Hey,
This is a bit of a spam, but hopefully some of you might find it useful.
I have a friend who's launching 2 online services.
1) HackAServer - as you all know pentesting is done by specialized security companies, and cost a lot of money; the approach with this one is for lower budget (around 1000-5000$ for a pentest); the idea is that you configure a replica of your production server (or web application, or whatever) and that gets put into an arena where hackers/crackers hit it with everything they have; the first one to find a security hole or exploit, gets the bounty after filing a hac