Apple is Update This is the protection grace program this November for the highest award in the industry. It has “the absorbing discipline that can achieve a similar goal like the sophisticated tenant spyware attacks” and it does not require any user interaction. However, the maximum potential payment can exceed 5 million dollars to discover more critical weaknesses, such as beta software and lockdown mode bugs in bypasses. Lockdown Mode is an upgraded security architecture in Safari browser.
Also, the company is awarding the discovery of exploitation chain with one-click user interaction up to $ 1 million instead of $ 250,000. Devices need physical intimacy of the attack can now go more than $ 250,000 to $ 1 million, while the maximum reward for physical access to locked devices has doubled $ 500,000. To the end, “Researchers who display the webcontant code execution chain with Sandbox Escape can get up to $ 300,000.” The VP Evan Cresty of Apple for Protection Engineering and Architecture says Wired The company has given more than $ 35 million award to over 800 security researchers since the program was launched and expanded in the last few years. Obviously, the top-dolar repayment is very rare, but Apple has paid multiple $ 500,000.
The company announced in its announcement that it was the only system-level iOS attacks that came from the hired spyware, which the Histor is tihassically involved with state actors and is commonly used to target specific persons. It says that its new protection features such as lockdown mode and memory integrity, which fight against the weaknesses of memory corruption, can make it more difficult to stop the tenant attacks. However, bad actors will continue to develop their strategies, and Apple hopes to update its grace program with big payment “can encourage high advanced research [its] Most critical attack surfaces despite the extended difficulty. “
