Jump to content

Mozilla to pay up to $10,000 for security bug reports


Batu69

Recommended Posts

mozilla-security-299x300.png

Mozilla has announced an important update to its Client Bug Bounty Program which aims to attract white hat hackers to look into Mozilla code, detect vulnerabilities, create exploit cases and report them to Mozilla to have it fixed before the bug can cause any harm to users.

The program, which is in part responsible for Mozilla’s great response time to security vulnerabilities, has been a success so far having paid about $1.6 million since its inception several years ago.

Mozilla’s new maximum award has been set to $10,000 (up from $3,000), and moderate vulnerabilities may now be worth a reward. This is the summary of awards:

- Novel vulnerability and exploit, new form of exploitation or an exceptional vulnerability ($10,000+)
- High quality bug with clearly exploitable critical vulnerability ($7,500)
- High quality bug report of a critical or high vulnerability ($5,000)
- Minimum for a high or critical vulnerability ($3,000)
- Medium vulnerability ($500 – $2,500)

This will make Mozilla more competitive specially compared to Google which currently pays up to $15,000 for a similar catch in Google Chrome.

mozillalinks.org

Link to comment
Share on other sites


  • Views 1.1k
  • Created
  • Last Reply

Archived

This topic is now archived and is closed to further replies.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...