A Romanian bug hunter has found three flaws in Google's official bug tracker, one of which could have been used to exposed sensitive vulnerabilities to unauthorized intruders.
Google has launched a bug bounty program for popular apps available on its Play Store. Dubbed the Play Security Reward Program, the bug bounty will be offered through the HackerOne platform and is not aimed at Google's own Android apps.
For years, Microsoft has run a bug bounty program where security researchers could report bugs in Microsoft products and earn money for their findings.
Microsoft promoted today the Edge browser to a permanent spot in its bug bounty program, in which, Edge was only part in a limited role.
Yahoo's engineering staff have retired the ImageMagick library from active duty after a security researcher found a bug that would have allowed an attacker to expose server memory, which, due to the library's nature, leaked image data from users' inboxes.
HackerOne, a platform that is offering hosting for bug bounty programs, announced today that open-source projects can now sign up for a free bug bounty program if they meet a few simple conditions.
Dark Web marketplace Hansa has launched a bug bounty program to deal with security issues that might allow other hackers or law enforcement to identify and deanonymize the site's owners and users.
United Airlines' bug bounty program awarded a 19-year-old security researcher one million airmiles for his discovery of multiple vulnerabilities. In total, Olivier reported approximately 20 vulnerabilities, and though none of the vulnerabilities are being disclosed, he did say he earned around 250,000 airmiles for reporting one bug