TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Apple Security Bounty

99 点作者 devhwrng超过 5 年前

6 条评论

killjoywashere超过 5 年前
Facebook: <a href="https:&#x2F;&#x2F;www.facebook.com&#x2F;whitehat" rel="nofollow">https:&#x2F;&#x2F;www.facebook.com&#x2F;whitehat</a><p>Amazon: <a href="https:&#x2F;&#x2F;aws.amazon.com&#x2F;security&#x2F;vulnerability-reporting&#x2F;" rel="nofollow">https:&#x2F;&#x2F;aws.amazon.com&#x2F;security&#x2F;vulnerability-reporting&#x2F;</a><p>Netflix: <a href="https:&#x2F;&#x2F;help.netflix.com&#x2F;en&#x2F;node&#x2F;6657" rel="nofollow">https:&#x2F;&#x2F;help.netflix.com&#x2F;en&#x2F;node&#x2F;6657</a><p>Google: <a href="https:&#x2F;&#x2F;www.google.com&#x2F;about&#x2F;appsecurity&#x2F;programs-home&#x2F;" rel="nofollow">https:&#x2F;&#x2F;www.google.com&#x2F;about&#x2F;appsecurity&#x2F;programs-home&#x2F;</a><p>Microsoft: <a href="https:&#x2F;&#x2F;www.microsoft.com&#x2F;en-us&#x2F;msrc&#x2F;bounty" rel="nofollow">https:&#x2F;&#x2F;www.microsoft.com&#x2F;en-us&#x2F;msrc&#x2F;bounty</a><p>More: <a href="https:&#x2F;&#x2F;www.ubuntupit.com&#x2F;best-bug-bounty-programs-on-internet&#x2F;" rel="nofollow">https:&#x2F;&#x2F;www.ubuntupit.com&#x2F;best-bug-bounty-programs-on-intern...</a>
评论 #21841716 未加载
jc_811超过 5 年前
I see the biggest bounty is for &amp;1,000,000USD and says:” Zero-click kernel code l execution with persistence and kernel PAC bypass”<p>As someone who doesn’t speak this language, what does thismean? And are there examples in history of this type of exploit affecting a large company?
评论 #21841816 未加载
评论 #21841810 未加载
dsalzman超过 5 年前
Real $ amounts! This is how you beat the black market.
评论 #21842031 未加载
_bxg1超过 5 年前
Is this new? Is that why it&#x27;s being posted?
评论 #21841728 未加载
评论 #21841698 未加载
pabs3超过 5 年前
I heard a rumor that Apple has never paid out any money in their invite-only bug bounty days. This 2018 article seems to suggest that is true. Does anyone have any data to the contrary?<p><a href="https:&#x2F;&#x2F;www.vice.com&#x2F;en_us&#x2F;article&#x2F;7xqdxe&#x2F;google-project-zero-hacker-iphone-bug-bounty" rel="nofollow">https:&#x2F;&#x2F;www.vice.com&#x2F;en_us&#x2F;article&#x2F;7xqdxe&#x2F;google-project-zer...</a>
zemnmez超过 5 年前
Critically, there&#x27;s no information about whether reporters are allowed to disclose, which usually means that Apple is going to hide any seriously damaging vulnerabilities...
评论 #21841774 未加载