Categories: SecurityWorkspace

Facebook Awards $5m As Bug Bounty Scheme Turns Five

Facebook said it has awarded more than $5 million (£4m) through its bug bounty programme since the scheme launched five years ago.

The programme, similar to those operated by Microsoft, Google, HP and others, is intended to encourage researchers to independently track down bugs before they are found by attackers.

WhatsApp added

Since its foundation in October of 2011 it has paid out around $1 million a year for bugs found in Facebook, as well as other company properties including Instagram, Oculus Rift and Free Basics. This year Facebook added WhatsApp to the programme.

After paying out $1.5 million in 2013 and $1.3 million in 2014, Facebook awarded $936,000 to researchers last year.

But the figures so far for this year suggest a higher total, with $611,741 paid to 149 researchers out of a total of 9,000 reports.

In all more than 900 researchers have been paid over the five-year period, with most coming from India, followed by the US and Mexico.

In March Facebook paid researcher Anand Prakash $15,000 for spotting a bug that could have allowed anyone to hijack any Facebook account via a missing password security feature on a beta-testing site.

‘Real risk’

Facebook said it has added information on how specific bounties were calculated to its notifications, saying it calculates the rate based on “real (rather than perceived) risk”.

The programme has expanded this year to include Bitcoin payments and payments have been automated to speed up the process, according to Joey Tyson, a security engineer on the Facebook Bug Bounty team, said in a blog post.

The programme has been part of a wider industry trend and Tyson said Facebook has had broad support from IT security professionals.

“In fact, we discovered many of the people now on our team through the community of researchers submitting reports,” he wrote.

This year Apple and security firm Kaspersky Lab launched bug bounty schemes, as did porn site Pornhub.

Are you a security pro? Try our quiz!

Matthew Broersma

Matt Broersma is a long standing tech freelance, who has worked for Ziff-Davis, ZDnet and other leading publications

Recent Posts

Tesla Shares Surge On China Advanced Self-Driving Push

Tesla makes key advances toward advanced self-driving rollout in China as chief Elon Musk meets…

4 hours ago

UK Law Aims To Boost Security For ‘Smart’ Devices

New UK rules bring in basic security requirements for millions of internet-connected devices, aiming to…

6 hours ago

Alphabet Value Surges Over $2tn On Dividend Plan

Google parent Alphabet sees market capitalisation surge over $2tn on plan to over first-ever cash…

12 hours ago

Google Asks US Court To Dismiss Federal Adtech Case

Google asks Virginia federal court to dismiss case brought by US Justice Department and eight…

12 hours ago

Snap Sees Surge In Users, Ad Revenues

Snapchat parent Snap reports user growth, revenues in spite of tough competition, in what may…

13 hours ago

Shein Subject To Most Stringent EU Digital Rules

Quick-growing fast-fashion company Shein must comply with most stringent level of EU digital rules after…

13 hours ago