Microsoft forked out $13.7m in bug bounties. The reward program's architect thinks the money could be better spent

Microsoft forked out $13.7m in bug bounties. The reward program's architect thinks the money could be better spent

Microsoft's bug bounty program has exploded in terms of scope and payouts.


The Windows giant said on Tuesday that over the twelve months to June 30, 2020, it has paid out $13.7m for reports of vulnerabilities in its products, more than treble the year-ago total of $4.4m


The coronavirus pandemic played a part in the bug-report explosion, said Microsoft, as flaw finders forced to stay indoors – or perhaps laid off and looking for a payday – hammered away at Redmond's code. The rest was down to the IT titan increasing the number of programs and pathways to reporting programming blunders for money.


"This year, we launched six new bounty programs and two new research grants, attracting over 1,000 eligible reports from over 300 researchers across 6 continents," noted Microsoft Bug Bounty lead Jarek Stanley.


"In addi ..

Support the originator by clicking the read the rest link below.