News

Microsoft Extends $15,000 per-Bug Bounty Program

Microsoft is extending their MS Office Bounty Program until the end of 2017. The program originally was only to last until June 15. However, the software giant is happy with their engagement with the security community that an extension makes sense. The program’s introduction in March includes a $500 minimum with up to $15,000 per-bug bounty. Which is for for any valid vulnerabilities and zero-day flaws in the Microsoft Office Insider slow build. Of course, this is on a full patch Windows 10 desktop operating system. Plus, there is a stipulation that Microsoft must be able to replicate it.

To sweeten the deal further, they are increasing the minimum bounty to $6,000, while the cap is still at $15,000. It is easy to assume that the the easier bugs have already been found, leaving only some harder to find ones. Increasing the bounty should help motivate the security community further. In the bounty terms available on the TechNet blog, Microsoft is specifically looking for zero-day problems including privilege escalation through Office Protected View, macro execution which bypasses security barriers designed to block macros, and remote code execution bugs, among others.

How does Microsoft Set the Payment Amounts?

If multiple submissions of the same bug report from several parties come in, the bounty only goes to the first eligible submission. However, if the duplicate report provides additional information that helps the vulnerability investigation, they may still provide a reward.

For more information on the terms of the bounty, visit the MS Office Insider bounty program page at: https://technet.microsoft.com/en-us/mt797549.aspx

Ron Perillo

Disqus Comments Loading...

Recent Posts

EK Water Blocks EK-Nucleus CR240 Lux D-RGB All In One CPU Water Cooler

The EK-Nucleus AIO CR240 Lux D-RGB is an all-in-one liquid cooling solution offering a stylish…

1 hour ago

MSI GeForce RTX 4090 Gaming Trio X 24GB GDDR6X PCI-Express Graphics Card

FeaturesVirtual Reality ReadyYesColourPrimary ColourGreySecondary ColourBlackLightingLightingYesLighting ColourRGBClock SpeedsMax. Memory Clock21000 MHzStandards / SpecificationsAdaptive Sync Technology (G-Sync…

1 hour ago

BenQ Zowie 27″ XL2746K 1920×1080 IPS 240Hz 1ms Widescreen Gaming Monitor

SpeakersSpeakersNoStandards / SpecificationsAdaptive Sync Technology (G-Sync / Freesync)AMD FreesyncColourPrimary ColourBlackDimensionsWidth628.6 mmDepth217.9 mmHeight562.2 mmWeight12.7 kgDisplayDisplay Size27"Display…

2 hours ago

MSI 27″ Modern MD271UL 3840×2160 60Hz sRGB 139% Widescreen Productivity Monitor

LightingLightingNoColourPrimary ColourBlackSecondary ColourSilverDisplayDisplay Size27"Display ResolutionUHD (3840 x 2160 Pixel)Display Aspect Ratio16:9Display Refresh Rate60 HzDisplay Panel…

2 hours ago

AOC 32″ C32G2ZE/BK 1920×1080 VA 240Hz 1ms Curved Widescreen Gaming Monitor

FHD, 31.5” VA panel and curvature radius of 1500R create the flawless image quality of…

2 hours ago

Cooler Master MasterAir MA612 Stealth ARGB Dual Fan CPU Cooler

Cooler SpecificationsNumber of heatpipes6ColourPrimary ColourBlackFan main colour (cage)BlackFan main colour (rotor)WhiteTypeCPU Cooler TypeDual TowerAdditional ContentsIncluded…

2 hours ago