Share this article

Latest news

With KB5043178 to Release Preview Channel, Microsoft advises Windows 11 users to plug in when the battery is low

Copilot in Outlook will generate personalized themes for you to customize the app

Microsoft will raise the price of its 365 Suite to include AI capabilities

Death Stranding Director’s Cut is now Xbox X|S at a huge discount

Outlook will let users create custom account icons so they can tell their accounts apart easier

Microsoft widens its Bug Bounty program for Edge, get paid to find and report browser bugs

2 min. read

Published onSeptember 29, 2016

published onSeptember 29, 2016

Share this article

Read our disclosure page to find out how can you help Windows Report sustain the editorial teamRead more

Microsoft has been busy expanding its Bug Bounty program this year. So far the company has added rewards for finding exploits in.Net Core, ASP .Net Core, andOneDrive. Last month, Microsoft also added Edge to the Bug Bounty program. Specifically, Microsoft started offering rewards to anyone who found Remote Code Execution vulnerabilities in Edge on Windows Insider Preview builds.

According to a report fromThe Register, Microsoft is now expanding their Bug Bounty program for Edge beyond just Remote Code Execution. The program will now also payout up to $6,000 for proof of a flaw in Edge that violates W3C standards. W3C is the World Wide Web Consortium is an international standards organization for the web which has produced industry-leading standards that define the Open Web Platform. Microsoft is looking for violations of W3C standards that compromise privacy or integrity of user date. This includes violation of SoP and Referrer spoofs.

Violations of XSS will only result in up to $1,500 rewards. Finding a Remote Code Execution bug is still the highest payout, of up to $15,000. The Edge bug bounty program only runs until May 15th, 2017. And it has to be found on Windows 10 Insider Preview builds from the slow ring.

There are also a few standards for what makes up an eligible submission. The include:

If you think you might have found a bug in Edge related to RCE or W3C violations, head over toMicrosoft’s TechNetsite to submit to the Microsoft Edge Web Platform on Windows Insider Preview Bug Bounty Program.

Radu Tyrsina

Radu Tyrsina has been a Windows fan ever since he got his first PC, a Pentium III (a monster at that time).

For most of the kids of his age, the Internet was an amazing way to play and communicate with others, but he was deeply impressed by the flow of information and how easily you can find anything on the web.

Prior to founding Windows Report, this particular curiosity about digital content enabled him to grow a number of sites that helped hundreds of millions reach faster the answer they’re looking for.

User forum

0 messages

Sort by:LatestOldestMost Votes

Comment*

Name*

Email*

Commenting as.Not you?

Save information for future comments

Comment

Δ

Radu Tyrsina