Microsoft Defender launches new round of bug bounty program
Microsoft Defender launches new round of bug bounty program, with maximum reward of $20,000
- 60% of MD5 Password Hashes Can Be Cracked in Under an Hour with a Single GPU
- Dirty Frag: Root Access on Every Major Linux Distribution — No Patch, No Warning
- Ubuntu 26.04 LTS (Resolute Raccoon): The Most Ambitious Ubuntu LTS in a Decade
- Proton Mail: Data Transferred to FBI Again!
- How Close Are Quantum Computers to Breaking RSA-2048?
- How to Prevent Ransomware Infection Risks?
- What is the best alternative to Microsoft Office?
Microsoft Defender launches new round of bug bounty program, with maximum reward of $20,000
Microsoft said that Microsoft Defender is designed to enhance the security experience of Microsoft customers, and the Microsoft Defender bounty program will invite researchers from around the world to find vulnerabilities in this software.
he new Defender bounty program will start with a “limited scope” focused on the Microsoft Defender for Endpoint API and will be expanded to include other Defender products over time.
Microsoft said that vulnerabilities submitted by security personnel must pass the following standards in order to receive bounties:
It must be a newly discovered vulnerability and does not include vulnerabilities that have been previously reported to Microsoft.
The vulnerabilities are of a certain severity and can be reproduced in the latest, fully patched product or service versions.
Security personnel should provide clear, concise, and replicable reproducible steps, either in written or video format.

Microsoft said that depending on the severity of the vulnerability, the relevant bounty price will range from US$500 to US$8,000, and is aimed at researchers who discover vulnerabilities related to remote code execution in Defender.
Awards in this category will range from US$5,000 to US$20,000.