Intel Transitions to No-Bounty Vulnerability Disclosure Program
Article Content
- •Intel has suspended its $100k bug bounty program, transitioning to a no-bounty disclosure system.
- •The change is likely influenced by an influx of AI-generated vulnerability reports overwhelming the system.
- •Researchers can still report vulnerabilities but will not receive financial rewards.
Intel has suspended its $100,000 bug bounty program, shifting to a new vulnerability disclosure system on the Intigriti platform that offers no financial rewards. Previously, the program incentivized researchers to report security flaws in Intel's hardware and software, effectively patching critical vulnerabilities. The change comes amid rising AI-generated security reports overwhelming the system, prompting Intel to manage submissions without financial incentives. The original bounty program, launched in 2017, had proven effective, with nearly half of the CVEs addressed in 2020 sourced from it. Researchers can still report vulnerabilities but will not receive payouts. The cybersecurity community is surprised by this abrupt shift, especially after Intel's previous commitment to enhancing its bounty criteria in early 2025.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (4)
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Red Heron Exploits Gitea RCE Flaw in Multinational Campaign A Chinese-speaking threat actor, tracked as Red Heron, exploited the CVE-2026-60004 remote code execution vulnerability in Gitea, compromising 1,386 instances across seven countries. The campaign involved source-code theft, credential collection, and lateral movement, affecting organizations in Canada, Argentina…