Avast Launches Bug Bounty Program

Researchers can earn as much as $5,000 (3,750 EUR) for finding vulnerabilities

By on January 25th, 2013 15:49 GMT

Security solutions provider Avast has launched a new bounty program which gives researchers the opportunity to make some honest money by responsibly reporting the vulnerabilities they identify in the company’s products. This probably makes Avast the first security vendor to initiate such a program.

The issues that qualify for Avast’s bug bounty program are: remote code execution, local privilege escalation, denial-of-service (DOS), Sandbox escapes, and certain scanner bypasses.

The rewards start at $200 (150 EUR), but they can be as high as $5,000 (3,750 EUR) for remote code execution vulnerabilities.

Security experts who want to submit their findings can use the bugs@avast.com email address. However, take note that the information you submit must be sufficient to allow the company to reproduce the flaw.

Additional details are available on Avast’s blog.

1 Comment

Avast launches bug bounty program
   Avast launches bug bounty program