Skip to main content

Google to pay Rs 25 lakh to spot bugs in its open source projects

New Delhi, Aug 31 (IANS) Google has launched a new bug bounty programme where it will award up to $31,337 (nearly Rs 25 lakh) to researchers who spot vulnerabilities in the company's Open Source projects.

Depending on the severity of the vulnerability and the project's importance, rewards will range from $100 to $31,337.

The larger amounts will also go to unusual or particularly interesting vulnerabilities, "so creativity is encouraged," said Google while launching its Open Source Software Vulnerability Rewards Programme (OSS VRP).

As the maintainer of major projects such as Golang, Angular, and Fuchsia, Google is among the largest contributors and users of open source in the world.

Last year, Google saw a 650 per cent year-over-year increase in attacks targeting the open source supply chain.

With the addition of Google's own vulnerability reward programme (VRP), researchers can now be rewarded for finding bugs that could potentially impact the entire open source ecosystem.

The original VRP programme was one of the first in the world and is now approaching its 12th anniversary.

"Over time, our VRP lineup has expanded to include programmes focused on Chrome, Android, and other areas. Collectively, these programs have rewarded more than 13,000 submissions, totalling over $38 million paid," Google said in a statement late on Tuesday.

Google said its OSS VRP is part of "our $10 billion commitment to improving cybersecurity, including securing the supply chain against these types of attacks for both Google's users and open source consumers worldwide".

(Except for the headline, the rest of this IANS article is un-edited)

For more technology news, product reviews, sci-tech features and updates, keep reading Digit.in



from Mobile Phones News https://ift.tt/bBSjtY7

Comments

Popular posts from this blog

YouTube Music Season Recap 2022: How to View the Spring Recap

YouTube is a jump ahead of Spotify with its Season Rewind playlist feature. Well, besides playlists, the service offers you a list of your most played artists, songs, albums, etc in the previous season. It will be a recurring thing and is poised to come out every season. Meanwhile, its biggest competitor Spotify’s Wrapped is a bop every time it lands but is limited to annual appearance. There in lies one big difference between the two approaches. Let’s see what else you could expect out of the new YouTube Music feature. YouTube Season Recap: How it works Source: u/DecentSizedTurd (Reddit) Like the YouTube Recap 2021, this one too would share personalized listening stats. YouTube calls this “an exploration of your top artists, songs, albums and playlists over the last season”. To view it, you just need to go to music.youtube.com/recap or the landing page on the YouTube Music app for Android and iOS. Right now, only some users have got the spring Youtube Music playlist. But the...