Fun

YesWeHack Won the European Commission’s Latest Bug Bounty Tender

2025-10-05 10:05 AM

(K-daily 뉴스)

YesWeHack, the crowdsourced security testing and vulnerability management platform, is the European Commission’s new preferred provider of bug bounty services under a cascade model.

The European Union’s main executive branch has run bug bounty programs to harden open source assets used across EU servers and systems since 2019. A new tender was launched this year to relaunch an expanded initiative. Having outscored rival platforms, YesWeHack has signed a four-year framework contract potentially worth up to €7,679,875 as the most-favoured provider of bug bounty services.

YesWeHack will support the Commission’s Directorate-General for Digital Services (DIGIT) in organising a series of bug bounty programs as well as vulnerability disclosure policies (VDPs). A roster of handpicked security researchers will test digital assets used by EU entities, including popular open-source technologies.

The Commission has long promoted the adoption and development of community-built software within EU institutions, making the security of open source a strategic priority. Amid rising cyberthreats, the latest phase of the Commission’s bug bounty strategy expands the scope to a wider range of open source projects, as well as any EU institutions wishing to leverage crowdsourced security testing to harden their own applications.

Miguel Diez Blanco, Team Lead for Interoperability Enablers and Open Source at DIGIT, commented: “We have high expectations for this new framework contract, and we are confident that YesWeHack, as the first awarded company, will play an important role in achieving our objectives to secure the software we produce, as well as in supporting our ongoing initiatives to better protect open-source projects.”

Public-sector pedigree

The Commission joins government bodies in France, Singapore, Germany, Catalonia, Finland and Quebec on YesWeHack’s diverse client roster.

YesWeHack also has strong credentials in the open-source domain. For instance, the German government’s Sovereign Tech Agency runs various programs for popular open source projects on the platform - including for Log4j, the source of one of the most damaging vulnerabilities of all time, ‘Log4Shell’.

Guillaume Vassault-Houlière, CEO and co-founder of YesWeHack, states: “We’re honoured that the European Commission has entrusted us with securing assets of such critical importance -not only to EU institutions but also to millions of citizens. This decision cements our position globally as the leading alternative to US vendors. However, the real hard work starts now.”

View source version on businesswire.com: https://www.businesswire.com/news/home/20251001342504/en/

Website: https://www.yeswehack.com/

IT 주요뉴스

무협 오픈 월드 액션 어드벤처 RPG ‘연운’ 기자간담회 진행
글로벌 게임 개발사 및 퍼블리셔 넷이즈게임즈(neteasegames)와 산하 에버스톤 스튜디오(Everstone Studio)의 무협 오픈 ...
오픈월드 무협 MMORPG ‘역수한’ 글로벌 동시 정식 출시
글로벌 게임 개발사 및 퍼블리셔 넷이즈게임즈(neteasegames)와 주롱 스튜디오(Zhurong Studio)의 오픈월드 MMORPG ‘역수...
BST Global Launches 2026 AI + Data Impact Survey for the AEC Industry
BST Global, the leading provider of AI-powered project intelligence™ solutions for the AEC industry, has launched its second annual global AI + Data...
과학 주요뉴스

이공계 석사과정 월 80만원·박사과정 110만원…”예타면제 확정”
연구 개발. 경기 성남시의 제약 벤처기업에서 연구원이 제품 개발과 관련된 작업을 하고 있다. ⓒ촬영 이세원 정...
국민이 꼽은 국가난제는 ‘인구구조·온라인 피싱·생계안정’
국민 선정 10대 국가난제 ⓒSTEPI 제공 국민들은 인구구조 변화 대응, 온라인 피싱 등 신종범죄, 주거와 물가 등 국...
AI 학습에 쓰이는 ‘공개 데이터’ 처리방안은…정부 기준 나왔다
오픈 인공지능(AI) ⓒ연합뉴스 자료사진 기업들이 챗GPT 등 생성형 인공지능(AI) 모델을 개발하는 과정에서 ‘공...