Bounty Programs

Mozilla

The bounty for valid critical client security bugs will be $3000 (US) cash reward and a Mozilla T-shirt. The bounty will be awarded for sg:critical and sg:high severity security bugs that meet the following criteria:
  • Security bug is present in the most recent supported, beta or release candidate version of Firefox, Thunderbird, Firefox Mobile, or in Mozilla services which could compromise users of those products, as released by Mozilla Corporation or Mozilla Messaging.
  • Security bugs in or caused by additional 3rd-party software (e.g. plugins, extensions) are excluded from the Bug Bounty program.
http://www.mozilla.org/security/bug-bounty.html

Zero Day Initiative

ZDI Bronze:
  • 10% automatic monetary bonus on all vulnerability submissions over the next calendar year
  • One-time bonus of $1,000
ZDI Silver:
  • 15% automatic monetary bonus on all vulnerability submissions over the next calendar year
  • 25% ZDI Reward points multiplier on all vulnerability submissions over the next calendar year
  • One-time bonus of $5,000
  • Paid Travel and Registration to attend the DEFCON Conference in Las Vegas
ZDI Gold:
  • 20% automatic monetary bonus on all vulnerability submissions over the next calendar year
  • 50% ZDI Reward points multiplier on all vulnerability submissions over the next calendar year
  • One-time bonus of $10,000
  • Paid Travel and Registration to attend DEFCON and BlackHat Conferences in Las Vegas
ZDI Platinum:
  • 25% automatic monetary bonus on all vulnerability submissions over the next calendar year
  • 100% ZDI Reward points multiplier on all vulnerability submissions over the next calendar year
  • One-time bonus of $20,000
  • Paid Travel and Registration to attend DEFCON, BlackHat Conferences, and BlackHat Training in Las Vegas
ZDI Diamond:
  • 30% automatic monetary bonus on all vulnerability submissions over the next calendar year
  • 125% ZDI Reward points multiplier on all vulnerability submissions over the next calendar year
  • One-time bonus of $25,000
  • Paid Travel and Registration to attend DEFCON, BlackHat Conferences, and BlackHat Training in Las Vegas
http://www.zerodayinitiative.com/about/benefits/

No comments:

Post a Comment