Breaking News

Noctua at Computex 2026 GIGABYTE announces AORUS GeForce RTX 50 Series AI BOX Sony Expands Professional Display Lineup with Crystal LED UNIFY PlayStation Plus Game Catalog for June 2026 Introducing the Razer Seiren V3 Pro

logo

  • Share Us
    • Facebook
    • Twitter
  • Home
  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map

Search form

Microsoft Bounty Program Now Offers Higher Rewards

Microsoft Bounty Program Now Offers Higher Rewards

Enterprise & IT Apr 4,2019 0

Microsoft has announced a number of improvements in its bounty programs to better serve the security research community.

In 2018 The Microsoft Bounty Program awarded over $2,000,000 to encourage and reward external security research in key technologies.

As of January 2019, the Cloud, Windows, and Azure DevOps programs now award bounties upon completion of reproduction and assessment of each submission, rather than waiting until the final fix has been determined. Shortening the time from submission to award determination mean bounty rewards will reach researchers faster.

Microsoft is partnering with HackerOne for bounty payment processing and support to deliver bounty awards with more options like PayPal, crypto currency, or direct bank transfer in more than 30 currencies. HackerOne also supports award splitting and charity donations. Additionally, Microsoft bounty awards processed through HackerOne will contribute to a researcher's overall reputation score on the HackerOne platform.

Vulnerability reports should still be sent to the Microsoft Security Response Center directly at secure@microsoft.com.

Microsoft is rewarding more for vulnerability reports in multiple bounty programs; in January 2019 the company raised top award levels from $15K to $50K for the Windows Insider Preview bounty and from $15K to $20K for the Microsoft Cloud Bounty program which includes Azure, O365, and other online services. Microsoft has also expanded the scope of the Cloud bounty and promises to continue to expand scope and rewards across its programs throughout the year.

Historically, external reports of internally known vulnerabilities were rewarded 10% of the eligible bounty award as the report did not inform Microsoft of a new and previously unknown issue. By updating Microsoft's policy on duplicate submissions, the first researcher to report a bounty-eligible vulnerability will receive the full eligible bounty award, even if it is internally known. There is no change to Microsoft's policy regarding duplicate external reports of the same vulnerability.

Tags: MicrosoftHacking
Previous Post
FACC and EHang Demontrate Autonomous Air Taxi in Vienna
Next Post
Samsung Collaborates with Universal Pictures Home Entertainment on HDR10+ Content

Related Posts

  • NVIDIA and Microsoft Reinvent Windows PCs for the Age of Personal AI

  • Snapdragon X Series is the Exclusive Platform to Power the Next Generation of Windows PCs with Copilot+ Today

  • Activision Blizzard King to Team Xbox

  • NVIDIA Studio Lineup Adds RTX-Powered Microsoft Surface Laptop Studio 2

  • Samsung and Microsoft Unveil First On-Device Attestation Solution for Enterprise

  • Introducing Xbox Game Pass Core, Coming This September

  • Announcing the next wave of AI innovation with Microsoft Bing and Edge

  • MSI has been hacked, be warned about where you download files

Latest News

Noctua at Computex 2026
Cooling Systems

Noctua at Computex 2026

GIGABYTE announces AORUS GeForce RTX 50 Series AI BOX
GPUs

GIGABYTE announces AORUS GeForce RTX 50 Series AI BOX

Sony Expands Professional Display Lineup with Crystal LED UNIFY
Consumer Electronics

Sony Expands Professional Display Lineup with Crystal LED UNIFY

PlayStation Plus Game Catalog for June 2026
Gaming

PlayStation Plus Game Catalog for June 2026

Introducing the Razer Seiren V3 Pro
Enterprise & IT

Introducing the Razer Seiren V3 Pro

Popular Reviews

Akaso 360 Action camera

Akaso 360 Action camera

Dragon Touch Digital Calendar

Dragon Touch Digital Calendar

Endorfy Thock V2 Wireless Keyboard

Endorfy Thock V2 Wireless Keyboard

be quiet! Pure Loop 3 280mm

be quiet! Pure Loop 3 280mm

Noctua NF-A12x25 G2 fans

Noctua NF-A12x25 G2 fans

Soft2bet and the unseen hardware that makes instant play possible

Soft2bet and the unseen hardware that makes instant play possible

Crucial T710 2TB NVME SSD

Crucial T710 2TB NVME SSD

be quiet! Pure power 13M 750W

be quiet! Pure power 13M 750W

Main menu

  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map
  • About
  • Privacy
  • Contact Us
  • Promotional Opportunities @ CdrInfo.com
  • Advertise on out site
  • Submit your News to our site
  • RSS Feed