Popular Posts
-
2017-08-22 Sports News of Tue, 22 Aug 20170 Tamale ready to host 2017 MTN FA Cup final - RFA Chairman File photo Mr. Abdoula...
-
US 01:36 15.04.2016Get short URL Marco Marsala seemingly lost all traces of his company, including the websites that he works with, b...
-
Special Halloween Promo from SEMJar: Reliable and Affordable PBN Hosting. Available on October 28-31SEMJar, a SEO company renowned for its affordable services, invites every business owner to celebrate Halloween by getting reliable PBN ...
-
wedmfm.com is a wordpress.ORG software install on paid hosting, hosted by Bluehost, not by wordpress.COM. Contact your web host. You are...
-
CHICAGO, June 20, 2016 /PRNewswire/ -- Paper Source, a Chicago-based specialty retailer and web store, will be hosting a warehouse sale o...
-
WebSite X5 – Evolution is a powerful application which makes it easy to create top-quality responsive websites, even if you've no desi...
-
July 17, 2017 by Sajal Chakraborty Learn about Amazon S3 (Simple Storage Service), creating a bucket in AWS S3 and then hosting stat...
-
The Golden Globes were a strong night for "La La Land" and FX's "Atlanta," but first-time host Jim...
-
LANSING, Mich., Aug. 20, 2015 /PRNewswire/ -- Liquid Web, Inc., (www.liquidweb.com) a leading provider of professional web hosting and man...
-
SANTA FE, NM --(Marketwired - March 26, 2016) - CrowdReviews.com, a provider of web hosting reviews and ratings, has released a statement...
Blog Archive
- December (19)
- November (25)
- October (28)
- September (26)
- August (28)
- July (31)
- June (26)
- May (27)
- April (28)
- March (30)
- February (28)
- January (31)
- December (31)
- November (30)
- October (31)
- September (29)
- August (44)
- July (56)
- June (53)
- May (54)
- April (48)
- March (55)
- February (44)
- January (3)
- December (5)
- November (5)
- October (26)
- September (25)
- August (29)
- July (26)
- June (18)
- September (1)
About Me
Total Pageviews
Domain.com Web Hosting
Think you've got the hacking chops to breach a flagship Android phone? Google's willing to pay you to prove it. On Wednesday, the Cupertino, California-based company announced Project Zero, a contest that asks enterprising hackers to demonstrate flaws in the company's smartphone operating system in exchange for cold, hard cash.
"Despite the existence of vulnerability rewards programs at Google and other companies, many unique, high-quality security bugs have been discovered as a result of hacking contests," Google's Natalie Silvanovich wrote in a blog post. "The goal of this contest is to find a vulnerability or bug chain that achieves remote code execution on multiple Android devices knowing only the devices' phone number and email address."
Related: Top 5 Android security apps: Do they protect you?
Here's how it works: Hackers who uncover a serious security bug, exploit, or flaw in Android are encouraged to publish them on the Android issue tracker, a public forum devoted to documenting Android issues from visual glitches to wonky Wi-Fi. Posts will have to be detailed — contest participants must share a "full description" of how the exploit works with the expectation that, if verified independently, they'll be published on a public Google blog. They'll have to work on Google's branded Nexus devices, the Huawei-made Nexus 6P and LG's Nexus 5X, plus any devices running an up-to-date build of Android 7.0 Nougat. And the more, the better — reported bugs can contribute to a larger Project Zero submission at any time during the contest's six-month period, Google said.
The prizes ain't half bad. The winner of the contest takes home $200,000, while the runner-up will net $100,000. And an undisclosed number of entries will be receive a consolatory prize of $50,000. And there's no way to lose: Google said that bugs that aren't submitted during the entry period may be considered for other contests like Android Security Rewards, as well as future, as-yet-unannounced promotions.
Project Zero's impetus, Google said, was discovering bugs that would otherwise go unreported. Another motivation? Developing fixes quickly, and in some cases pre-emptively. "Our main motivation is to gain information about how these bugs and exploits work," Silvanovich wrote." There are often rumors of remote Android exploits, but it's fairly rare to see one in action. We're hoping this contest will improve the public body of knowledge on these types of exploits."
Related: Google fixes critical security flaw affecting over 900 million Android devices
More broadly, Google is hoping to dissuade unscrupulous types who otherwise might be inclined to sell exploits to the highest bidder. McAfee's Center for Strategic and International Studies estimated that the cost of cybercrime is somewhere around $160 billion a year. And as use of mobile devices has climbed to unprecedented levels, the price of so-called zero-day bugs — exploits deriving from a previously unknown vulnerability — on internet black markets has mirrored that growth. A zero-day flaw in the latest version of iOS, for example, can sell for as much as $250,000, according to Wired, and some foreign governments have reportedly paid nearly half a million dollars for comparable bugs.
"We're hoping to get dangerous bugs fixed so they don't impact users," Silvanovich said. "We're [hoping] that this contest will give us another data point on the availability of these types of exploits."
Project Zero began Wednesday.
Source: Domain.com Web Hosting
0 comments:
Post a Comment