Breaking News

Thermaltake Launches AW360/420 AIO Liquid Cooler and WAir CPU Cooler for Workstations be quiet! redefines versatility with new Light Base 500 LX and Light Base 500 PC cases Crucial’s UK promos for Amazon’s Prime Day Deals 2025 JEDEC Sets the Stage for the Next Leap in Flash Storage With UFS 5.0 MSI Launches Its First Back-Connection Graphics Card—GeForce RTX 5070 Ti 16G VENTUS 3X PZ Series

logo

  • Share Us
    • Facebook
    • Twitter
  • Home
  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map

Search form

Updated GitHub Bug Bounty Program Covers More Programs, Increased Rewards

Updated GitHub Bug Bounty Program Covers More Programs, Increased Rewards

Enterprise & IT Feb 20,2019 0

GitHub launched its Security Bug Bounty program in 2014, now in its fifth year, the program has been updated to offer larger rewards and is also expanded to those who find bugs.

GitHub has been expanding the list of GitHub products and services that are eligible for reward. Now the bounty scope is increased to reward vulnerabilities in all first party services hosted under the github.com domain. This includes GitHub Education, GitHub Learning Lab, GitHub Jobs, and the GitHub Desktop application. While GitHub Enterprise Server has been in scope since 2016, to further increase the security of its enterprise customers GitHub is now expanding the scope to include Enterprise Cloud.

The security of GitHub's users’ data also depends on the security of its employees and its internal systems. That’s why GitHub is also including all first-party services under its employee-facing githubapp.com and github.net domains.

GitHub has also increased its reward amounts at all levels:

  • Critical: $20,000–$30,000+
  • High: $10,000–$20,000
  • Medium: $4,000–$10,000
  • Low: $617–$2,000

GitHub will no longer have a maximum reward amount for critical vulnerabilities. Although the company is listing $30,000 as a guideline amount for critical vulnerabilities, the company is reserving the right to reward significantly more for "truly cutting-edge research."

Tags: GitHubbugs
Previous Post
Apple Plans to Combine iPhone, iPad and Mac Apps
Next Post
Qualcomm SDK Simplifies Development of Mesh Wi-Fi Networks Featuring Amazon Alexa

Related Posts

  • Microsoft Offers You $100,000 If You Can Hack the Linux-based Azure Sphere

  • Apple Says 'No Evidence' iPhone Mail Bug Used Against Consumers

  • Apple to Patch Serious iOS Vulnerability

  • Microsoft to Release Black Desktop Bug Fix to Windows 7 Users

  • Google Found Security Flaws in Apple's Safari Browser: report

  • Paypal Patches High-severity Password Vulnerability

  • Apple Offers Up to $1,500,000 to Bug Hunters

  • Google Will Pay $1 Million to Anyone Who Hack the Pixel Phones

Latest News

Thermaltake Launches AW360/420 AIO Liquid Cooler and WAir CPU Cooler for Workstations
Cooling Systems

Thermaltake Launches AW360/420 AIO Liquid Cooler and WAir CPU Cooler for Workstations

be quiet! redefines versatility with new Light Base 500 LX and Light Base 500 PC cases
Cooling Systems

be quiet! redefines versatility with new Light Base 500 LX and Light Base 500 PC cases

Crucial’s UK promos for Amazon’s Prime Day Deals 2025
Consumer Electronics

Crucial’s UK promos for Amazon’s Prime Day Deals 2025

JEDEC Sets the Stage for the Next Leap in Flash Storage With UFS 5.0
Cameras

JEDEC Sets the Stage for the Next Leap in Flash Storage With UFS 5.0

MSI Launches Its First Back-Connection Graphics Card—GeForce RTX 5070 Ti 16G VENTUS 3X PZ Series
GPUs

MSI Launches Its First Back-Connection Graphics Card—GeForce RTX 5070 Ti 16G VENTUS 3X PZ Series

Popular Reviews

be quiet! Dark Mount Keyboard

be quiet! Dark Mount Keyboard

Terramaster F8-SSD

Terramaster F8-SSD

be quiet! Light Mount Keyboard

be quiet! Light Mount Keyboard

be quiet! Light Base 600 LX

be quiet! Light Base 600 LX

be quiet! Pure Base 501

be quiet! Pure Base 501

Soundpeats Pop Clip

Soundpeats Pop Clip

Akaso 360 Action camera

Akaso 360 Action camera

Dragon Touch Digital Calendar

Dragon Touch Digital Calendar

Main menu

  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map
  • About
  • Privacy
  • Contact Us
  • Promotional Opportunities @ CdrInfo.com
  • Advertise on out site
  • Submit your News to our site
  • RSS Feed