Want to make a stack of cash? All you have to do is come up with a "truly novel exploitation technique" for the upcoming Windows 8.1 Preview. Microsoft has launched a security bounty program that will reward hackers with up to $100,000 for finding security-related flaws in its next operating system. Qualifying submissions with accompanying "defensive ideas" will also be eligible for a BlueHat Bonus worth up to $50,000.
Those bounties will be ongoing, and they're scheduled to launch on June 26 along with the Windows 8.1 beta. There will be a separate bounty for critical vulnerabilities found in Internet Explorer 11, as well. That one is limited to the preview OS, and it's worth up to $11,000. Also, it expires July 26. Interested parties should check this post on the TechNet Security Research & Defense blog for more details on the program.
According to the official BlueHat Blog, Microsoft expects its bugs-for-bucks approach to evolve moving forward. This isn't just a one-off thing for Windows 8.1.
With deep pockets, Microsoft can certainly afford to sustain a generous bounty program. It's not the only big name willing to pay for exploits, either. Google, Mozilla, and Facebook all have bounty programs of their own. Heck, even the craft nerds over at Etsy will shell out $500 or more for legit vulnerabilities.
|1. GKey13 - $650||2. JohnC - $600||3. davidbowser - $501|
|4. cmpxchg - $500||5. DeadOfKnight - $400||6. danny e. - $375|
|7. the - $360||8. Ryszard - $351||9. rbattle - $350|
|10. Ryu Connor - $350|
|Rumor: Radeon R9 285 to arrive on September 2||26|
|Deal of the week: Devil's Canyon for $194.99||4|
|This gameplay clip made me pre-order The Vanishing of Ethan Carter||12|
|Leaked slides may expose next-gen NUCs||4|
|Thursday Evening Shortbread||22|
|Specs for upcoming FX-8300 chips leak out||63|
|Report: Windows Threshold preview planned for Sept 30||31|
|Only a few hours remain to win ~$1k of hardware via haiku||25|
|Browser plugin identifies advertorial content||10|