Microsoft adds new products to bug bounty eligibility list

Grounded Screenshot Ladybug
Grounded Screenshot Ladybug (Image credit: Obsidian Entertainment)

What you need to know

  • Microsoft has expanded the scope of its bug bounty program.
  • As of April 5, Exchange on-premise, SharePoint on-premises, and Skype for Business on-premises are all part of the program.
  • According to Microsoft, rewards span from anywhere between $500 and $30,000 USD.

In the past, Microsoft has made a show of just how much money it pays to bug hunters who spot fatal flaws in the company's various products and services. And now, even more people can get in on cashing a Redmond-issued check thanks to the home of Windows 11 expanding what products are eligible for bug bounties.

As of April 5, Exchange on-premise, SharePoint on-premises, and Skype for Business on-premises are all eligible to be inspected for pests with the dangling carrot of monetary reward to follow should you find something of interest to Microsoft. The aforementioned SharePoint and Exchange products have also had high-impact scenarios detailed meaning you'll now know which vulnerabilities and issues will fetch you the most amount of cash.

Submitting findings to Microsoft is not a guarantee of money. The company has its own rules of engagement you'll have to follow (should you not follow them, it's unlikely you'll be rewarded), and there's a long list of exceptions as to what is considered an eligible vulnerability. But, should you play by the book and spot something listed under the eligible categories, including remote code execution or XSS code injection vulnerabilities, you could score a five-digit haul.

With all that being said, sometimes the reward for doing the "right" thing isn't as monetarily beneficial as it is to just do whatever you want. Take, for example, a recent crypto heist wherein $300 million of wETH was stolen and the hacker responsible was offered a $10 million bug bounty in exchange for returning the funds. And don't forget the sixteen-year-old worth an estimated $14 million who made his fortune from toying with companies such as Microsoft. Still, criminal activity carries criminal consequences, so Microsoft's offer of money for staying on society's good side is, if nothing else, a risk-free proposition.

CATEGORIES
Robert Carnevale

Robert Carnevale is the News Editor for Windows Central. He's a big fan of Kinect (it lives on in his heart), Sonic the Hedgehog, and the legendary intersection of those two titans, Sonic Free Riders. He is the author of Cold War 2395. Have a useful tip? Send it to robert.carnevale@futurenet.com.

Read more
Rewards with Xbox header image
Microsoft debuts new 'Rewards with Xbox' program, boosting the ways you can earn Microsoft Rewards points via gaming
Xbox Game Pass display at Gamescom
Xbox Game Pass is going to be harder to pay for with Microsoft Rewards from April, it seems
An Xbox controller, laptop, and a phone showing the Microsoft Rewards screen
Many Microsoft Rewards accounts may have been unfairly suspended, but a fix is coming
Satya Nadella on stage at an event in London talking about Copilot
Microsoft leak exposes how management identifies "critical AI talent" among indispensable staffers for retention bonuses
The Microsoft logo on a smartphone and laptop arranged in Crockett, California, US, on Friday, Dec. 29, 2023.
"Would you say there is a reasonable balance between what you contribute to Microsoft and what you get in return?" Two-thirds of Microsoft employees say YES — as AI engineers get preferential compensation packages.
This is fine meme with the Microsoft logo on the dog surrounded by flames.
Microsoft News Roundup: Nightmare week of price hikes, rebrands, and remembering how Bill Gates lost $400 billion
Latest in Microsoft
Steve Ballmer and Bill Gates, former CEOs of Microsoft.
Bill Gates says Satya Nadella almost missed the cut for CEO of Microsoft — Even with Steve Ballmer's support
Microsoft Majorana 1 chip designed for quantum computing
Microsoft dismisses quantum computing skepticism: "There is a century-old scientific process established by the American Physical Society for resolving disputes"
The Microsoft logo on a smartphone and laptop arranged in Crockett, California, US, on Friday, Dec. 29, 2023.
"Would you say there is a reasonable balance between what you contribute to Microsoft and what you get in return?" Two-thirds of Microsoft employees say YES — as AI engineers get preferential compensation packages.
Like a Dragon Pirate Yakuza in Hawaii screenshot
Microsoft blocks (some) Windows 11 pirates while Lenovo steals the show at Mobile World Congress
Satya Nadella with Sam Altman at a conference
Salesforce CEO Marc Benioff's prediction about Microsoft and OpenAI's partnership may have just manifested — and it's not a pretty look for the ChatGPT maker
Age of Empires II with retail box
I ranked 7 of the best Microsoft games of all time to celebrate its 50th anniversary — disagree with these classics if you dare
Latest in News
Professor Sir Roger Penrose, physicist, mathematician and cosmologist
Nobel laureate claims "AI will not be conscious" and shouldn't be considered intelligent — Until it develops its own ideas
UGreen x Genshin Impact charging accessories: image shows magnetic wireless charger, power bank, GaN charger and USB-C cable
UGreen drops a stunning Genshin Impact collection of charging accessories AND it's all on sale
Lies of P boss
Grab these must-play games at killer deal prices during the CDKeys Spring Festival
In this photo illustration OpenAI ChatGPT icon is displayed on a mobile phone screen in Ankara, Turkiye on August 13, 2024.
OpenAI says an excessive dependency on ChatGPT can lead to loneliness and a "loss of confidence" in decision-making
Alienware Area-51 laptops (2025)
Dell revives Alienware Area-51 with powerful new gaming PCs
The First Berserker: Khazan
The First Berserker: Khazan review and Metacritic score roundup — this stylish Soulslike sounds like a must-play action RPG