杏吧传媒

Search
searchclose icon

杏吧传媒 Donates $100,000 to DIVD Bug Bounty Program to Elevate SMB Cybersecurity, Calls on MSP Vendors to Follow Suit

Glitch effectGlitch effectGlitch effect
Glitch banner

Real talk: the MSP vendor community needs to get its shit together.

Small and midsize businesses鈥攚hich represent more than 99% of the organizations in the US and are the cornerstone of our economy鈥攁re depending on us to protect them from today鈥檚 determined cybercriminals and nation-state actors. But we鈥檙e not doing enough to help them.听

2021 was a year filled with high-profile attacks and vulnerability disclosures within the SMB and MSP communities. That鈥檚 because attackers know most small businesses struggle to defend themselves and that to dozens if not hundreds of SMBs.听

At 杏吧传媒, we spend a lot of time tracking, analyzing and trying to help the community navigate through these incidents鈥攕ome examples are below:

As we head into 2022 and look toward the future, we鈥檙e putting our money where our mouth is to try and accomplish a few things:

  • Destigmatize and celebrate vendors who are transparent about security incidents and blindspots and who share the work they鈥檙e doing behind the scenes to strengthen their platforms
  • Enable IT professionals to increase their cyber knowledge and chops鈥攂y hosting our own training events, covering attendee costs for and more
  • Establish incentives for members of the MSP and SMB communities to spend more time testing, breaking, and pwning the tools they use so vendors can find and fix issues faster and improve code quality

To be clear: we鈥檙e not here to shame anybody. We鈥檙e here to acknowledge that unless we come together and hold ourselves to a higher standard, this problem is going to get worse before it gets better. And we鈥檙e holding ourselves to that higher standard too.

We were super fortunate to raise a $40M Series B last year鈥攁nd we鈥檙e excited to begin investing that money in ways that鈥檒l enable different types of organizations to better secure and support the 99%.听

To start, we鈥檙e making a $100,000 contribution to the (DIVD). DIVD is a volunteer-led organization with a team of highly skilled security researchers who analyze threats and report vulnerabilities globally; they played an important role in a number of high-profile incidents over the last year. To proceed in an ethically and legally just way, DIVD has developed this .听

That $100,000 is being used in two ways:

  • $50,000 will support DIVD鈥檚 continued growth, enabling the group to hire its first full-time staff and do more of the awesome work they鈥檙e already doing
  • $50,000 will be used to start a to create a financial incentive for individuals to effectively disclose vulnerabilities and discoveries specific to MSP and SMB IT tools

We鈥檙e excited about these opportunities and look forward to continuing to invest in programs that help elevate SMBs above the cybersecurity poverty line.听

But here鈥檚 the kicker: we need others to join in, too. Working together as vendors and community members will allow us to make a much bigger impact than if we stay in silos or get stretched too thin across just a few key initiatives. So, we鈥檙e putting an open call out for anyone interested in joining us to please reach out and get in touch:

  • You can reach 杏吧传媒 here
  • You can learn more about the bug bounty program
  • You can contact DIVD directly about the bounty program at bugbounty@divd.fund

As long as hackers keep hacking, we鈥檒l keep hunting鈥攁nd we hope you鈥檒l join us as we work to deliver greater security to the 99% of businesses that need it most.听

鈥⑩赌⑩赌

Update (2/3/22): We're pleased to note that since this blog was published, other MSP vendors have teamed up with us, pledging to donate a combined $75,000 to DIVD! Learn more here.

Share

Sign Up for 杏吧传媒 Updates

Get insider access to 杏吧传媒 tradecraft, killer events, and the freshest blog updates.

By submitting this form, you accept our Terms of Service & Privacy Policy
Oops! Something went wrong while submitting the form.
杏吧传媒 at work