Coordinated disclosure of ICT vulnerabilities

Yes We Hack

To further strengthen the security of Ghent University web applications, ICT has been using the bug bounty platform Yes We Hack since October 2025. This platform invites a limited, carefully selected group of ethical hackers to detect and report vulnerabilities. These ethical hackers can be rewarded for this via a so-called "bug bounty".


Vulnerability Disclosure Program

UGent employees, UGent students and third parties are also permitted to actively detect vulnerabilities in the security of UGent's ICT infrastructure, provided that this is done in accordance with the Ghent University coordinated IT vulnerability disclosure policy (as approved by the Executive Council on 8 July 2022). They can report any vulnerabilities they find via the Vulnerability Disclosure Program webpage. Currently, however, there are no rewards or bug bounties for reports made by volunteers outside of Yes We Hack.