April 8, 2010
The Signinghub API helps accomplish something that looks simple (see image below) but is tricky to do securely: digitally sign a document. The API, using REST-based web services with XML responses, makes its possible to incorporate digital signing into your application that is based on the Public Key Infrastructure.
Facebook has rewarded a 10 year-old boy from Finland with a $10,000 bounty for discovering an authentication-related vulnerability in the Instagram API that could have enabled a hacker to delete comments of any user on the popular social photo sharing service even without an Instagram account.
A Russian security researcher collected a $5,000 reward for detecting and reporting a major YouTube security flaw that allowed him to erase videos posted by any other user.