Skip to main content

Microsoft’s extended Edge bug bounty program offers rewards up to $15K

Man holding money
Image used with permission by copyright holder
Microsoft said Wednesday that it’s extending the Microsoft Edge bounty program indefinitely. The program rewards individuals who submit vulnerabilities discovered in a “preview” version of the Microsoft Edge browser served up to Windows Insiders (slow ring). Thanks to this bounty program — and the helpful “bug hunters” — the final builds of Microsoft Edge released to the general public are even more secure.

“Over the past 10 months, we have paid out over $200,000 USD in bounties,” the company said. “This collaboration with the research community has resulted in significant improvements in Edge security, and has allowed us to offer more proactive security for our customers.”

Microsoft first began dishing out bug bounties in 2013. The first paid up to $100,000 for “novel exploitation techniques” against the Windows operating system. Another paid up to an additional $50,000 for submitting “BlueHat” ideas for defending Windows against the techniques used in the first bounty. The third program paid up to $11,000 for the discovery of critical vulnerabilities in the Internet Explorer 11 Preview.

Last August, Microsoft established its Edge bounty program to help discover Remote Code Execution vulnerabilities in preview builds of Microsoft Edge that were served up to the Windows Insider program. Dishing out up to $15,000 in cash, the program was originally slated to end on June 30, 2017. But now that it’s an ongoing program, it will join the Bounty for Defense, the Mitigation Bypass Bounty, Online Services Bug Bounty, and two other ongoing bounties in Microsoft’s lineup. Microsoft’s bounty for Office vulnerabilities ended on June 15.

According to Microsoft, the Edge browser bounty was so productive that the deadline was lifted indefinitely at the company’s discretion.

“Microsoft is committed to delivering secure products to our customers, and this bounty program helped us achieve that goal,” Microsoft said. ”We received many high-quality reports in Edge during this 10-month program. which helped keep our customers secure.”

All bounties related to Microsoft Edge will range in from $500 to $15,000. If an individual submits a qualifying vulnerability already discovered internally by Microsoft (and not yet reported), then the company will hand over a maximum cash wad of $1,500 to the first qualifying submission. All vulnerabilities must be reproducible on the latest Windows 10 preview build provided on the Windows Insider Slow Ring. Vulnerabilities relating to older builds will be deemed ineligible.

Microsoft indicates that it’s capable of paying out more than $15,000 for the Edge bounty program. The larger sum will be at Microsoft’s “sole discretion” and based on “entry quality and complexity.” Otherwise, submissions with a “high” report quality will see up to $15,000 in payment, while low-quality submissions will see up to $1,500 in payment.

Editors' Recommendations

Kevin Parrish
Former Digital Trends Contributor
Kevin started taking PCs apart in the 90s when Quake was on the way and his PC lacked the required components. Since then…
Get this HP 17-inch laptop for $300 instead of the usual $660
The HP 17-inch laptop against a white background.

Seventeen-inch laptops toe the line between portability and size, making them more expensive than your average laptop. Some of the best 17-inch laptops can easily cost you thousands of dollars. Luckily, there HP has come up with a very budget-friendly solution in the form of the HP laptop 17z, and while it's not one of the best laptops on the market, it is an excellent budget-oriented choice for a 17-inch laptop. Even better, HP currently discounts it down to $300 from the usual $560 price tag, which is a significant $260 off.

Why you should buy the HP Laptop 17z
As the name implies, the HP Laptop 17z has a large 17.3-inch screen running a 1920 x 1080 resolution and can hit a peak brightness of 250nits, which isn't a lot, but it's good enough for a well-lit room, especially with its anti-glare coating. You could potentially upgrade to a touch version of the screen for $30, but since it would knock the resolution down to 1600 x 900, it's not worth it, especially with a larger 17.3-inch screen. What will be worth the upgrade is taking the networking option from the Wi-Fi5 and Bluetooth 4.2 standard up to the Wi-Fi 6 and Bluetooth 5 standard for an extra $20, which will make sure your laptop has a strong connection for streaming or doing online meetings and will be future-proof for at least the next 5-6 years.

Read more
Get a lifetime of 1TB cloud storage for $160
Using Koofr cloud storage on a phone.

One thing about most of the best cloud storage services that you're sure not to like is having to pay for them. Again and again, month after month, they ask for money to continue holding your files. It makes sense, in a way, as their servers take constant real estate and electricity to maintain. Now, though, you can get a lifetime of terabyte cloud storage on Koofr for just $160. The usual price would be $810, so this saves you $650 in total. And, naturally, Koofr's cloud storage has special features that you'll want to know about, too. So, go ahead and tap the button below to find the deal — it'll only be going on for a limited amount of time — and continue reading to see why we like this deal and what makes Koofr special.

Why you should buy cloud storage on Koofr
While Koofr is an advanced cloud storage system, with advanced file management and accessibility from nearly all of your devices, there are two primary reasons to purchase this deal: Security and value.

Read more
The 5 best things you can do with Copilot Pro right now
Microsoft Copilot Pro.

Copilot Pro is Microsoft’s AI subscription service that costs $20 per month for individuals and is integrated into the brand’s Microsoft 365 suite. The paid service offers unique features to Microsoft users, provides faster and more consistent AI performance with priority access to the GPT-4 and GPT-4 Turbo large language models (LLM) during peak times, and also brings the AI technology to the brand’s most popular PC applications -- and that's where things get really interesting.

Here are some of the best features on Copilot Pro and how they work.
Create custom GPTs

Read more