- Microsoft has raised ante in his bug bounty program
- Payouts can now be as high as $ 30,000
- In some cases the payment may even be higher
Microsoft is revealed that it is now prepared to pay up to $ 30,000 in Bounty to people who discover AI vulnerable in its Dynamics 365 and Power Platinum.
The company recently updated its Bounty program with the new information.
“We invite individuals or organizations to identify security vulnerability in targeted dynamics 365 and power platform applications and share them with our team. Qualified submissions are entitled to Bounty Rewards of $ 500 to $ 30,000 USD,” the company said.
Other increase
Microsoft is willing to replace for inference manipulation errors, model manipulation and information on inferential information. The vulnerabilities must be either important or critical in their severity.
“In order to be eligible for the AI Bounty Awards, such vulnerability must be critical or important difficulty as defined in Microsoft vulnerability classification for AI systems and reproducible on a product or service stated in scope services and products.”
Dynamics 365 is a cloud-based package of integrated business applications that combine CRM and ERP capabilities, while Power Platform is a low-code development suite that allows users to analyze data, build apps, automate workflows and create chatbots using Power BI, Power Apps, Power Automate and Power Automate Automate.
If $ 30,000 doesn’t seem like a lot of money for such vulnerabilities, it might be worth mentioning that Microsoft is also willing to pay more, depending on the impact and severity of the reported vulnerabilities as well as the quality of the submission.
This is the second time in 2025 Microsoft has increased Bounty Rewards.
In mid-February 2025, the company announced that it was ‘improving security and incentive in innovation’ by updating its Copilot (AI) Bug Bounty program and raising the reward to $ 5,000.
Bug Bounties are used by software companies in collaboration with security researchers to eradicate vulnerabilities that could otherwise be exploited by threat players – and Microsoft even runs his own black hat as an event with up to $ 4 million in potential awards for Sky and AI errors.
Via Bleeping computer