Tag

#bug bounty

13 stories taggedbug bounty.

Close-up top-down view of a sleek aluminum laptop keyboard and trackpad on a matte desk surface, soft cool studio lighting casting subtle shadows, a faint abstr
Vulnerabilities

Chrome 152 Patches 327 Security Flaws, Most Found by Google's Own AI

Google's latest browser update is its biggest in recent memory, fixing hundreds of vulnerabilities at once, with artificial intelligence doing the heavy lifting on discovery.

3 min read
Full frame overhead view of a developer's dark wooden desk lit by warm lamp light, a large monitor showing colourful lines of source code with a single PNG thum
AI Security

A human and an AI teamed up to find hundreds of hackable websites. The results rewrote the rulebook.

A PortSwigger researcher built an AI system called HTTP Terminator, guided it step by step, and together they uncovered a brand-new class of web vulnerability affecting banks and government systems.

5 min read
Full-frame photoreal editorial shot of a dimly lit server rack in a small unmarked room, one door left ajar with light spilling into a corridor, cables slightly
Threat Intelligence

AI-Generated Junk Is Clogging Apple's Bug Bounty, Ports Got Hit, and Wall Street Had a Bad Week Online

Three quieter stories from the past week: why Apple's security researchers are drowning in AI noise, how North Carolina ports came under digital attack, and a phishing email that opened a door into Wall Street.

4 min read
Full-frame 16:9 photoreal editorial image of a dark server room with a single illuminated monitor displaying abstract blue shield iconography under a red alert
Vulnerabilities

Microsoft Paid Out $20 Million in Bug Bounty Rewards This Year

More than 560 security researchers from 64 countries were paid to find and report software flaws. Not everyone is happy about how the company handled the work.

3 min read
Photoreal news-editorial photograph, 16:9 framing, full-frame edge-to-edge composition
Cloud Security

Two Cloud Giants, Two Flaws, Zero Bug Bounties: The 'Confused Deputy' Problem That Won't Go Away

A security researcher found ways to silently hijack administrator control over both Microsoft Azure and Google Cloud infrastructure. Neither company paid a reward. One quietly fixed its flaw without saying so.

5 min read
A close-up of a laptop screen displaying GitHub's website, with code in the background, emphasizing a focus on software development
Policy & Regulation

GitHub Slashes Public Bug Bounty Payouts, Reserves Top Rewards for VIPs

Starting July 27, 2026, GitHub will reduce public bug bounty payments, with top prizes reserved for an exclusive group.

3 min read
A close-up photorealistic view of a fractured dark blue computer chip on a black reflective surface, with hairline cracks glowing faint red from underneath, sha
Vulnerabilities

Meta Paid a Researcher $78,000 to Find a Flaw That Exposed Support Chats and Personal Data

An independent security researcher discovered a hole in Meta's internal support system that could have let anyone read private conversations between users and Meta support staff. Meta patched it quietly. Then came the cheque.

3 min read
AI scanning for software vulnerabilities
AI Security

Ivanti Used AI to Find a Perfect-Score Security Flaw in Its Own Software. Here Is What That Means.

The company quietly ran an AI project starting in March and says the results are already surprising even its own security chief.

3 min read
Full-frame overhead photoreal shot of a cluttered security researcher's desk at night, glowing monitor showing abstract code and highlighted lines, a paper note
AI Security

AI Finds Bugs Fast. Proving They're Real Still Takes a Human.

AI tools can scan code and spit out vulnerabilities at speed, but a finding is worthless until someone shows it actually works. Here's why that gap matters for anyone worried about software security.

3 min read
Vulnerabilities

ServiceNow's Unauthenticated API Endpoint Left Tenant Data Exposed for Months

An API resource shipped with authentication disabled by default. Now enterprises are asking whether the 'security researcher' explanation fully covers what got accessed.

2 min read
AI Security

Anthropic's Mythos Shows AI Can Find Bugs Faster Than Humans. The Bug Bounty Model May Not Survive It.

Machine-speed vulnerability discovery is no longer theoretical. The question now is whether the bounty ecosystem — and the offensive security teams inside it — are priced and structured for a world where finding flaws is the easy part.

2 min read
Vulnerabilities

Microsoft Threatened a Bug Hunter With Legal Action. Now It's Walking That Back.

A researcher dropped unpatched zero-days with working exploits. Microsoft's first response was to reach for the lawyers. That went poorly.

2 min read
Vulnerabilities

Microsoft and Researcher Nightmare Eclipse Trade Public Accusations Over Disclosure Gone Wrong

A researcher who published unpatched vulnerability details says Microsoft deleted his accounts and ruined his life. Microsoft says his drops put proof-of-concept code in criminals' hands. Neither is entirely wrong.

3 min read
© 2026 Threat Vectr