Home > Cyber News > 1Password Offers 100 Grand for Anyone Who Hacks Its Vault
CYBER NEWS

1Password Offers 100 Grand for Anyone Who Hacks Its Vault

An offer has been made by the company 1Password to break into its safe vault by guessing the password and discover a text file, containing “bad poetry”.

The very high bounty of the company will attract many white hat hackers to attempt and discover new bugs and hence strengthen the security of 1Password in the even there are such. The company also aims to show that what they provide in their service is safe.

White Hats Expected to Be Drawn by the Offer on BugCrowd

The offer can be located on a the website BugCrowd which works in similarity to Kickstarter, a crowd-sourcing website where bounties for bug discovery are offered, instead.

The company has stated that they are doing this to display that they have invested a great deal of efforts to prove that the service they provide is safe.

The offer with $100 000 bounty is very simple. There is an account on a user profile on 1Password and what attackers must do is break in and retrieve the “bad poetry” file. Since this is a user account, the company will provide a good test for the services of password management they provide online.

The service of the company works very simple. After a registration, the user receives a unique secret key, which they call “Account Key”. This key is different for every account and users must write it down somewhere. Once this key is entered, users will be able to log into their personal account from any device or browser, at their own risk. The privacy element is that if this key is lost, even the company itself won’t be able to recover it for the user.

The second element of 1Password is to create a master password – a second layer of identification, which you can use to log in to your account.

From there, the service, generates a .pdf file with the unique recovery key which is only available for the user to interact with and save. The main interface of the software includes the ability to add an app of the service to your device as well as the feature to create a unique locked “vault” in which password information can be stored:

There have been many bug bounties offered for thousands of dollars, but never one that is publicly announced for such situation for 100 thousand big ones. The company must be really certain in what they are doing and only time will tell whether the bad poetry file will be recovered by bounty hunters or not.

Ventsislav Krastev

Ventsislav is a cybersecurity expert at SensorsTechForum since 2015. He has been researching, covering, helping victims with the latest malware infections plus testing and reviewing software and the newest tech developments. Having graduated Marketing as well, Ventsislav also has passion for learning new shifts and innovations in cybersecurity that become game changers. After studying Value Chain Management, Network Administration and Computer Administration of System Applications, he found his true calling within the cybersecrurity industry and is a strong believer in the education of every user towards online safety and security.

More Posts - Website

Follow Me:
Twitter

Leave a Comment

Your email address will not be published. Required fields are marked *

This website uses cookies to improve user experience. By using our website you consent to all cookies in accordance with our Privacy Policy.
I Agree