HomeSecurityMicrosoft expands bug bounty program for Copilot (AI)

Microsoft expands bug bounty program for Copilot (AI)

Microsoft announced that it is expanding the bug bounty program for Microsoft Copilot (AI) and increasing the payouts for moderate severity vulnerabilities.

bug bounty Copilot Microsoft

With the growing adoption of AI technology, the company has decided to offer more security to its Copilot consumer products to protect them from potential cyberattacks. Microsoft has added a wider range of Copilot consumer products and services to the scope of the bug bounty program, including Copilot for Telegram, Copilot for WhatsApp, copilot.microsoft.com, and copilot.ai.

See also: Microsoft launches Copilot Chat to businesses

Additionally, rewards for reporting moderate severity vulnerabilities now reach up to $5,000, giving security researchers greater incentives to carefully analyze products.

“This expansion provides researchers with more opportunities to contribute to the security of the Copilot ecosystem and helps us identify and mitigate potential vulnerabilities across a broader range of platforms,” said of the changes it brings.

The Microsoft Copilot bug bounty program also rewards approved submissions for vulnerabilities found in Copilot (Pro) AI experiences in Microsoft Edge (Windows), the Microsoft Copilot app (iOS and Android), the Windows operating system, and Bing generative search hosted on bing.com in the browser.

See also: Microsoft 365 Copilot brings enhanced AI capabilities

Bounty rewards range from $250 for low-severity vulnerabilities like Cross-Site Scripting (XSS), Cross-Site Request Forgery (CSRF), Web Security Misconfiguration, Cross Origin Access, and Improper Input Validation, up to $30,000 for critical vulnerabilities.

Bug Bounty Programs

Bug Bounty programs offer companies the opportunity to identify and fix security vulnerabilities in their systems before they are exploited by malicious users. Prompt reporting leads to bug fixes and strengthens the company's protection from potential cybersecurity.

Microsoft expands bug bounty program for Copilot (AI)
Microsoft expands bug bounty program for Copilot (AI)

Additionally, bug bounty programs allow companies to benefit from the experience and knowledge of a wider network of cybersecurity experts. Researchers from all over the world participate in such programs.

See also: Microsoft's new Copilot will read you the news

Microsoft and other companies are increasingly placing importance on bug bounties, as they also improve their image in the eyes of customers and investors. They show that the company takes cybersecurity and does everything possible to protect its products.

Finally, Bug Bounty programs can be cost-effective, as companies only pay for actual findings and not for the time or effort spent searching for vulnerabilities.

Source: www.bleepingcomputer.com

Selecting the team

🔒 Protect your privacy with Proton VPN

Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.

  • ✔ No-logs, based in Switzerland (except 14-Eyes)
  • ✔ NetShield: blocks ads, trackers & malicious domains
  • ✔ Covers all devices — free version available
Try Proton VPN for free — 30-day money-back guarantee →

The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

Digital Fortress
Digital Fortresshttps://www.secnews.gr
Pursue Your Dreams & Live!

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS