Microsoft launches new Windows bug bounty programme
Microsoft has launched a new bug bounty programme for Windows, which aims to maintain its “high security bar”.
The company said the programme will include all features of the Windows Insider Preview in addition to focus areas in Hyper-V, Mitigation bypass, Windows Defender Application Guard, and Microsoft Edge.
“We’re also bumping up the pay-out range for the Hyper-V Bounty Program,” said Microsoft.
It said any critical or important class remote code execution, elevation of privilege, or design flaws that compromise a customer’s privacy and security will receive a bounty.
“All security bugs are important to us and we request you report all security bugs to [email protected] via Coordinated Vulnerability Disclosure policy.”
Information about the Microsoft Bounty Programs can be found at aka.ms/BugBounty.
The payouts for the programme are as follows:
- Microsoft Hyper-V (Windows 10 and Server 2012) – $5,000 to $250,000
- Mitigation bypass and defense (Windows 10) – $500 to $200,000
- Windows Defender and Application Guard (WIP Slow) – $500 to $30,000
- Microsoft Edge (WIP Slow) – $500 to $15,000
- Windows Insider Preview (WIP Slow) – $500 to $30,000