Hackers look for gaps in the information security of Suomi.fi services – cooperation enables more secure digital services The Digital and Population
Data Services Agency is starting a new cooperative program with white hat hackers. The aim of the bug bounty program, which starts today on 16 October 2023, is to discover information security vulnerabilities in services such as Suomi.fi.
Pekka Ristimäki, Head of Information Security at the Digital and Population Data Services Agency, points out that cybercrime is growing constantly, with criminal attacks targeting various digital services more and more often.
- Digital services play an important role in all of our lives, as they allow us to use everyday services easily whenever and wherever. Testing systems in cooperation with white hat hackers is an excellent way to develop digital services and test their security, says Ristimäki.
Hacker cooperation complements normal application testing
A white hat hacker is a person who has permission to look for vulnerabilities in an information system. Bug bounty programs promote ethical and lawful conduct among people interested in hacking.
Hackers invited to participate in bug bounty programs can be either professionals or hobbyists. They test the information security of the services included in the bug bounty program. In a bug bounty program, external testers, i.e. hackers, are given the opportunity to test organisations’ digital services within the agreed principles and limitations.
– With societal functions becoming increasingly digitalised at a fast pace, the reliability of information systems is more important than ever. This is now the third time we are cooperating with white hat hackers. We’ve had very good experiences with previous cooperation. The cooperation nicely complements our normal application testing and enables more efficient testing of digital services and the development of their security. At the same time, the bug bounty program gives talented hackers the opportunity to test their skills with permission and make some money on the side, says Pekka Ristimäki.
Hackers register for testing and commit to following the established rules. If vulnerabilities are found, the person who finds them will be paid a fee in proportion to the significance of the finding. The fees range between €100 and € 30,000.
The bug bounty program is produced by Hackrfi Oy, a company specialising in the management of communal vulnerability coordination and information security testing. The Digital and Population Data Services Agency’s bug bounty program will continue for a year, starting on 16 October 2023. People are invited to participate based on applications.
Read more about the Digital and Population Data Services Agency’s bug bounty program and apply to it on the Hackrfi Oy website: https://www.hackr.fi/ohjelmat/DVV-BB.html
Additional information
Digital and Population Data Services Agency, Head of Information Security Pekka Ristimäki,
tel. +358 295 535 048, firstname.lastname[at]dvv.fi
What is white hat hacking?
- A white hat hacker is a person who gets permission to test for vulnerabilities in information systems.
- White hat hackers are used in information security testing through various bug bounty programs.
- A white hat hacker tests information systems ethically and lawfully.
- Hackers register for testing and commit to following the established rules.
- If vulnerabilities are found, the person who finds them will be paid a fee in proportion to the significance of the finding.
- Individuals
- Processing times
- Marriage
- Having or adopting a child
- Names
- Moving
- Guardianship
- Life changes while living abroad
- Moving while living abroad
- Registration of a child born abroad
- Marriage concluded abroad
- Partnership registered abroad
- Divorce granted abroad
- Registration of a name change performed abroad
- Gender recognised abroad
- Death abroad
- Registration of citizenship
- Notification of retaining Finnish citizenship
- Legalisation of foreign documents
- Submitting foreign documents
- As a foreigner in Finland
- Registration of a foreigner
- Guide for students
- Municipality of residence
- Family relationships and Marital Status
- Instructions on arriving in Finland from Ukraine
- Guide for employed persons
- Fast track service for specialists and growth entrepreneurs
- Instructions for legalisation
- Submitting foreign documents
- Foreigner’s move to Finland, in Finland and out of Finland
- Check your own personal details
- Elections and Right to vote
- Suomi.fi Web Service
- Citizen Certificate and electronic identity
- Certificates from the Population Information System
- Population information in the Population Information System
- Registration of a gift notification
- Services of notary public
- Certification of purchase
- Citizens’ initiative
- Death and estate inventory
- Public Service Info
- Address service
- Forms
- Digital support for citizens
- Organisations
- Certificates
- For social welfare and healthcare service providers
- For organisations
- Electronic sealing service
- Timestamping Service
- Electronic signature
- Service certificates
- Advisory service, support and revocation service
- Certificate Directory
- Test the use of a certificate
- Card Reader Software
- Information about certificates
- Population information services for organisations
- Public administration sampling and updating service
- Private sector information services
- PIS modified data interface
- Modified data update service
- Population Information System query interface
- Browser-based Population Information System query
- Resident sampling services for property management offices and maintenance companies
- Data extraction for municipalities
- Reform of personal identity code
- Conditions for using population information
- Maintaining the Population Information System
- Extracts from registers
- Suomi.fi services
- Services to promote digitalisation
- Digital support
- Digital security services
- Services of notary public
- Certification of purchase
- Right to officiate weddings
- E-services
- Finnish Authenticator identification service
- Certificates
- About the agency
- Digital and Population Data Services Agency
- Digital and Population Data Services Agency as an Employer
- Use our services electronically
- Contact
- Customer service for private customers
- Customer service for organisations
- Service locations
- Digital and Population Data Services Agency address, switchboard e-billing details
- Digital and Population Data Services Agency Management
- Marriage ceremony premises information
- Contact details for media
- International Affairs
- Invoicing
- Quality policy
- Equality plan for customers
- Data protection
- News
- Population Information System
- For media
- Brochures and publications
- Projects
- Foresight and research cooperation