Discussion

Google Offer Rewards For Hacking Chrome

Google are following the growing trend of rewarding hackers for finding bugs in their code by holding the Pwnium security challenge at next week’s CanSecWest conference in Vancouver.

On Monday Google announced that it would pay cash awards from a fund of $1 million to anyone who can hack the Chrome browser. Google has pledged to pay multiple awards in the value of $60,000, $40,000 and $20,000, depending on the severity of the exploits, up to $1 million. Successful hackers will also win a Chromebook.

Writing on its blog, Google said: “We require each set of exploit bugs to be reliable, fully functional end to end, disjoint, of critical impact, present in the latest versions and genuinely ’0-day,’ i.e. not known to us or previously shared with third parties.”

The rewards criteria are detailed as follows on the Chromium Blog:

$60,000 – “Full Chrome exploit”: Chrome / Win7 local OS user account persistence using only bugs in Chrome itself.

$40,000 – “Partial Chrome exploit”: Chrome / Win7 local OS user account persistence using at least one bug in Chrome itself, plus other bugs. For example, a WebKit bug combined with a Windows sandbox bug.

$20,000 – “Consolation reward, Flash / Windows / other”: Chrome / Win7 local OS user account persistence that does not use bugs in Chrome. For example, bugs in one or more of Flash, Windows or a driver. These exploits are not specific to Chrome and will be a threat to users of any web browser. Although not specifically Chrome’s issue, we’ve decided to offer consolation prizes because these findings still help us toward our mission of making the entire web safer.

This is not the first time a company has rewarded hackers for finding faults with their products – in the Summer of 2011 Facebook ran a similar programme, and even admitted that it acts as a recruitment process in some cases.

13 comments

  1. Only Secret Police / Death Squads Officers, with government and Parliament cover, protected from the STATE SECRET, can produce and deal with militias.

  2. Do you Need a hacker for general or specialized hacks, Our job is secured without trace. We are experienced in hacking into any educational institution data base to change your grade. We also specialize in hacking into email accounts(gmail, yahoo, aol etc.), We can also gain access to various social networks (such as facebook, twitter, instagram, badoo etc.), specialized and experienced hacking into clearing of criminal records, smartphone hack. contact us Matrixhackka007 @ gmail dot com

  3. Nice weblog right here! Also your website so much up very fast!
    What web host are you using? Can I am getting your associate link for your host?
    I wish my site loaded up as quickly as yours lol

  4. Its like you learn my mind! You appear to grasp a lot approximately this,
    such as you wrote the ebook in it or something.
    I think that you just could do with some % to force the message house a bit, however instead of that, this is magnificent blog.

    An excellent read. I will definitely be back.

  5. Inevitably Call of Duty Advanced Warfare download ghosts cheats is often confusing by the
    upper echelons connected with progressive service sector companies, whom I can
    say overlook about on account of legal restrictions. Even in case you return home tired from soccer practice, college or office you are going
    to not feel like gonna bed unless you play the Call of Duty Advanced Warfare download Modern Warfare 2 for a long time.
    Once again, like sticking an enemy with a Semtex, obtaining a nice clutch kill which has a Combat Axe
    is equally as an invigorating feeling. Following the discharge of eagerly awaited this activity, it turned out identified that some
    game enthusiasts ended up not happy while using copy they obtained obtained.

    The image quality and graphics are simply amazing and so may
    be the surround sound.

  6. I am curious to find out what blog system you
    have been using? I’m experiencing some minor
    security issues with my latest website and I’d like to find something more safe.
    Do you have any recommendations?

Comments are closed.