Apple increases bounties for spyware exploit chains

Hopefully this should lead to more exploits being reported to Apple instead of being sold to spyware companies as they’re now offering similar payouts to companies such as crowdfense.

4 Likes

I thought this was the most interesting

… wireless proximity exploits over any radio with up to $1 million.

To my knowledge this hasn’t been a widely exploited attack vector in the past but with various OSes implementing USB security features it’ll probably become more common.

1 Like

Also now that they make their own wireless chips they are actually now able to fix those vulnerabilities themselves.

2 Likes

Absolutely. They brag a little about the supposed security of their new wireless chips in the article as well.

Imagine retiring early because you found an exploit accidentally :sweat_smile:

To be honest, I think this is a way for them to market themselves a little. They must be so confident in themselves to offer such high bounties.

1 Like

Does apple actually give the payouts as they advertise?

Their bounty program generally has a poor reputation, but this was mostly the case in ~2021. I think they improved since then