Ministry of Defence
Ethical hackers collaborate with Defence to strengthen cyber security
In a first for the Ministry of Defence, 26 ethical hackers have taken part in a Bug Bounty programme in collaboration with US based organisation HackerOne. The 30-day challenge aimed to identify and fix vulnerabilities in cyber systems to strengthen Defence’s security and to ensure better resilience.
Bug Bounty programmes provide safe environments for experts to identify areas where security can be improved. The identification of real vulnerabilities by ethical hackers is rewarded and Defence cyber teams are working with the ethical hacking community whose expertise has been extremely valuable in finding and remediating vulnerabilities - ensuring better security across Defence’s networks and 750,000 devices.
In the Integrated Review published earlier this year, the government committed to a more robust position on security and resilience, ensuring that lives and livelihoods are protected from those who may wish to do us harm. This challenge is part of wider plans to ensure transparency and collaborate with partners to improve national security.
MOD will continue to make use of the Bug Bounty expertise, in addition to other capabilities available to ensure cyber security and resilience. MOD cyber security efforts reinforce the UK Government strategy for cross-department resilience and security, lessons learned by Defence are shared with partners.
Minister for the Armed Forces James Heappey said:
Bug bounty is an exciting new capability for the Ministry of Defence. Our cyber teams are collaborating with the ethical hacking community to identify and fix vulnerabilities in our systems, ensuring we’re more resilient and better protected
This work will contribute to better cyber and information security for the UK.
Participants praised Defence for its openness and willingness to embrace new tools and capabilities to secure cyber systems. Programmes like this are industry best practice and used by governments and organisations across the world to defend against possible cyber-attacks.
Christine Maxwell, Ministry of Defence Chief Information Security Officer said:
The Ministry of Defence has embraced a strategy of securing by design, with transparency being integral for identifying areas for improvement in the development process.
It is important for us to continue to push the boundaries with our digital and cyber development to attract personnel with skills, energy and commitment. Working with the ethical hacking community allows us to build out our bench of tech talent and bring more diverse perspectives to protect and defend our assets. Understanding where our vulnerabilities are and working with the wider ethical hacking community to identify and fix them is an essential step in reducing cyber risk and improving resilience.
CEO of HackerOne, Marten Mickos said:
Governments worldwide are waking up to the fact that they can’t secure their immense digital environments with traditional security tools anymore.
Having a formalised process to accept vulnerabilities from third parties is widely considered best practice globally, with the U.S government making it mandatory for their federal civilian agencies this year. The U.K MoD is leading the way in the U.K government with forward-thinking and collaborative solutions to securing its digital assets and I predict we will see more government agencies follow its example.
Latest News from
Ministry of Defence
Consultations launched on proposed acquisition of Meggitt plc by Parker-Hannifin29/06/2022 09:24:00
Consultations on the proposed acquisition of Meggitt plc, a UK aerospace company, by Parker-Hannifin was launched yesterday.
Royal Air Force Rapid Capabilities Office announce review of Project Mosquito27/06/2022 15:15:15
Project Mosquito, the future uncrewed Combat Aircraft Technology Demonstration being explored by the Royal Air Force Rapid Capabilities Office (RCO), will not proceed beyond the design phase.
Rededication services held for two casualties of the Somme27/06/2022 10:15:00
The graves of two soldiers killed on the Somme have been identified and rededicated in northern France.
Defence Secretary presents Operation PITTING medals to personnel24/06/2022 11:15:00
Defence Secretary Ben Wallace has presented medals to Armed Forces personnel who served on Operation PITTING to mark Armed Forces Week.
Graves of two Great War casualties finally rededicated23/06/2022 10:10:00
The graves of Capt Clay and Sjt Morton identified and rededicated more than a century after their deaths
Aircraft carriers to be supported by new logistics facility21/06/2022 14:20:00
A new Royal Navy logistics centre in Portsmouth - dedicated to crucial maintenance for the QEC aircraft carriers – has been officially opened today.
Final barriers removed for Armed Forces personnel with HIV21/06/2022 12:05:00
People with HIV, but no detectable virus, are now able to join the military and fully deploy on operations
Praise for Ukraine support as Defence industry offers more help21/06/2022 10:25:00
Industry leaders are praised by the Defence Secretary for their vital role in helping provide weapons, ammunition and logistical support to Ukraine