Want to make a stack of cash? All you have to do is come up with a "truly novel exploitation technique" for the upcoming Windows 8.1 Preview. Microsoft has launched a security bounty program that will reward hackers with up to $100,000 for finding security-related flaws in its next operating system. Qualifying submissions with accompanying "defensive ideas" will also be eligible for a BlueHat Bonus worth up to $50,000.
Those bounties will be ongoing, and they're scheduled to launch on June 26 along with the Windows 8.1 beta. There will be a separate bounty for critical vulnerabilities found in Internet Explorer 11, as well. That one is limited to the preview OS, and it's worth up to $11,000. Also, it expires July 26. Interested parties should check this post on the TechNet Security Research & Defense blog for more details on the program.
According to the official BlueHat Blog, Microsoft expects its bugs-for-bucks approach to evolve moving forward. This isn't just a one-off thing for Windows 8.1.
With deep pockets, Microsoft can certainly afford to sustain a generous bounty program. It's not the only big name willing to pay for exploits, either. Google, Mozilla, and Facebook all have bounty programs of their own. Heck, even the craft nerds over at Etsy will shell out $500 or more for legit vulnerabilities.
|Here's the not-so-live video version of The TR Podcast 164||13|
|Here's what's cooking in Damage Labs||19|
|Deal of the week: An IPS ultra-wide for $420, plus cheap SSDs and more||22|
|Microsoft's quarterly revenue up 25% on strong Surface, Xbox sales||23|
|Assassin's Creed Unity PC requires 6GB of RAM, GTX 680||216|
|Join us as we attempt to live stream The TR Podcast tonight||13|
|Civ: Beyond Earth with Mantle aims to end multi-GPU microstuttering||69|
|CPU startup claims to achieve 3x IPC gains with VISC architecture||59|
|I just found this AMAZING trick! Call of Duty takes up 0GB if you just don't buy it!||+119|