Uber’s security programme, which is the Bug Bounty Program, invites people to identify any vulnerability in their security systems.
A product security engineer Anand Prakash, discovered a security bug in popular cab-hailing service, which allowed him to take free Uber rides, tested in the U.S. as well as India.
Uber’s Chief Security Officer, Joe Sullivan said last year in a statement:
“Even with a team of highly-qualified and well trained security experts, you need to be constantly on the look-out for ways to improve. This bug bounty programme will help ensure that our code is as secure as possible. And our unique loyalty scheme will encourage the security community to become experts when it comes to Uber.”
The computer programmer, who runs a blog on web application security, explained it was “easy” to exploit the security loophole.