GitHub updates bug bounty structure, launches VIP researcher program
GitHub has restructured its Security Bug Bounty Program, introducing a permanent VIP program for researchers who provide high-quality, high-impact vulnerability reports. Top researchers in this invite-only tier can receive larger payouts, faster response times, and early access to new product features. The changes shift incentives from quantity to quality of reports and formalize benefits for consistently strong contributors.
- VIP researchers can earn payouts of $30,000 or more
- Program emphasizes quality over number of submissions
- VIPs get early previews of new features
- Eligibility based on consistent, critical findings
Sources covering this
In this story
More in Cybersecurity
US and allies disrupt Chinese hacking tools targeting infrastructure
US authorities and international partners have seized domains and tools used by China's Integrity Technology Group to support…
AI-powered attacks target South Korean banks
A cyberattack campaign targeting South Korean financial institutions used AI-based tools to steal personal data, CrowdStrike reported.
Google promotes passkeys as a password alternative
Google is highlighting passkeys as a faster and safer alternative to traditional passwords for its accounts.
Malware found pre-installed on low-cost Android phones
Researchers have discovered malware embedded in the firmware of inexpensive Android smartphones, allowing attackers to remotely install…