As I've mentioned, we would like to bring the House of Hackers project to the stage where we will be able to fund you. Power to the people! It will be a long process but it could turn very beneficial for all. I would like to pick your brains on ideas how this can be achieved. I just want to let you know that the wheels are spinning already but having some feedback from the community will be greatly appreciated.
Well, the easiest way to get money is get the word out, make some exclusive boards (like be one of the first 500 members or something), and charge a bunch of money for the rest. We could have "jobs"/"requests" and "tools" on the exclusive side, and people can pay money to have access. And you could have real cool titles for people who are good contributors.
I read some place about job posting here, and you guys taking a cut of that. That would be a definite method of building funds for projects. Another that could be effective is a bounty type system. I know they've got an Open Source bounty thing going some place, but it could likely work here, people post ideas for projects that they would like to see, you start a collection for that idea, and the money collected goes towards funding the project.
This would work too. Allow people to offer their own services through the site, anyone can make up a listing of what they can do and an offer for a price range. Throw in a feedback system and you've got a decent marketplace for pen testing/custom software/other such things.
there would also have to be a way
of taking a certain percentage off the persons
profit to go towards future projects within their
groups but this percentage should be shown
to them and they are able to choose how it
is spent.
this should also be an opt-in service.
Thats actually a great idea. Have a project section and a marketplace, and a certain percentage of sales in the marketplace are put in a discretionary fund controlled by the sellers. They'd get some kind of a requirement on how long they can keep it, for instance, they may have to put 10% towards a project, and they've got 2 months from the point of sale to put the funds towards a project of their choice.
See: rentacoder.com, except this would be more like, rentapwnstar.com :P
PS,
Dear Admin Clause,
Please bring me a signature so users can have more of a personality, and kinda lighten up the site a bit, eh? Or are we going for a hardcore security/business type of site?
I agree with scorcher.
You would how ever need to
set some system in place that would be
able to verify the legitimacy of the person
applying for a pen-test.
That'd be between the pen tester and the client, we just hook em up and take a cut. A feed back system would be a good idea. And possibly a recommendation system too, reinforces the feedback system. (reccomendation can be done by anyone, including client; feedback can only take place after transaction)
Good, good, good. Excellent idea! User ratings within the feedback system would make the legitimacy of the pen tester available to the clients. It would also give the pen tester a chance to reveal him/herself within the industry. I know so many 'undercover' experts that don't care for a voice in the industry because of all the gray line areas.