With Windows 10 recently unveiled, Microsoft says it’s boosting the amount of money it gives to bug hunters.
Those that can prove the ability to bolster the tech giant’s defenses as part of a “Bounty for Defense” initiative will receive $100,000, up from $50,000 previously, according to ZDNet.
“Learning about new exploitation techniques earlier helps Microsoft improve security by leaps, instead of capturing one vulnerability at a time as a traditional bug bounty alone would,” the company said.
There appears to be more money to be had for other security achievements for bug hunters, too. Those who tackle authentication security issues will receive doubled rewards from Aug. 5 to Oct. 5, a bonus period, according to ZDNet.
Here’s the full list of ongoing bug-hunting programs, and the amount fixes pay, taken from a Microsoft blog post:
1. Online Services Bug Bounty
Start Date: 23 September 2014
Microsoft Azure services additions: 22 April 2015
Microsoft Account services additions: 5 August 2015
The Online Services Bug Bounty program gives individuals across the globe the opportunity to submit vulnerability reports on eligible Online Services (O365 and Microsoft Azure) provided by Microsoft. Being ahead of the game by identifying the exploit techniques in our widely used services helps make our customer’s environment more secure. Qualified submissions are eligible for payment from a minimum of $500 USD up to $15,000 USD.
Start Date: 26 June 2013
Microsoft will pay up to $100,000 USD for truly novel exploitation techniques against protections built into the latest version of our operating system. Learning about new exploitation techniques earlier helps Microsoft improve security by leaps, instead of capturing one vulnerability at a time as a traditional bug bounty alone would.
Start Date: 26 June 2013
Additionally, Microsoft will pay up to $100,000 USD for defensive ideas that accompany a qualifying Mitigation Bypass submission. Doing so highlights our continued support of defensive technologies and provides a way for the research community to help protect more than a billion computer systems worldwide (in conjunction with the Mitigation Bypass Bounty).
- These Charts Show COVID-19 Is Still the Pandemic of the Unvaccinated
- Reddit Allows Hate Speech to Flourish in Its Global Forums, Moderators Say
- What It Takes to Get Support for a Black Boy With Special Needs
- Shonda Rhimes Already Knows What You're Going to Watch Next
- How Harry Reid Paved the Way for Democrats to Kill the Filibuster
- President Biden's Speech in Atlanta Was Designed to Appeal to Black Voters—But Not Everything About It Succeeded
- China Is Finding Fewer Reliable Sources of Coal. That Could Be Bad News for the Climate