Mozilla Starts Bug Bounty Program
AnamanFan writes "The Mozilla Foundation announced the Mozilla Security Bug Bounty Program, an initiative that rewards users who identify and report security vulnerabilities in the open source project's software. Sponsered by Linspire, Inc and Mark Shuttleworth, the program will give $500 to users who report a significant bug in Mozilla software. Users who identify security bugs in Mozilla software are encouraged to go to the Security Projects Page for more information."
if microsoft did this they go bankrupt in a week
obligatory jab at microsoft
30% Troll, 50% Underrated, 10% Interesting
Score:5, Troll
mozilla.org offers a $500 bounty for discovering "critical" security holes, while Mircosoft offers a $250,000 bounty for catching virus authors.
A few days ago you might remember someone who created an article on the vunribilities of a fake browser being made in a empty window using XUL...
:)
Guess he's 500 dolars down for blowing the whistle a week early
Microsoft puts bounty $5,000 on head of anyone uncovering IE security flaws.
Cause we could go ahead and program ourselves a couple new minivans this evening ;) (yes I know Wally from Dilbert said it before I did, but this just seemed like the perfect time to use it)
If you've ever won any money at a charity fund-raiser, you know the deal:
1) go up and accept your check
2) nod and smile alot
3) donate your check back to the charity
Is there a prayer people motivated by this bounty have the same modicum of class?
Until fairly recently, Netscape used to have a similar bug bounty program but they offered $1000. So it's really just a continuation of the legacy.
My perception of the success Mozilla/Firefox has beside a breadth of features is its security. I wonder if this bounty is more preemptive in nature to help ensure the positive security piece-of-mind Mozilla/Firefox has rather than the type of bounty Tex has.
If Mozilla/Firefox where to lose the mainstream perception of a more secure browser why would users of IE switch?
1. Submit buggy software to Mozilla project.
2. "Find" said bug.
3. Profit!
What if Slashdot gave $503 for every 503 Service Unavailable?
Malda and company would be living off ramen and store-brand Mountain Dew in less than a week.
Cretin - a powerful and flexible CD reencoder
True, debugging is not on curricula. But you will almost certainly fail out of school if you don't start picking up debugging basics immediately after you write your first line of code (bug).
I've found a serious flaw in Mozilla. It allows itself to run on Windows, an inherintly insecure platform.
Well.. maybe. Or Maybe not. But Definitely not sort of.
Dear pvt medic,
Thank-you for identifying this IE exploit! The FBI prize patrol should be by shortly with your reward!
Sincerely,
Bill Gates