Google запускает программу bug bounty для своих Android-приложений
Google запустила новую программу вознаграждений за уязвимости, Mobile Vulnerability Rewards Program (Mobile VRP), в рамках которой исследователи смогут получить до 30 000 долларов за баги, обнаруженные в Android-приложениях.
Up to 30k reward for, "
Vulnerabilities that can be rewarded include arbitrary code execution, theft of sensitive data, and various bugs that can be chained with other vulnerabilities to achieve a similar impact.
Researchers will be able to receive up to $30,000 for remote code execution with no user interaction, and up to $7,500 for bugs that allow sensitive data to be stolen remotely."
Especially the following:
- Google Play Services (com.google.android.gms);
- AGSA( com.google.android.googlequicksearchbox);
- Google Chrome (com.android.chrome);
- Google Cloud (com.google.android.apps.cloudconsole);
- Gmail (com.google.android.gm);
- Chrome Remote Desktop (com.google.chromeremotedesktop).