HomeNewsTechnologyGoogle to offer up to Rs 25 lakh in new bug bounty program for open-source projects

Google to offer up to Rs 25 lakh in new bug bounty program for open-source projects

Google will expand the list to include more open-source projects after the initial rollout

September 01, 2022 / 15:37 IST
Story continues below Advertisement
(Image Courtesy: AP)
(Image Courtesy: AP)

Google has announced a new bug bounty program that offers between $100 and $31,337 (around Rs 7,954 and Rs 25 lakh) for finding security flaws in the tech giant's open-source projects.

The program is called the Open Source Software Vulnerability Rewards Program (OSS VRP) and major open-source projects from Google's stable (Angular, Fuchsia and Golang) are included in it.

Story continues below Advertisement

Other projects hosted publicly on platforms such as GitHub are covered as well. Google detailed the criteria for bug hunters and these include supply chain vulnerabilities, design issues that lead to attacks and other sensitive issues that may lead to credential leaks or insecure platforms.

The top rewards are reserved for more sensitive projects like Bazel, Angular or Protocol Buffers.