Tag

Vulnerability Rewards

All articles tagged with #vulnerability rewards

Google boosts Android/Chrome bug-bounty rewards to as high as $1.5M
technology24 days ago

Google boosts Android/Chrome bug-bounty rewards to as high as $1.5M

Google overhauls its Android and Chrome vulnerability rewards programs, elevating top Android payouts to $1.5 million for zero-click full-chain exploits on the Pixel Titan M2 (with up to $750,000 for non-persistent variants) and offering up to $250,000 for Chrome full-chain exploits plus a $250,128 bonus for MiraclePtr-protected memory allocations; the changes push for concise bug proofs instead of lengthy analyses and narrow Android focus to Linux kernel vulnerabilities in Google components unless researchers demonstrate device exploitability. The revamp follows a record 2025 with $17.1 million paid to 747 researchers, bringing total payouts since 2010 over $81.6 million, and 2026 totals are expected to rise despite some reductions.

"Google's $10 Million Bug Bounty Payout in 2023"
technology2 years ago

"Google's $10 Million Bug Bounty Payout in 2023"

Google paid $10 million in bug bounty rewards to 632 researchers from 68 countries in 2023, showcasing community participation in its security efforts. The highest reward for a vulnerability report was $113,337, with a total of $59 million paid out since the program's launch in 2010. Significant rewards were given for discoveries in Android, Chrome, Wear OS, Android Automotive OS, Nest, Fitbit, and Wearables. Google also introduced new initiatives and enhancements, including the Bonus Awards program, expansion of the exploit reward program, and the inauguration of the Mobile VRP for first-party Android applications.