Google Expands Its Bug Bounty Programme to Combat Platform Abuse

Advertisement
By Ankit Chawla | Updated: 16 August 2018 18:24 IST
Highlights
  • Google is formally expanding its Vulnerability Reward Program
  • The submitted reports are reviewed by the Trust and Safety team
  • Uber had refreshed its policies back in April

Since 2010, Google's bug bounty programme has given out more than $12 million in prize money.

Google on Wednesday announced that it is formally expanding its Vulnerability Reward Program to include reports about techniques that allow third parties to bypass Google's abuse, fraud, and spam systems. Previously, the formal statement limited bug reports to security vulnerabilities, however the move comes after numerous reports were submitted around platform abuse. This programme does not yet cover individual instances of abuse, which are required to be reported through product-specific channels. These product-specific channels include the likes of Google+, YouTube, Gmail, and Blogger.

Since its inception in 2010, Google's bug bounty programme has given out more than $12 million (roughly Rs. 84.25 crores) to researchers and has helped in creating a thriving community that proactively sends reports to Google. Of this $12 million, nearly $3 million (approximately Rs. 21.1 crores) was given out in 2017 alone, of which Chrome bug reports took the majority of funds.

As examples of potentially valid reports in the revised programme, Google lists instances such as bypassing account recovery systems at scale, identifying services vulnerable to brute force attacks, circumventing restrictions on content use and sharing, and purchasing items from Google without paying. "Valid reports tend to result in changes to the product's code, as opposed to removal of individual pieces of content," said Eric Brown and Marc Henson, Trust and Safety, Google.

Advertisement

These reports, submitted by researchers, are reviewed by the panel on the Trust and Safety team, which is highly skilled in detecting cases of abuse, fraud, and spam activity on Google's suite of products.

Advertisement

Back in April this year, ride-hailing service Uber had announced a refresh to its bug bounty programme after it mishandled a data breach back in 2016. In a major announcement, Uber also revealed that it updated the policies to specifically state that the company will not pursue any legal action against good-faith hackers who submit flaws through the bug bounty portal.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Google, Bug Bounty Programme
Advertisement

Related Stories

Popular Mobile Brands
  1. Motorola Edge 70 Ultra Camera Configuration, Other Key Features Leaked
  2. Nothing Phone 4a Series Price and Key Specs Tipped
  3. Realme Narzo 90 Series Price in India Leaked; Will Come in These Colourways
  4. Dominic and the Ladies' Purse OTT Release Date: When and Where to Watch it Online?
  5. Star's Wobble Around Black Hole Confirms Einstein's Century-Old Prediction
  6. Hogwarts Legacy Is Currently Free on Epic Games Store: How to Redeem
  7. The Rookie Season 7 OTT Release Date: When and Where to Watch it Online?
  8. Galaxy Mergers Can Switch On Supermassive Black Holes, Euclid Finds
  1. Astronomers Observe Star’s Wobbling Orbit, Confirming Einstein’s Frame-Dragging
  2. Galaxy Collisions Found to Activate Supermassive Black Holes, Euclid Data Shows
  3. JWST Detects Oldest Supernova Ever Seen, Linked to GRB 250314A
  4. Chandra’s New X-Ray Mapping Exposes the Invisible Engines Powering Galaxy Clusters
  5. Blue Origin to Fly First Wheelchair User to Space on New Shepard NS-37
  6. Chandra’s New X-Ray Mapping Exposes the Invisible Engines Powering Galaxy Clusters
  7. Sasivadane Now Streaming on Amazon Prime Video: Everything You Need to Know
  8. Kuttram Purindhavan Now Streaming Online: What You Need to Know?
  9. Lyne Lancer 19 Pro With 2.01-Inch Display, SpO2 Monitoring Launched in India
  10. OpenAI and Disney Reach Licensing Agreement to Bring Its Characters to the Sora App
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.