We at the moment are trying to deepen this relationship and speed up the trail towards constructing safer units. Beginning right now, we’ll introduce a brand new vulnerability rewards construction for submissions impacting sensible dwelling (Google Nest) and wearables (Fitbit) units by way of our Bug Hunters platform.
Bonus!
We’re paying greater rewards retroactively for eligible Google Nest and Fitbit units studies submitted in 2021. And, beginning right now, for the subsequent six months, will double the reward quantity for all new eligible studies relevant to Google Nest & Fitbit units in scope.
We’ll proceed to take studies on our net purposes, providers, and cellular apps at their present reward ranges. Please hold these coming!
An enhanced rewards program
Constructing on our earlier packages to enhance units’ embedded safety posture, we’re bringing all our first-party units underneath a single program, beginning with Google Nest, Fitbit, and Pixel.
This program extends the Android Safety Reward Program, making it simpler for researchers to submit a vulnerability in first-party units and bettering consistency throughout our severity assignments. Consult with the Android and Google Gadgets Safety Reward Program for extra particulars.
What pursuits us?
We encourage researchers to report firmware, system software program, and {hardware} vulnerabilities. Our extensive variety of platforms gives researchers with a smorgasbord of environments to discover.
What’s subsequent?
We shall be on the Hardwear.io convention this yr! The VRP workforce is trying ahead to assembly our safety friends in particular person. We’ll be speaking concerning the structure of a few our units, hoping to offer safety researchers a head begin to find vulnerabilities. We’ll have loads of swag, too!
We’ll proceed to reinforce the researchers’ expertise and participation. We intend so as to add coaching documentations and goal areas that curiosity us as we develop this system.
An enormous due to Sarah Jacobus, Adam Bacchus, Ankur Chakraborty, Eduardo’ Vela” <Nava>, Jay Cox, and Nic Watson.