Windows Bounty Program Offers Up to $250,000 Per BugIn a bid to make Windows 10 and Windows Server more secure, Microsoft turns to the wider security community and tempts them with very healthy cash rewards.

ByMatthew Humphries

This story originally appeared onPCMag

Microsoft via PC Mag

Bug bounty programs are a very efficient way of getting the wider security community involved in helping to protect a piece of software. In return for spending time trying to break through the security of any given system, you can earn some cash and a little bit of fame.

This week, Microsoft announced theWindows Bounty Program, challenging "friends, hackers and researchers" to break into any and all parts ofWindows 10and Windows Server.

Microsoftisn't newto the bug bounty game. Mitigation Bypass Bounty and Bounty for Defense programs have been running since 2013, and aMicrosoft Edgebounty has been in place since August 2016. The latest bounties are really more of an expansion of what's already in place and includes the Windows Insider Preview, Windows Defender Application Guard and Microsoft Hyper-V.

Rewards range anywhere from $500 right up to $250,000 for the most serious Hyper-V bugs. Hyper-V is Microsoft's solution for running virtual machines and helps power theAzurecloud computing service, so you can see why Microsoft would like to identify and fix any vulnerabilities there quickly. In order to earn $250,000 you need to identify a vulnerability that qualifies as Remote Code Execution, Information Disclosure or a Denial of Service.

A nice additional feature of this bounty program is the 10 percent reward. If a bug is reported that Microsoft already discovered internally, the first finder will still receive 10 percent of the qualifying reward. So if they found a vulnerability worth $250,000, which Microsoft already knows about internally, they'll still receive $25,000.

Taken as a whole, Microsoft is clearly very keen to ensure its core products of Windows 10, Windows Server, the Edge browser and Windows Defender are as secure as possible. And with the rate at which new threats appear, it would be almost impossible to keep up relying solely on an internal security team at Microsoft.

Wavy Line
Matthew Humphries

Senior Editor

Editor's Pick

Related Topics

Business News

'Treat People the Way You Want to be Treated': Pilot Goes Viral For Rant Directed at 'Selfish' Passengers

The American Airlines pilot wasn't tolerating any unruly behavior.

Business News

'Life of a Girl Dad:' Mark Zuckerberg Rocks Face Gems and Beaded Bracelets at Taylor Swift Concert

The Facebook founder attended the economy-boosting "Eras" tour with his daughters.

Business News

Chinese Zoo Denies That Bear in Enclosure Is Really a Human in Costume

The bear has created a frenzy on social media.

Money & Finance

Want to Become a Millionaire? Follow Warren Buffett's 4 Rules.

企业家是不能过度指狗万官方望太多a company exit for their eventual 'win.' Do this instead.

Devices

3 Things Businesses Should Remember When Handling Used Consumer Electronics

Most businesses rely on electronic equipment, but not enough know how to handle and dispose of it properly.

Growing a Business

How I Bootstrapped to $100 Million Without Venture Capital Funding

How I grew my business without any VC funding — and how you can, too.