Teen Hacks Pentagon Websites, Gets Thanked for Finding 'Bugs'

Advertisement
By Reuters | Updated: 18 June 2016 10:35 IST
Highlights
  • More than 1,400 participants took part in Hack the Pentagon project.
  • The participants found 1,189 vulnerabilities.
  • David Dworken reported six vulnerabilities.
High school student David Dworken spent 10 to 15 hours between classes on his laptop, hacking US Defense Department websites.

Instead of getting into trouble, the 18-year-old who graduated this week was one of two people praised by Secretary of Defense Ash Carter at the Pentagon on Friday for finding vulnerabilities before US adversaries did.

"We know that state-sponsored actors and black-hat hackers want to challenge and exploit our networks ... what we didn't fully appreciate before this pilot was how many white hat hackers there are who want to make a difference," Carter said at a ceremony where he also thanked Craig Arendt, a security consultant at Stratum Security.

Advertisement

More than 1,400 participants took part in a pilot project launched this year, and found 138 valid reports of vulnerabilities, the Pentagon said. The project invited hackers to test the cyber-security of some public Defense Department websites.

The pilot project was limited to public websites and the hackers did not have access to highly sensitive areas.

Advertisement

The US government has pointed the finger at China and Russia, saying they have tried to access government systems in the past.

The Pentagon said it paid a total of about $75,000 to the successful hackers, in amounts ranging from $100 to $15,000.

Advertisement

Dworken, who graduated on Monday from Maret high school in Washington, D.C., said he reported six vulnerabilities, but received no reward because they had already been reported.

However, Dworken said he had already been approached by recruiters about potential internships.

Advertisement

He said some of the bugs he found would have allowed others to display whatever they wanted on the websites and steal account information.

Dworken, who will study computer science at Northeastern University, said his first experience with finding vulnerabilities was in 10th grade when he found bugs on his school website.

"Hack the Pentagon" is modelled after similar competitions known as "bug bounties" conducted by US companies to discover network security gaps.

The Pentagon said the pilot project cost $150,000, including the reward money, and several follow up initiatives were planned. This included creating a process so others could report vulnerabilities without fear of prosecution.

"It's not a small sum, but if we had gone through the normal process of hiring an outside firm to do a security audit and vulnerability assessment, which is what we usually do, it would have cost us more than $1 million," Carter said.

© Thomson Reuters 2016

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Hack the Pentagon, Internet, Pentagon
Advertisement
Popular Mobile Brands
  1. Brown Season 1 Out on OTT: Where to Watch Karisma Kapoor Starrer Online?
  2. Sukhamano Sukhamann OTT Release: Where to Watch it Online?
  1. James Webb Space Telescope Detects Most Distant Dormant Black Hole Ever Found
  2. Sukhamano Sukhamann OTT Release: Where to Watch it Online?
  3. Thadai Athai Udai Now Available for Rent on Amazon Prime Video
  4. Brown Season 1 Out on OTT: Where to Watch Karisma Kapoor Starrer Online?
  5. Ugly Story Now Streaming Online: Everything You Need to Know About its Cast, Plot, and More
  6. Sahara Meteorite May Be Fragment of a Lost Moon-Sized World, Study Suggests
  7. OpenAI Introduces Smarter ChatGPT Memory, Adds Dreaming Architecture
  8. Tecno Pova 8 India Launch Date Announced; Battery Size, Design, Colour Options Teased
  9. Samsung Reportedly Starts Internal Testing of Android 17-Based One UI 9 for Galaxy S25 Series
  10. Bybit Lists Western Union’s USDPT Stablecoin for Trading and Transfers
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.