Advertisement
UK markets close in 8 hours 25 minutes
  • FTSE 100

    8,040.38
    0.00 (0.00%)
     
  • FTSE 250

    19,719.37
    0.00 (0.00%)
     
  • AIM

    754.69
    0.00 (0.00%)
     
  • GBP/EUR

    1.1656
    +0.0012 (+0.10%)
     
  • GBP/USD

    1.2496
    +0.0034 (+0.27%)
     
  • Bitcoin GBP

    51,447.94
    -1,983.84 (-3.71%)
     
  • CMC Crypto 200

    1,389.87
    +7.29 (+0.53%)
     
  • S&P 500

    5,071.63
    +1.08 (+0.02%)
     
  • DOW

    38,460.92
    -42.77 (-0.11%)
     
  • CRUDE OIL

    83.00
    +0.19 (+0.23%)
     
  • GOLD FUTURES

    2,333.80
    -4.60 (-0.20%)
     
  • NIKKEI 225

    37,628.48
    -831.60 (-2.16%)
     
  • HANG SENG

    17,266.29
    +65.02 (+0.38%)
     
  • DAX

    18,088.70
    -48.95 (-0.27%)
     
  • CAC 40

    8,091.86
    -13.92 (-0.17%)
     

Google offers bug bounty to clean up mobile apps

By Paresh Dave

SAN FRANCISCO (Reuters) - Google is offering security experts a bounty to identify Android app flaws as the Alphabet Inc (GOOGL.O) unit seeks to wipe out bugs from its Google Play store.

Each flaw will score at least $1,000 (760.23 pounds) under the programme announced on Thursday to back up automated checks that have failed to block malware and other problems that security experts say infect the 8-year-old app store far more than Apple Inc's (AAPL.O) rival App Store.

Google will partner with HackerOne, a bug bounty programme management website, to target a list of apps and flaws such as those that allow a hacker to redirect a user to a phishing website or infect a gadget with a virus.

ADVERTISEMENT

Software scans cannot match a person's ability to discover "a truly creative hack," Vineet Buch, director of product management for Google Play Apps and Games, said in an interview.

The Google Play Security Reward Programme effectively sponsors research into software created by other companies. Bug bounties by Microsoft Corp (MSFT.O), Apple and Alphabet have been awarded only for tracing flaws in their own software.

"We don't just care about our own apps, but rather the overall health of the ecosystem," Buch said. "It's like offering a reward for a missing person even if you don't know who the missing person is personally."

Google did not reveal the funding for its programme, but said it would start small.

Google's bug bounty programme for its Android mobile operating system, launched in June 2015, doled out $1.5 million for hundreds of vulnerability reports over its first two years.

(Reporting by Paresh Dave; Editing by Richard Chang)