Want to make a stack of cash? All you have to do is come up with a "truly novel exploitation technique" for the upcoming Windows 8.1 Preview. Microsoft has launched a security bounty program that will reward hackers with up to $100,000 for finding security-related flaws in its next operating system. Qualifying submissions with accompanying "defensive ideas" will also be eligible for a BlueHat Bonus worth up to $50,000.
Those bounties will be ongoing, and they're scheduled to launch on June 26 along with the Windows 8.1 beta. There will be a separate bounty for critical vulnerabilities found in Internet Explorer 11, as well. That one is limited to the preview OS, and it's worth up to $11,000. Also, it expires July 26. Interested parties should check this post on the TechNet Security Research & Defense blog for more details on the program.
According to the official BlueHat Blog, Microsoft expects its bugs-for-bucks approach to evolve moving forward. This isn't just a one-off thing for Windows 8.1.
With deep pockets, Microsoft can certainly afford to sustain a generous bounty program. It's not the only big name willing to pay for exploits, either. Google, Mozilla, and Facebook all have bounty programs of their own. Heck, even the craft nerds over at Etsy will shell out $500 or more for legit vulnerabilities.
|Some 840 EVOs still vulnerable to read speed slowdowns||36|
|Details leak out on AMD's first Zen-based desktop CPUs||46|
|Nvidia: the GeForce GTX 970 works exactly as intended||75|
|Report: 4GB of RAM coming to GTX 960 in March||96|
|Early deal of the week: A 27" G-Sync monitor for $480||34|
|Gearbox's Homeworld remake due February 25||43|
|Nvidia admits, explains GeForce GTX 970 memory allocation issue||240|
|Here's my guest appearance on tonight's Alt+Tab Show||12|
|HA. AMD in the red and nVidia in the green. Thats funny cause you know... *cough* oh forget it.||+82|