Apple will pay up to $2 million bug bounty reward appeared first on MacDailyNews. Apple will pay up to $2 million bug bounty reward appeared first on MacDailyNews. Apple will pay up to $2 million bug bounty reward appeared first on MacDailyNews. Apple will pay up to $2 million bug bounty reward appeared first on MacDailyNews.
At the Hexacon offensive security conference in Paris on Friday, Apple VP of security engineering and architecture Ivan Krstić revealed a new maximum payout of $2 million for a chain

Apple logo with security lock

At the Hexacon offensive security conference in Paris on Friday, Apple VP of security engineering and architecture Ivan Krstić revealed a new maximum payout of $2 million for a chain of software exploits vulnerable to spyware abuse.

Lily Hay Newman for Wired:

In addition to individual payouts, the company’s bug bounty also includes a bonus structure, adding additional awards for exploits that can bypass its extra secure Lockdown Mode as well as those discovered while Apple software is still in its beta testing phase. Taken together, the maximum award for what would otherwise be a potentially catastrophic exploit chain will now be $5 million. The changes take effect next month.

“We are lining up to pay many millions of dollars here, and there’s a reason,” Krstić tells WIRED. “We want to make sure that for the hardest categories, the hardest problems, the things that most closely mirror the kinds of attacks that we see with mercenary spyware — that the researchers who have those skills and abilities and put in that effort and time can get a tremendous reward.”

Apple says that there are more than 2.35 billion of its devices active around the world. The company’s bug bounty was originally an invite-only program for prominent researchers, but since opening to the public in 2020, Apple says that it has awarded more than $35 million to more than 800 security researchers. Top-dollar payouts are very rare, but Krstić says that the company has made multiple $500,000 payouts in recent years.

“You can say, well, that seems like a very large effort to protect only that very small number of users that are being targeted by mercenary spyware, but there is just this incontrovertible track record described by journalists, tech companies, and civil society organizations that these technologies are constantly being abused,” Krstić says. “And we feel a great moral obligation to defend those users. Despite the fact that the vast majority of our users will never be targeted by anything like this, this work that we did will end up increasing protection for everyone.”


MacDailyNews Take: Have at it, bug busters!



Please help support MacDailyNews — and enjoy subscriber-only articles, comments, chat, and more — by subscribing to our Substack: macdailynews.substack.com. Thank you!

Support MacDailyNews at no extra cost to you by using this link to shop at Amazon.

The post Apple will pay up to $2 million bug bounty reward appeared first on MacDailyNews.

original link


You may also be interested in this

More baseball for Apple a…

“Friday Night Baseball” is available to Apple TV+ subscribers throughout the 2025 regular season ESPN and Major League Baseball have decided to end their partnership after the 2025 season, mutually

Ulysses writing app for M…

Popular markdown-based writing app Ulysses has received a valuable update today that brings internal links for headings, history navigation, dark mode for WordPress publishing preview, and more. Here’s what’s new

AirPods 4 firmware update…

Apple has released new firmware for , adding to the series of recent firmware releases for the entire AirPods product line. Here’s what you should know. more…

Apple faces cybercrime in…

Apple is facing a cybercrime investigation in France over its capture and review of voice recordings to improve the quality of Siri responses. The probe faces complaints by a human

Apple changes App Store r…

Apple has updated its App Store Guidelines around external payments and links in response to the injunction issued this week in the Epic Games v. Apple case. The changes, spotted

Apple TV+ debuts trailer …

Season two of “Bad Sisters” will premiere on November 13, 2024 on Apple TV+. Apple TV+ on Tuesday revealed the trailer for the second season of “Bad Sisters,” starring Emmy

How to find your FileVaul…

Macworld Apple originally introduced FileVault to bring full-disk encryption (FDE) protection to macOS. FDE ensures that your entire startup volume is locked away when macOS is shut down (not just

Apple TV+ renews acclaime…

In a sure sign of a bonafide hit, Apple just greenlit spy thriller "Slow Horses" season 7 with season 5 and 6 yet to stream. (via Cult of Mac -
X

A whimsical homage to the days in black and white, celebrating the magic of Mac OS. Dress up your blog with retro, chunky-grade pixellated graphics to evoke some serious computer nostalgia. Supports a custom menu, custom header image, custom background, two footer widget areas, and a full-width page template. I updated Stuart Brown's 2011 masterpiece to meet the needs of the times, made it responsive , got dark mode, custom search widget and more.You can download it from tigaman.com, where you can also find more useful code snippets and plugins to get even more out of wordpress.