Tag Archive for: 200000

Be A Bug Bounty Hunter: Google Is Offering Up To $200000 For Android Exploits – Tech Times


Tech Times

Be A Bug Bounty Hunter: Google Is Offering Up To $ 200000 For Android Exploits
Tech Times
The Android Security Rewards program is similar to other programs of its kind in the tech industry. If a security firm, or individual, discovers an exploit within Android OS and reports it to Google then they'll receive a cash reward. From there

android security – read more

Google to pay upto $2,00000 for finding bug in Android – Odisha Sun Times

Google to pay upto $ 2,00000 for finding bug in Android
Odisha Sun Times
Google started the bug bounty programme for Android about two years ago in which the security researchers, who demonstrate an exploit, get a cash prize — the amount of which varies based on the severity of the hack. Then, Google gets to fix the bug

and more »

android security – read more

Earn up to $200,000 as Apple *finally* launches a bug bounty

The Verge writes:

Apple is planning a new bug bounty program that will offer cash in exchange for undiscovered vulnerabilities in its products, the company announced onstage at the Black Hat conference today. Launching in September, the program will offer cash rewards for working exploits that target the latest version of iOS or the most recent generation of hardware. It’s the first time Apple has explicitly offered cash in exchange for those vulnerabilities, although the company has long maintained a tip line for disclosing security issues.

Ivan Krstic, Apple’s head of security engineering and architecture, made the announcement during a presentation at Black Hat on Thursday.

The top reward comes for finding flaws in vulnerabilities in Apple’s “secure boot” process, which if broken could seriously compromise security.

As Hacker News reports, for now Apple’s bug bounty program is invite-only – meaning that the only people likely to be ushered in are those who have a track record in finding exploitable flaws in the company’s code. Hopefully things will loosen up over time, and from the sound of things they are open to adding others who come forward after finding critical vulnerabilities in key areas.

Frankly, an Apple bug bounty is long overdue.

Apple was looking incongruous in not offering a reward for security researchers who uncovered critical vulnerabilities in its products. After all, if you were a vendor you would rather have those who find security vulnerabilities in your products work with you rather than selling off their exploits to a third-party, wouldn’t you?

With a bug bounty in place, serious exploitable vulnerabilities are more likely to be responsibly disclosed to Apple, and users are more likely to be protected in a timely fashion.

Good.

Graham Cluley

Android Security Researchers Were Paid $200000 Last Year – Android Headlines – Android News


ZDNet

Android Security Researchers Were Paid $ 200000 Last Year
Android Headlines – Android News
Back in 2010, Google started up their Vulnerability Rewards Program. This program provided rewards for researchers who happened to find any vulnerabilities in Google's apps and services. In 2015, Google added Android itself to the equation, as well as …
Android bugs made up 10 percent of Google's $ 2m bounty payouts – in just five monthsZDNet

all 6 news articles »

“android security” – read more