Microsoft Offers $100,000 Bounty For Windows 8.1 Exploits
42 replies, posted
[IMG]http://www.extremetech.com/wp-content/uploads/2011/10/steve-ballmer-palpatine-vs-start-menu-640x353.jpg[/IMG]
pic unrelated
[QUOTE]It is just a matter of one week before Microsoft rolls out the first official public preview version of Windows 8.1, and along with that, you will also find the first preview of the Internet Explorer 11 browser. Microsoft has just announced plans that they will offer a $100,000 bounty to whoever is able to discover and obviously, report exploits in the latest operating system update as well as Internet Explorer 11 browser. The three new bounty programs will kick off from the moment when the public preview of Windows 8.1 rolls out this coming June 26th. The biggest one would be the Mitigation Bypass Bounty, which obviously carries the $100,000 reward to developers who manage to find, in Microsoft’s words, “truly novel exploitation techniques” in Windows 8.1. It would be interesting to read the fine print to see what “truly novel exploitation techniques” mean. As for the other program, it is known as the BlueHat Bonus for Defense, where it offers up to $50,000 for “defensive ideas that block a qualifying mitigation bypass technique.” Last but not least, there is the maximum $11,000 bounty for anyone who finds “critical vulnerabilities” in the public preview where Internet Explorer 11 is concerned....
[/QUOTE]
[url]http://www.ubergizmo.com/2013/06/microsoft-offers-100000-bounty-for-someone-who-can-find-windows-8-1-exploits/[/url]
MS is gonna hand out allot of cash knowing how insecure Windows is...
Easy money...
Hopefully this won't turn out like the 'Windows Phone Challenge' fiasco.
DAMN I wish I was smart
[QUOTE=Noss;41130227]Hopefully this won't turn out like the 'Windows Phone Challenge' fiasco.[/QUOTE]
what happened?
The user.
where's my 100k
[QUOTE=The Baconator;41130240]what happened?[/QUOTE]
Basically, the challenge was that you bring your smartphone to a Windows store, and if it could perform a task (such as taking and mailing a photo) quicker than Windows Phone 8 could, you got a prize.
However, I think they underestimated the speediness of other phones, and as a result when a lot of people started to win they refused to hand out the prizes, arguing that the Windows phones beat them regardless of the outcome.
[QUOTE=Van-man;41130222]Easy money...[/QUOTE]
Then go for it!
[QUOTE=Noss;41130227]Hopefully this won't turn out like the 'Windows Phone Challenge' fiasco.[/QUOTE]
Hopefully this [B]WILL[/B] turn out like the 'Windows Phone Challenge' fiasco.
Time to cash in.
[QUOTE=Van-man;41130222]Easy money...[/QUOTE]
[QUOTE=godlike;41130430]Time to cash in.[/QUOTE]
haha I don't like [software product] ergo [software product] is a bug ridden, insecure piece of shit!!
[QUOTE=Protocol7;41130443]haha I don't like [software product] ergo [software product] is a bug ridden, insecure piece of shit!![/QUOTE]
[software product] has a long history of being insecure, ergo [software product] is probably insecure.
[QUOTE=danharibo;41130482][software product] has a long history of being insecure, ergo [software product] is probably insecure.[/QUOTE]
there are obviously going to be security holes but for the likes I quoted it is far from "easy money"
Microsoft Windows on the NT kernel other than XP service pack 0 has very little history of being insecure, it's third party software you should be pointing fingers at.
[QUOTE=butre;41130570]Microsoft Windows on the NT kernel other than XP service pack 0 has very little history of being insecure, it's third party software you should be pointing fingers at.[/QUOTE]
Get that logic out of here! Can't you see this is a microsoft bashing thread?
Now, shall we all go back to beating this horse postmortem?
[QUOTE=Noss;41130324]Basically, the challenge was that you bring your smartphone to a Windows store, and if it could perform a task (such as taking and mailing a photo) quicker than Windows Phone 8 could, you got a prize.
However, I think they underestimated the speediness of other phones, and as a result when a lot of people started to win they refused to hand out the prizes, arguing that the Windows phones beat them regardless of the outcome.[/QUOTE]
Source for this? There was ONE incident where some asshole dude at a MS store refused to accept a guy had beat him to check the weather of two different cities. The prize was 100$ and a PC customized with The Hunger Games decals. Then some weird ass MS PR dude call BenThePCGuy offered an apology to the person and gave him the prize he deserved.
[URL]http://mynokiablog.com/2012/03/26/smoked-by-windows-phone-pr-fail-ben-the-pc-guy-to-the-rescue/[/URL]
[editline]21st June 2013[/editline]
seriously who is ben the pc guy and why is he a thing in MS marketing
[QUOTE=Noss;41130324]Basically, the challenge was that you bring your smartphone to a Windows store, and if it could perform a task (such as taking and mailing a photo) quicker than Windows Phone 8 could, you got a prize.
However, I think they underestimated the speediness of other phones, and as a result when a lot of people started to win they refused to hand out the prizes, arguing that the Windows phones beat them regardless of the outcome.[/QUOTE]
There was also no limit to how many times you could do it, so if the person handling the challenge didn't care you'd get free microsoft gift cards.
My brother had a friend who handed me like 20 gift cards to split between them :v:
This is a good campaign tbh. Most people just get a beta for the hell of it and never actually beta test.
Do you think the people who were invited into a game beta actually report bugs? Most people sign up to play the game early.
Here's how it goes, someone will submit a large exploit to claim the $100k, microsoft fixes the exploit and never replies again.
Oh god. They are going bankrupt.
[QUOTE=MatheusMCardoso;41134564]Oh god. They are going bankrupt.[/QUOTE]
ms is hardly bankrupt.
[editline]21st June 2013[/editline]
and zero days go for less on the black market so this should help remove some
[QUOTE=Protocol7;41130562]there are obviously going to be security holes but for the likes I quoted it is far from "easy money"[/QUOTE]
It's easy money if you know how a computer works and been around windows for awhile.
I know some retarded 0days in ring0 and in ring3 kernel layers that could be patched for windows 8.
[editline]22nd June 2013[/editline]
[QUOTE=Mike Tyson;41134815]ms is hardly bankrupt.
[editline]21st June 2013[/editline]
and zero days go for less on the black market so this should help remove some[/QUOTE]
Depends on the 0day, a bin of TDL4 sells for 40k and it has some nice 0days in it
[QUOTE=godlike;41134828]It's easy money if you know how a computer works and been around windows for awhile.
I know some retarded 0days in ring0 and in ring3 kernel layers that could be patched for windows 8.
[editline]22nd June 2013[/editline]
Depends on the 0day, a bin of TDL4 sells for 40k and it has some nice 0days in it[/QUOTE]
thats true, but the majority go for under 100k. some go for over, but most under.
I found a bug, they seem to be giving out the tablet version of windows 8 instead of the real version. I mean there's no start menu or anything.
snip
$11k for an IE exploit?
You could get like $10k from just selling it to some russians, and you can do that multiple times
[QUOTE=Sword and Paint;41135321]I found a bug, they seem to be giving out the tablet version of windows 8 instead of the real version. I mean there's no start menu or anything.[/QUOTE]
You are kinda late. 8.1 adds a start button, it just takes you to the Metro screen.
[QUOTE=Durrsly;41135711]You are kinda late. 8.1 adds a start button, it just takes you to the Metro screen.[/QUOTE]
i'd rather not have it, i'm too used to this
[img]http://puu.sh/3lmXj.jpg[/img]
[IMG]http://puu.sh/3lmRv.png[/IMG]
looks cleaner
appears when you mouse over the corner
Windows 8 and Xbox One have made so many people hate Microsoft so hardcore it's ridiculous and more than a little silly.
They totally boned the Xbox one but Windows 8 gets a lot of hate for no reason and really, it just makes very little sense after having actually used Windows 8 for an extended period of time.
[QUOTE=Van-man;41130222]Easy money...[/QUOTE]
[URL]http://www.cvedetails.com/vulnerability-list/vendor_id-33/year-2013/Linux.html[/URL]
[URL]http://www.cvedetails.com/vendor/5632/Windows.html[/URL]
guess which one has more known vulnerabilities?
Sorry, you need to Log In to post a reply to this thread.