Upwork

  • $120 – $5,000 per vulnerability
  • Up to $10,000 maximum reward
  • Partial safe harbor
  • Managed by Bugcrowd

Beta Functionality added to the Upwork Progrogram

We hope your testing is going well and staying safe. Upwork is happy to share an update that should make things a bit more interesting!

We highly recommend you take a look at this additional attack surface – which hopefully means more vulnerabilities! Here is what’s new: (list all updated scope below):

Name Access Description Change Resources
Direct Contracts BETA https://www.upwork.com/ab/flservices/contracts/ Look for “Direct Contracts” under “My Jobs” Beta Added into Scope https://support.upwork.com/hc/en-us/articles/360025040794-Direct-Contracts-with-Clients

Please note the payment system is managed by a third party. As always, please see the program brief for the full details around testing. If you have any questions, please reach out to support@bugcrowd.com.

Get out there and lay claim to those bugs!