>>I am not dissing bug bounties, just noting that on a strictly economic basis, why would I throw a lot of money at 3% of the problem
>Uh ... You don't think that percentage will increase if you offer bounties?
And if it doesn't, well, they don't pay out much. It's not like bug bounties consist of just throwing money at random people and hoping they find vulns; you pay for results. That's sort of the point.
Well, Apple does (for jailbreak exploits).
>I am not dissing bug bounties, just noting that on a strictly economic basis, why would I throw a lot of money at 3% of the problem
Uh ... You don't think that percentage will increase if you offer bounties?