This is the second $100,000 reward offered by the company
Security researcher Yu Yang of NSFOCUS Security Labs was rewarded with $100,000 (€73,000) for finding security vulnerabilities in the latest version of Windows.
According to Threatpost, Microsoft did not publish details about the security vulnerabilities that Yu Yang identified in its software, but confirmed that he is the second researcher to receive the largest reward ever offered under the bug bounty program.
Last October, Microsoft rewarded researcher James Forshaw with $100,000 for discovering a critical vulnerability that allowed the OS to be bypassed and remote code executed. This time, researcher Yu Yang managed to identify three new attack variants that rely on known security bypass techniques.
“This reward reflects the fact that we learned something new that will help us build a stronger defense,” a company spokesperson said.
Additionally, Microsoft 's chief security officer , Katie Moussouris, posted an announcement regarding the discovery of the vulnerabilities and the reward for the researcher, via her personal Twitter account:
https://twitter.com/k8em0/status/434388391702982656.

