TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Google Play will no longer pay to discover vulnerabilities in Android apps

138 pointsby axiomdata3169 months ago

10 comments

ayberk9 months ago
As a Google engineer, it's really saddening to see the Welchism completely taking over Google. There are more than enough examples showing focusing on bottomline to increase shareholder value doesn't work in the long run, but it's obvious the current leadership doesn't care.
评论 #41321969 未加载
评论 #41316549 未加载
评论 #41318955 未加载
评论 #41317978 未加载
评论 #41317322 未加载
评论 #41333976 未加载
metadat9 months ago
Is Android just so good there are no major vulns anymore?<p>Does Apple have a comparable program?<p>I don&#x27;t see a reference in the Apple materials about any bounty reward program for Apps vulnerabilities [1]. If this is true, then Google was going above and beyond and is now simply reverting to the mean so they can reduce any potentially excess financial spend. Maybe they don&#x27;t actually care so much about their users after all? If they were shifting the limited funds to a more effective vehicle, they missed the prime opportunity to mention it (tongue in cheek, because Elgoog doesn&#x27;t have <i>real</i> resource constraints).<p>[1] <a href="https:&#x2F;&#x2F;security.apple.com&#x2F;bounty&#x2F;categories&#x2F;" rel="nofollow">https:&#x2F;&#x2F;security.apple.com&#x2F;bounty&#x2F;categories&#x2F;</a>
评论 #41316882 未加载
评论 #41319538 未加载
BLKNSLVR9 months ago
Does this mean they&#x27;re, in parallel, reducing their cut for apps sold via the Play Store?
评论 #41318926 未加载
mmaunder9 months ago
Hope we’ll get there with WordPress plugins. For now we (Wordfence) are paying over $30,000 per vulnerability for the top vulns.
评论 #41321537 未加载
cultureswitch9 months ago
Any big company is incapable and ultimately unwilling to bring meaningful security curation to an app store, exhibit 3843579401
评论 #41430137 未加载
486sx339 months ago
This is really disappointing. Google play store was struggling enough with evil apps but it was the one “trusted” source.<p>A real opportunity exists for trusted and vetted apps.<p>I guess Google will just sell anything now
Woshiwuja9 months ago
Good idea!
will54219 months ago
Seems reasonable. App authors would’ve been “discovering” vulnerabilities in their own apps and asking Google to pay for them.
评论 #41319547 未加载
评论 #41324822 未加载
评论 #41318048 未加载
398968809 months ago
Why should they? It’s your device. You own it. It’s your responsibility to make sure you don’t install malicious code.
评论 #41321661 未加载
评论 #41321885 未加载
评论 #41319423 未加载
评论 #41329873 未加载
评论 #41322023 未加载
samename9 months ago
Android is already known to be less secure than iOS, how much worse will it get now?
评论 #41316190 未加载
评论 #41316071 未加载
评论 #41316655 未加载
评论 #41315748 未加载
评论 #41315903 未加载
评论 #41317059 未加载
评论 #41325088 未加载
评论 #41318087 未加载