The Ministry of Defence (MINDEF)’s Defence Cyber Chief, Mr David Koh, has announced the MINDEF Bug Bounty Programme during the sidelines of his visit to the Cyber Defence Test and Evaluation Centre (CyTEC) earlier on Tuesday (12 December).

In a first for a Singapore Government agency, selected white hat hackersfrom around the world will test major MINDEF Internet-facing systems for vulnerabilities (or “bugs”) and will receive rewards (or “bounties”) for doing so.

White hat hackers are computer security specialists who break into protected systems and networks to test and assess their security. These hackers use their skills to improve security by exposing vulnerabilities before malicious hackers (known as black hat hackers) can detect and exploit them.

“Cyber is a new battlefront,” he said.

He then stressed that Singapore is constantly exposed to the increasing risk of cyberattacks, and MINDEF is an attractive target for malicious cyber activity.

“As hackers with malicious intent find new methods to breach networks, MINDEF must constantly evolve and improve its defences against cyber threats,” he noted.

Emphasising the importance of strengthening Singapore’s cyber defences amidst this changing landscape, Mr Koh said that the programme, utilising crowdsourcing, is one such innovative and effective way of doing so.

He said, “This is the first time that MINDEF is launching such a bold programme. White hat hackers participating in this programme will be given the mandate to ‘hack’ MINDEF, to find bugs in our major Internet-facing systems. For each valid and unique bug that the hacker finds, he will receive a bounty.”

On the need for such a programme, Mr Koh said that it is not possible to fully secure modern computer software systems, and new vulnerabilities are discovered every day. He added that due to the fast changing cyber landscape, no agency can keep up by itself. Hence, even large companies use this crowdsourcing approach, which is effective and fast.

MINDEF has engaged HackerOne, a reputable international bug bounty company, to run the programme. The programme will be conducted from 15 January to 4 February 2018, involving eight selected Internet-facing systems.

Subscribe
Notify of
0 Comments
Inline Feedbacks
View all comments
You May Also Like

Video inaccurately claims that cancelled Yale-NUS programme was designed to teach students how to protest illegally

Following the cancellation of the Yale-National University of Singapore College of Liberal…

政府需意识年长者科技鸿沟 符策涫:莫忽略提供友善长辈们的服务选择

工人党成员符策涫,在脸书分享日前走访选民时,在小贩中心一名年长者找他帮忙。 “他说他的妻子打不通他的手机号码,不知是不是设定上的问题。我想他只是无意间封锁了妻子的来电,也确实如此。问题很快解决,老人家也放心了。” 为何符策涫提起老人家用手机的问题呢?他有感而发,指出虽然疫情加快了数码时代发展,但每个人的能力有限,所以政府的职责应该不同的人民,提供友善的服务选择。 他形容,对我们来说,一些事务弹指间就能完成,但是对于一些不谙科技的年长者来说就变得压抑。 他也质问,如今政府所推出数码乐龄计划(Seniors Go Digital movement)是否有足够的资源,以协助老人拉近和科技的距离。 近年来,资讯通信媒体发展局将推出数码乐龄计划,帮助银发一族掌握数码技能,利用数码管道与亲朋好友保持联系,也方便关爱乐龄办事处等志愿和护理团体更有效地向有需要人士提供援助。 政府也计划招募1千名数码大使走近全国小贩中心,咖啡店与湿巴刹,向摊贩和年长顾客推广电子付款。 不应只是要老人家“跟上脚步” 他也引述工人党主席林瑞莲在“坚毅向前预算案”(Fortitude…

MND should stop misrepresenting AHPETC’s position

By Carlton Tan Late yesterday, March 14, the Ministry of National Development…

Why is Ho Ching's salary a "state secret"?

Temasek Holdings reported a massive plunge in one-year shareholder returns for the…