• $100 – $15,000 per vulnerability
  • Safe harbor

Clarification on bonuses for Bitdefender

Hello Researchers!

We are very excited to see the incoming submissions from all of you. Unfortunately, there was a miscommunication around our bonus that we are running March 13 - March 30.

The bonus is only eligible for submissions that are at the top range for P1 and P2s.

Please see the updated range below:

P1: ($3100-$5000) with $5000 rewards eligible for a 50% bonus ($7500)

P2 ($1000-$3000) with $3000 rewards eligible for a 50% bonus ($4500)

Examples of high-end P1's are:

Receiving a Remote Code Execution (RCE) on a server that doesn't contain any sensitive data and has no way to pivot would qualify as the lowest P1 reward.

However, getting shell access on a server that holds PII data and communicates with other sensitive machines that shouldn’t otherwise be accessible would definitely qualify for the highest possible reward.

Thank you again for your submissions, we look forward to hearing from you!

Happy Hunting!