Study: Apple pays 5x more per exposed vulnerability than Samsung

A BUG bounty program is a reward offered for discovering and reporting a bug in a software product. According to

Facebook
LinkedIn
X

A BUG bounty program is a reward offered for discovering and reporting a bug in a software product.

According to the data compiled by the Atlas VPN team, Apple pays five times more for exposing a vulnerability than Samsung. Exploits that allow hackers to perform network attacks without user interaction are usually worth the most in bug bounty.

Apple pays from $100K to $1 million to researchers who find exploits in their devices. Our report from earlier in the year found that vulnerabilities in Apple products surged by over 450%.

Huawei’s bug bounty program offers payouts from $200 to $223K for found vulnerabilities in their devices. The company gives out rewards for exploits found in their AppGallery, cloud services, or the phones themselves.

Samsung’s bug bounty program rewards researchers between $200 and $200K for qualified exploits. The amount is determined by the severity level, vulnerability report quality, affected scope, and the difficulty of attacks.

Xiaomi bounty payments range from $800 to $13K for found vulnerabilities. OnePlus and Oppo, both owned by BBK Electronics, bug bounty programs can reward researchers with up to $7K and $4K, respectively.

Related Stories from Silicon Scotland

Google and YouTube now control 25% of the world’s web traffic
Scottish engineers’ vision is making wind turbines more profitable and efficient
Scotland’s Critical Technologies Supercluster sets £10bn goal at Holyrood reception
Tuning out the threat? – public unaware of Freeview’s fate
Machine identities now outnumber humans
NHS Scotland leads UK in digital health with rapid expansion of Phio tech

Other Stories from Silicon Scotland