Google Expands Vulnerability Reward Program - Combat Platform Abuse in 2018

Google Expands Existing Bug Bounty Program in 2018

Google now wants to reward security researchers who are able to report methods of misuse of googles product series.

Google has expanded its bug bounty program to include rewards that go beyond reporting specific vulnerabilities. Security researchers now also get rewards when they report methods and techniques that hackers could use to abuse google products and services.

This could be a starting point for enumeration attacks, compromises or a way to circumvent security mechanisms, google employees explains in a blog entry. Rewards of up to $5,000 are waiting researchers on valid submits. In a more detailed blog post the google security team explains about the extended bug bounty program conditions of the program.

New Bug Bounty Program for Identity Technologie by Microsoft

Microsoft Starts New & Unique Identity Bug Bounty Program

Today the microsoft corporation started a new bug bounty program for the microsoft online identity server technology. To further increase the safety of its customers, the tech giant has launched a completely new and independent bug bounty program in the second qarter of 2018. The newly launched bug bounty program, known as the microsoft identity bug bounty program, includes identity solutions for microsoft accounts and azure active directory as well as some implementations of the OpenID specifications. New payouts for the new microsoft Identity bug bounty program range from $500 to $100,000, depending on the impact and analysis even of security researchers and debuggers.


