Security News > 2022 > August > Microsoft trumps Google for 2021-22 bug bounty payouts

Microsoft trumps Google for 2021-22 bug bounty payouts
2022-08-12 18:00

Microsoft appears to have beat Google on the bug bounty front, with $13.7 million in rewards spread out over 335 researchers.

The biggest prize awarded by Microsoft was $200,000 under the Hyper-V Bounty Program and the average award was $12,000.

The Register contacted Microsoft to check that there had been no embarrassing whoopsies in the copy-paste department and will update should the software giant respond.

While bug bounty programs undoubtedly encourage the responsible disclosure of vulnerabilities, they also have their critics.

Microsoft Bug bounty: "Would you like to sell your bug to the government for $1m or give it to Microsoft for less than minimum wage" Web3 Bug bounty: "Would you like to report the bug in return for the content of this mystery box or steal literally all the money we have".

Microsoft has continued to tinker with its bug bounty program, with the addition of attack scenarios on Azure, Dynamics 365, and its Power Platform.


News URL

https://go.theregister.com/feed/www.theregister.com/2022/08/12/microsoft_bug_bounty/

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Google 102 253 4216 4506 727 9702
Microsoft 480 75 2308 5127 264 7774