Mobile Pwn2Own Contest Offering Up to $100,000 Reward for iOS Vulnerabilities - MacRumors
Skip to Content

Mobile Pwn2Own Contest Offering Up to $100,000 Reward for iOS Vulnerabilities

by

Japanese cybersecurity company Trend Micro today announced its sixth annual Mobile Pwn2Own competition will be held at this year's PacSec security conference in Tokyo on Wednesday, November 1 and Thursday, November 2.

pwn2own mobile
The competition is part of Trend Micro's Zero Day Initiative, a program for rewarding security researchers for responsibly disclosing vulnerabilities to companies like Apple, Google, Samsung, and Huawei.

This year, targeted devices include the iPhone 7, Samsung's Galaxy S8, Google's Pixel, and Huawei's Mate 9 Pro, each of which will be running the latest version of iOS or Android respectively with up-to-date security fixes.

Trend Micro is making more than $500,000 available to be won, with the cash prizes available varying by type of exploit. Mobile Safari exploits, for example, are worth up to $40,000, while an SMS-based vulnerability could net $60,000.

trend micro mobile pwn2own
In addition to the standard categories and prizes, there are add-on bonuses of between $20,000 and $50,000 for executing code with kernel privileges and having a smartphone operating system's payload persist after a reboot.

Apple representatives have attended Pwn2Own competitions in the past, with all vulnerabilities made aware to them. Apple will have 90 days to produce patches for any iOS-related bugs before they are disclosed.

Earlier this year, at the 10th anniversary Pwn2Own competition, security researchers uncovered macOS Sierra vulnerabilities, including a Safari exploit which allowed them to scroll a message on a MacBook Pro's Touch Bar.

Tag: Pwn2Own

Top Rated Comments

JosephAW Avatar
114 months ago
Can I get paid in bitcoin?
Score: 2 Votes (Like | Disagree)
OldSchoolMacGuy Avatar
114 months ago
Cash in twice?
They might simply offer $100k and pay it by using your exploit to get themselves the $250k prize. That'd be a sweet deal for them. Make $150k for doing nothing but selling someone else's exploit.
Score: 1 Votes (Like | Disagree)
ThunderSkunk Avatar
114 months ago
How much is that in rubles?
Score: 1 Votes (Like | Disagree)

Popular Stories

Dynamic Island iPhone 18 Pro Feature

11 Reasons to Wait for the iPhone 18 Pro

Monday May 11, 2026 9:01 am PDT by
We're only four months out from the launch of Apple's premium next-generation smartphone lineup, and while we're not expecting a sea change in terms of functionality, there are still several enhancements rumored to be coming to the iPhone 18 Pro and iPhone 18 Pro Max. One thing worth noting is that Apple is reportedly planning a major change to its iPhone release cycle this year, adopting a...
iOS 26

iOS 26.5 Features: Everything New in iOS 26.5

Monday May 11, 2026 5:09 pm PDT by
Apple released iOS 26.5 after a few months of beta testing, and while it doesn't have the Siri features we were hoping for since those are being held until iOS 27, there are a handful of useful changes worth knowing about. Subscribe to the MacRumors YouTube channel for more videos. End-to-End Encryption for RCS Support for end-to-end encryption (E2EE) for RCS messages between iPhone and...
General Apps Reddit Feature

Reddit Starts Blocking Mobile Website, Pushing Users to App Instead

Monday May 11, 2026 6:10 am PDT by
Social network Reddit recently began blocking mobile visitors to its website while pushing them to download the official Reddit app, and it's fair to say that the move is not going down well with users. If you visit reddit.com on your iPhone today, you may see a new popup that can't be dismissed, asking you to "get the app to keep using Reddit." A Reddit spokesperson told Ars Technica...