projects

EU Starts Bug Bounties for 15 Free and Open Source Software Projects

Published on

SIEM as a Service

Follow Us on Google News

Starting from January 2019, European Commission launched bug bounties program for 15 free Open Source softwares, that EU institutions rely on.

The bug bounties on open source softwares are aimed to increase in security of Free and Open Source Software.

Eu said that “We also planned a series of Hackathons that will allow software developers from within the EU institutions, and developers from Free Software projects, to work more closely together and to collaborate directly on their software.”

- Advertisement - Google News

Bug Bounty program employs crowdsource security researchers will diverse skill set covering a wide of vulnerability scenarios and advanced threats. The BugBounty program has proved to more effective than going for traditional penetration services conducted through third-party agencies.

15 Free and Open Source Softwares

Starting form January 2019, researchers can submit bugs on Filezilla, Apache Kafka, Notepad++, PuTTY, VLC Media Player and midPoint through the leading Bug Bounty Platform HackerOne.

15 free Open Source softwares

Other 9 software projects through the Ethical Hacking platform from, the 9 projects include FLUX TL, KeePass, 7-zip, Digital Signature Services (DSS), Drupal, GNU C Library (glibc), PHP Symfony, Apache Tomcat and WSO2.

Related Read Advantages of Bug Bounty Program Over Traditional Penetration Testing

Higest bounty rewards offered to PuTTY (90.000,00 €) followed by Open source CMS Drupal (89.000,00 €).

The issue made lots of people realise how important Free and Open Source Software is for the integrity and reliability of the Internet and other infrastructure, reads the blog post published by European Parliament member.

You can follow us on LinkedinTwitterFacebook for daily Cybersecurity updates also you can take the Best Cybersecurity courses online to keep your self-updated.

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

Critical FastCGI Library Flaw Exposes Embedded Devices to Code Execution

A severe vulnerability (CVE-2025-23016) in the FastCGI library-a core component of lightweight web server...

Viasat Modems Zero-Day Vulnerabilities Let Attackers Execute Remote Code

A severe zero-day vulnerability has been uncovered in multiple Viasat satellite modem models, including...

Obfuscation Techniques: A Key Weapon in the Ongoing War Between Hackers and Defenders

Obfuscation stands as a powerful weapon for attackers seeking to shield their malicious code...

React Router Vulnerabilities Allow Attackers to Spoof Content and Alter Values

The widely used React Router library, a critical navigation tool for React applications, has...

Resilience at Scale

Why Application Security is Non-Negotiable

The resilience of your digital infrastructure directly impacts your ability to scale. And yet, application security remains a critical weak link for most organizations.

Application Security is no longer just a defensive play—it’s the cornerstone of cyber resilience and sustainable growth. In this webinar, Karthik Krishnamoorthy (CTO of Indusface) and Phani Deepak Akella (VP of Marketing – Indusface), will share how AI-powered application security can help organizations build resilience by

Discussion points


Protecting at internet scale using AI and behavioral-based DDoS & bot mitigation.
Autonomously discovering external assets and remediating vulnerabilities within 72 hours, enabling secure, confident scaling.
Ensuring 100% application availability through platforms architected for failure resilience.
Eliminating silos with real-time correlation between attack surface and active threats for rapid, accurate mitigation

More like this

Critical FastCGI Library Flaw Exposes Embedded Devices to Code Execution

A severe vulnerability (CVE-2025-23016) in the FastCGI library-a core component of lightweight web server...

Viasat Modems Zero-Day Vulnerabilities Let Attackers Execute Remote Code

A severe zero-day vulnerability has been uncovered in multiple Viasat satellite modem models, including...

Obfuscation Techniques: A Key Weapon in the Ongoing War Between Hackers and Defenders

Obfuscation stands as a powerful weapon for attackers seeking to shield their malicious code...