Google will reward you for finding errors and data abuse in the Play Store
Today, Google has announced that it will increase the reach of its Play Store Security Rewards Program (GPSRP), and will now include error localization and data abuse.
It is no secret to anyone that the Play Store has been contaminated by applications that incur many security flaws, such as those that take data from our equipment without our authorization, among others.
For almost 10 years, Google has devised a new rewards system that, as its name announces, will pay users to find faults within the Play Store applications.
So far, the source points out that this GPSRP program has delivered more than USD $ 265,000 in rewards benefiting all those involved, because at the time when a security researcher identifies any vulnerability to Google, it is sent to the developer of The affected application.
But, that does not end there, because Google uses this vulnerability data to create automatic controls that are responsible for scanning all Google Play applications for matches.
The source highlights that “DDPRP is a new error rewards program to identify and mitigate data abuse problems ” within Android applications, OAuth projects and Chrome extensions.
The objective of this project is to grant recognition to security researchers report applications that violate the policies of Play Store, Google API and/or Web Store extensions.
It is no secret to anyone that the Play Store has been contaminated by applications that incur many security flaws, such as those that take data from our equipment without our authorization, among others.
Google and data protection
However, Google at its peak for mitigating these security flaws has been working on various projects that, together with Google Play Project, eliminate these threats from our devices.A new data protection program
According to the source , Google will now reward security researchers for finding errors in all Play Store applications that have more than 100 million installations.So far, the source points out that this GPSRP program has delivered more than USD $ 265,000 in rewards benefiting all those involved, because at the time when a security researcher identifies any vulnerability to Google, it is sent to the developer of The affected application.
But, that does not end there, because Google uses this vulnerability data to create automatic controls that are responsible for scanning all Google Play applications for matches.
Other mechanisms
As part of this new protection system, the company launched a Developer Data Protection Reward Program (DDPRP) in collaboration with HackerOne to locate data abuse in Android applications, OAuth projects and Chrome extensions that arrives as a complement to existing programs.The source highlights that “DDPRP is a new error rewards program to identify and mitigate data abuse problems ” within Android applications, OAuth projects and Chrome extensions.
The objective of this project is to grant recognition to security researchers report applications that violate the policies of Play Store, Google API and/or Web Store extensions.
Comments
Post a Comment