Apple Security Bounty
developer.apple.com
Apple Security Bounty
1–10 of 19 posts
Re: Apple Security Bounty
#2Amazon: https://aws.amazon.com/security/vulnerability-reporting/
Netflix: https://help.netflix.com/en/node/6657
Google: https://www.google.com/about/appsecurity/programs-home/
Microsoft: https://www.microsoft.com/en-us/msrc/bounty
More: https://www.ubuntupit.com/best-bug-bounty-programs-on-intern...
Re: Apple Security Bounty
#3Re: Apple Security Bounty
#4Is this new? Is that why it's being posted?
Re: Apple Security Bounty
#5Facebook: https://www.facebook.com/whitehat Amazon: https://aws.amazon.com/security/vulnerability-reporting/ Netflix: https://help.netflix.com/en/node/6657 Google: https://www.google.com/about/appsecurity/programs-home/ Microsoft: https://www.microsoft.com/en-us/msrc/bounty More: https://www.ubuntupit.com/best-bug-bounty-programs-on-intern...
Amazon and Netflix, no dollar amounts listed
Microsoft offers up to $250k for "Critical remote code execution, information disclosure and denial of services vulnerabilities in Hyper-V"
Ironically that google page dumped a bunch of html into my browser, including a "script nonce" and a function definition:
(function(H){H.className=H.className.replace(/\bgoogle\b/,'google-js')})(document.documentElement)
I'll be waiting for a cheque from them, I suppose.Re: Apple Security Bounty
#6Is this new? Is that why it's being posted?
https://apple.news/A4h_BM9HqTjSpsWKsrVPGBw
Also, max payout has been bumped to $1.5m which is a pretty big change. Most of this was announced a few months ago, they are just making good on a previous announcement at this point.
Re: Apple Security Bounty
#7Re: Apple Security Bounty
#8Re: Apple Security Bounty
#9Is this new? Is that why it's being posted?
Prior to now this program was invite only. They are blowing it open to all security researchers as of today. https://apple.news/A4h_BM9HqTjSpsWKsrVPGBw Also, max payout has been bumped to $1.5m which is a pretty big change. Most of this was announced a few months ago, they are just making good on a previous announcement at this point.