Home > News list > Mobile Internet >> Mobile Internet

Samsung Offers Massive Bounties: Security Experts Can Earn Up to $1 Million

Mobile Internet 2024-08-08 10:12:16 Source:

Samsung Offers Massive Bounties: Security Experts Can Earn Up to $1 MillionTo further enhance the security of its Galaxy devices, Samsung has recently launched the new "Important Scenario Vulnerability Program" (ISVP) and announced a maximum bounty of up to $1 million. This program aims to encourage security researchers to actively discover and report potential security vulnerabilities in Galaxy devices, thereby improving overall device security and user privacy protection

Samsung Offers Massive Bounties: Security Experts Can Earn Up to $1 Million

To further enhance the security of its Galaxy devices, Samsung has recently launched the new "Important Scenario Vulnerability Program" (ISVP) and announced a maximum bounty of up to $1 million. This program aims to encourage security researchers to actively discover and report potential security vulnerabilities in Galaxy devices, thereby improving overall device security and user privacy protection.

ISVP stands for "Important Scenario Vulnerability Program" and primarily focuses on the following five important scenario vulnerabilities:

  • Arbitrary Code Execution: Attackers can execute arbitrary code on the device, enabling them to control the device and steal data.
  • Device Unlock: Attackers can bypass the device unlock mechanism to gain control of the device.
  • Data Extraction: Attackers can extract sensitive data from the device, such as personal information, bank accounts, etc.
  • Arbitrary Application Installation: Attackers can install untrusted applications on the device, enabling them to steal data or perform malicious operations.
  • Bypass Device Protection: Attackers can bypass device security mechanisms, such as fingerprint recognition, facial recognition, etc., to gain control of the device.

Samsung offers substantial rewards for vulnerabilities in different scenarios, with a maximum of $1 million. Specific reward amounts are as follows:

 Samsung Offers Massive Bounties: Security Experts Can Earn Up to $1 Million

KnoxVault

  • Local Arbitrary Execution: $300,000
  • Remote Code Execution: $1,000,000

TEEGRISOS

  • Local Arbitrary Code Execution: $200,000
  • Remote Code Execution: $400,000

RichOS

  • Local Arbitrary Code Execution: $150,000

 Samsung Offers Massive Bounties: Security Experts Can Earn Up to $1 Million

  • Remote Code Execution: $300,000

Device Unlock

  • Unlock with Full User Data Extraction: $400,000
  • Unlock after First Unlock: $200,000

Application Installation

  • Remote Arbitrary Application Installation:
  • Installation from unofficial markets or attacker servers: $100,000
  • Installation from GalaxyStore: $60,000

 Samsung Offers Massive Bounties: Security Experts Can Earn Up to $1 Million

  • Local Arbitrary Installation:
  • Installation from unofficial markets or attacker servers: $50,000
  • Installation from GalaxyStore: $30,000

Samsung stated that since its inception in 2017, the program has accumulated over $4.9 million in vulnerability bounty awards. In 2023, Samsung paid out $827,925 in rewards to 113 security researchers, with the highest payout reaching $120,000.

The launch of Samsung's ISVP demonstrates its commitment to security, while also providing security researchers an opportunity to showcase their skills and earn significant rewards. The successful implementation of this program will contribute to enhancing the security and user experience of Galaxy devices, further solidifying Samsung's security leadership in the mobile device industry.

Samsung aims to establish a close partnership with security researchers through ISVP to jointly build a more secure and reliable mobile ecosystem. With the continued development of ISVP, Samsung is confident that it can better address the increasingly complex cybersecurity threats and provide users with more secure and reliable mobile devices.

Tag: Samsung Offers Massive Bounties Security Experts Can Earn Up


Disclaimer: The content of this article is sourced from the internet. The copyright of the text, images, and other materials belongs to the original author. The platform reprints the materials for the purpose of conveying more information. The content of the article is for reference and learning only, and should not be used for commercial purposes. If it infringes on your legitimate rights and interests, please contact us promptly and we will handle it as soon as possible! We respect copyright and are committed to protecting it. Thank you for sharing.

AdminSo

http://www.adminso.com

Copyright @ 2007~2024 All Rights Reserved.

Powered By AdminSo

Open your phone and scan the QR code on it to open the mobile version


Scan WeChat QR code

Follow us for more hot news

AdminSo Technical Support