iLoungeiLounge
  • News
    • Apple
      • AirPods Pro
      • AirPlay
      • Apps
        • Apple Music
      • iCloud
      • iTunes
      • HealthKit
      • HomeKit
      • HomePod
      • iOS 13
      • Apple Pay
      • Apple TV
      • Siri
    • Rumors
    • Humor
    • Technology
      • CES
    • Daily Deals
    • Articles
    • Web Stories
  • iPhone
    • iPhone Accessories
  • iPad
  • iPod
    • iPod Accessories
  • Apple Watch
    • Apple Watch Accessories
  • Mac
    • MacBook Air
    • MacBook Pro
  • Reviews
    • App Reviews
  • How-to
    • Ask iLounge
Font ResizerAa
iLoungeiLounge
Font ResizerAa
Search
  • News
    • Apple
    • Rumors
    • Humor
    • Technology
    • Daily Deals
    • Articles
    • Web Stories
  • iPhone
    • iPhone Accessories
  • iPad
  • iPod
    • iPod Accessories
  • Apple Watch
    • Apple Watch Accessories
  • Mac
    • MacBook Air
    • MacBook Pro
  • Reviews
    • App Reviews
  • How-to
    • Ask iLounge
Follow US

News › Apple

Apple

Apple’s Bug Bounty program not paying enough to entice hackers

Last updated: May 16, 2021 12:54 pm UTC
By Jesse Hollington
Apple’s Bug Bounty program not paying enough to entice hackers

An Apple program that’s intended to entice hackers to reveal iOS security flaws in exchange for cash is failing to generate the necessary traction due to insufficient cash incentives, Motherboard reports. The program, announced by Apple’s security chief Ivan Krstic at last summer’s Black Hat conference, offers a cash bounty of up to $200,000 to hackers who discover and report vulnerabilities in the company’s products. However, almost a year later, the program appears to have struggled to take off, with many researchers reporting that they can sell exploits for considerably more money on the grey market than the mere $200,000 that Apple is willing to pay.
In fact, there has been no evidence that any hackers have yet claimed any bug bounties from Apple as part of the program, and with iPhone security as tight as it is, the difficulty in finding flaws in the first place makes them extremely valuable on the open market.


Apple’s Bug Bounty program not paying enough to entice hackers

Further, many researchers are also reluctant to report bugs because doing so may in some cases prevent them from continuing their research. Speaking anonymously to Motherboard due to the confidential nature of Apple’s bug bounty program, ten researchers in the program indicated that they have yet to report a bug to Apple, and in fact do not know of anyone who has. They generally all agreed, as one stated, that bugs are “too valuable to report to Apple.”

Apple gathered the group of prominent white-hat hackers to its Cupertino headquarters last September to pitch them on collaborating on the bug bounty program, giving them presentations from Apple security teams, taking them out to dinner, giving them a chance to chat and discuss their work, and meet with Craig Federighi, Apple’s senior vice president of software engineering.


Although the announcement of the program was made publicly, everything else about it has been kept under close wraps with Apple’s usual secrecy, and the program remains invite-only. While Apple offered bounties of up to $200,000, most researchers have pointed out that grey market companies have offered considerably higher payouts, ranging from $1.5 million from Zerodium for a collection of multiple bugs that can jailbreak the iPhone to $500,000 from Exodus Intelligence for similar iOS exploits. These grey market companies specialized in purchasing and compiling exploits which they claim to sell only to corporations to help them protect their own security and to law enforcement and intelligence agencies to help them hack into high-value targets for criminal investigations and counter-terrorrism.


Latest News
The Apple Watch Series 11 42mm GPS is $100 Off
The Apple Watch Series 11 42mm GPS is $100 Off
1 Min Read
Apple Launching A New Education Hub In India Teaching Robotics and Swift Programming
Apple Launching A New Education Hub In India Teaching Robotics and Swift Programming
1 Min Read
Women’s and Men’s Golf Added to Apple Sports
Women’s and Men’s Golf Added to Apple Sports
1 Min Read
Apple Adding Civilization VII and Other Games To Apple Arcade
Apple Adding Civilization VII and Other Games To Apple Arcade
1 Min Read
AirPods 4 ANC Is $59 Off
AirPods 4 ANC Is $59 Off
1 Min Read
Apple Using 2NM Process For Their M6 and A20 Chip
Apple Using 2NM Process For Their M6 and A20 Chip
1 Min Read
iPhone 18 Models Will Not Have a Big Redesign
iPhone 18 Models Will Not Have a Big Redesign
1 Min Read
Launch of MacBook Pro M5 Pro and M5 Max Models is Approaching
Launch of MacBook Pro M5 Pro and M5 Max Models is Approaching
1 Min Read
Get the iPad Mini 7 256GB Wi-Fi at $99 Off
Get the iPad Mini 7 256GB Wi-Fi at $99 Off
1 Min Read
Mozilla Now Allows Turning AI Features Off
Mozilla Now Allows Turning AI Features Off
1 Min Read
Barcelona Passeig de Gràcia Apple Store Temporarily Closing
Barcelona Passeig de Gràcia Apple Store Temporarily Closing
1 Min Read
Apple’s Plans to Enter the Smart Glasses Market is Changing the Industry
Apple’s Plans to Enter the Smart Glasses Market is Changing the Industry
1 Min Read

iLounge logo

iLounge is an independent resource for all things iPod, iPhone, iPad, and beyond. iPod, iPhone, iPad, iTunes, Apple TV, and the Apple logo are trademarks of Apple Inc.

This website is not affiliated with Apple Inc.
iLounge © 2001 - 2025. All Rights Reserved.
  • Contact Us
  • Submit News
  • About Us
  • Forums
  • Privacy Policy
  • Terms Of Use
Welcome Back!

Sign in to your account

Lost your password?