Microsoft Paid Out $63 Million Since Launch of First Bug Bounty Program 10 Years Ago
Briefly

"The data from the programs is a critical part of arming product and security teams across the company to deliver broader security improvements and mitigations beyond one-off bug fixes," Microsoft says.
"Today, incentives and partnership are baked into our company's vulnerability disclosure program. Every report that is triaged, assessed, and fixed is reviewed internally to assess the vendor impact, customer impact, and develop the right incentives for responders," Microsoft states.
Read at SecurityWeek
[
add
]
[
|
|
]