Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
TRENDING TODAY
Home > News > Webmaster > Web Blog

February 11th, 2013, 11:01 GMT · By

BLOG

Mega Starts Paying Researchers for Vulnerabilities, Though It's Not Naming Them

SHARE:

Adjust text size:


Mega has started paying for vulnerability reports Enlarge picture - Mega has started paying for vulnerability reports
Mega has been available for a few weeks now, but the cloud storage service is still getting attention. A short while ago, Kim Dotcom promised to start a security vulnerability rewards program, after the site had seen quite a lot of scrutiny from security experts.

Now, Mega is reporting on the first bugs found and patched via this program. Seven vulnerabilities were fixed in total, some more serious than others.

Mega also listed six types of vulnerabilities that it will be rewarding people for, grouped based on their severity, with level six being the most dangerous. The most serious vulnerability fixed in the first round was a level four.

The program is here to stay, so expect more of these vulnerabilities to be discovered and fixed in time. Mega didn't reveal who found the bugs and how much it's paying for them, which may be a bit of a problem for the people looking for them.

For the experts, getting their names recognized is as important as or maybe even more important than the money they make from these programs.

Dotcom has confirmed that one researcher, Frans Rosén got €1,000 or $1,337 for an XSS vulnerability. Incidentally, that's exactly how much Google pays for this type of vulnerability as well.
FILED UNDER:
Mega
vulnerability
security

TELL US WHAT YOU THINK:

773 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Dotcom's Mega Only Works in Chrome, Desktop and Mobile Apps Are on Their Way

The Full Explanation of Why Mega Only Works in Chrome, Snubbing Firefox, IE, Safari, Opera

Mega's Client-Side Encryption Key Is Actually Stored Online

Kim Dotcom's Mega Launches Early for Some Users, Very Cheap Pricing Revealed

Mega Explains Its Encryption Dismissing Some of the Fears and Criticism

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2013 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM