10/28/2024 | Press release | Archived content
Here at TikTok, we are committed to protecting the security of our global community and upholding the highest standards of security and data protection.
In October, we are thrilled to celebrate Cybersecurity Awareness Month and encourage our community over one billion strong to #BeCyberSmart. We're also marking four years of TikTok's global bug bounty program with HackerOne!
Below we're highlighting two important groups who contribute to our culture of online security, the researchers who power our HackerOne bug bounty program, as well as creators spreading cybersecurity knowledge on the platform.
Four Years with HackerOne
Since program inception in 2020, TikTok's partnership with HackerOne for our Global Bug Bounty program has seen tremendous growth and impact. Year after year, our work with HackerOne underscores the importance of open collaboration in the security space and allows us to share knowledge and work together to proactively protect our global TikTok community.
Since founding the program, TikTok has worked with over 450 security researchers who have proactively identified and disclosed over 1,000 security vulnerabilities so that our security teams could quickly resolve them. We are proud to announce that we have also reached (and surpassed) an important milestone, awarding over $1.6M in bounties in addition to what has been awarded during Live Hacking Events.
In August, TikTok participated in one of these Live Hacking Events, which invited top hackers from around the world to join a fun, fast-paced occasion that culminated the same week of the DEF CON conference in Las Vegas. This event resulted in TikTok awarding over $720,000 in bounties to 50 researchers from over 29 different counties in just 20 days. Involvement in this Live Hacking Event, following up on our participation in the finale of HackerOne's Ambassador World Cup in late 2023, has provided TikTok an opportunity to deepen our commitment to HackerOne, the community of security researchers, and the broader bug bounty space.
"TikTok is one of the world's most popular apps, and the stakes are high for a security team protecting over one billion users. As a global organization, TikTok's bug bounty program contributes to its sophisticated security posture as an invaluable last line of defense. Over the last four years, TikTok's dedication to building engagement on their program has continued to produce powerful results." - Marten Mickos, HackerOne CEO
In addition to diving deeper into our program history here, we would like to highlight some of our top security researchers in our bug bounty program as of October 1, 2024:
2024 Cybersecurity Creator Spotlight
TikTok is a place where anyone and everyone can have fun, find their community, and be discovered. This month, we're highlighting three creators, @adjacentnode, @itsmarcushutchins, and @lolalovestech who educate our community on cybersecurity topics. Teaching everything from network engineering to day in the life vlogs of a cybersecurity professional, these creators empower our community to #LearnOnTikTok and dive deeper into cybersecurity topics.
Top Tips to #BeCyberSmart
All year long, we like to empower our global community to #BeCyberSmart wherever they show up online. Check out some of our top tips below!