Apple Introduces $2M Bug Bounty for Spyware-Level Exploits - MacRumors
Skip to Content

Apple Introduces $2M Bug Bounty for Spyware-Level Exploits

Apple has announced a major overhaul of its bug bounty program that doubles the top reward to $2 million for exploit chains that can match the sophistication of mercenary spyware attacks.

bug security vulnerability issue fix larry
With bonuses for Lockdown Mode bypasses and vulnerabilities found in beta software, Apple says its total payouts could exceed $5 million. The company claims this represents "the largest payout offered by any bounty program."

The program now places greater emphasis on complete exploit chains rather than individual vulnerabilities, reflecting the reality that real-world attacks typically chain multiple bugs together. The rewards for remote-entry vectors have also been substantially increased, although categories not commonly seen in actual attacks will receive lower payouts.

As part of the overhaul, Apple is introducing "Target Flags," which are inspired by capture-the-flag games. When a researcher successfully exploits a vulnerability, they can capture a specific flag that proves exactly what level of access they achieved, such as code execution or arbitrary read/write capabilities.

These flags can be verified by Apple, so researchers who submit reports using them can receive notification of their bounty award immediately after Apple validates the captured flag. The payment is also issued in an upcoming payment cycle, meaning researchers won't have have to wait until Apple releases a software fix, which can take months. Previously, researchers often had to wait for Apple to patch a vulnerability before receiving payment.

The updated program comes into effect from November 2025. Apple is also expanding categories to include one-click WebKit sandbox escapes worth up to $300,000 and wireless proximity exploits over any radio worth up to $1 million. A complete Gatekeeper bypass on macOS now earns $100,000.

More information on the changes can be found on Apple's Security Research website. Apple says it has paid out over $35 million to more than 800 researchers since launching the public program in 2020.

Popular Stories

Four iPhone 18 Pro Colors Mock Feature

iPhone 18 Pro: Pre-Orders and Release Date

Thursday August 20, 2026 8:00 am PDT by
Apple has yet to reveal when the iPhone 18 Pro and iPhone Ultra will be announced and released, but the dates usually follow a familiar pattern. As usual, the iPhone event is expected to take place in the first half of September. Labor Day falls on September 7 this year. The last time the holiday was on that day was in 2020, but the iPhone event that year was delayed until October due to...
macOS 27 next to MacBook Pro Running macOS 27

macOS Golden Gate Marks the End of an Era

Thursday August 20, 2026 2:19 pm PDT by
macOS 27 Golden Gate is not compatible with any Macs with Intel processors, marking the end of an era. The update, which is currently in beta ahead of a release later this year, is limited to Apple silicon Macs with an M1 chip or newer. Last year, Apple said that macOS 26 Tahoe would be the final macOS release compatible with Intel-based Macs, so this was an expected development. Intel...
Aston Martin CarPlay Ultra Screen

Apple Says CarPlay Ultra is Coming to These Vehicle Brands

Wednesday August 19, 2026 12:53 pm PDT by
Last year, Apple launched CarPlay Ultra, the long-awaited next-generation version of its CarPlay software system for vehicles. More than a year later, CarPlay Ultra is still limited to Aston Martin's latest luxury vehicles, but that should change in the foreseeable future. In May 2025, Apple said many other vehicle brands planned to offer CarPlay Ultra, including Hyundai, Kia, and Genesis. ...

Top Rated Comments

11 months ago
This is a great program and these updates make it much more enticing to people to find exploits. It's good to see Apple's focus on improving security.
Score: 20 Votes (Like | Disagree)
11 months ago
iOS 26 is the biggest exploit. award me now.
Score: 19 Votes (Like | Disagree)
Macusercom Avatar
11 months ago
Great program, worst execution. There have been so many exploits that have been disclosed and those who find it do not get even remotely what Apple promises them. This is the reason many exploits remain hidden and get sold to higher bidders
Score: 16 Votes (Like | Disagree)
11 months ago
This is why I trust Apple with my personal data.
Score: 14 Votes (Like | Disagree)
Mac Fly (film) Avatar
11 months ago

This is why I trust Apple with my personal data.
CompanyProgram NameMax Reward (USD)Notes
AppleApple Security Bounty$2,000,000For zero-click spyware exploit chains (effective Nov 2025); previously $1M.
GoogleVulnerability Reward Program$1,500,000For full-chain zero-click RCE in Android; up to $3.1M for Chrome sandbox escapes.
MicrosoftMicrosoft Bounty Programs$250,000For critical RCE in Hyper-V or Azure; varies by product (e.g., $100K+ for Edge).
MetaMeta Bug Bounty$300,000For mobile RCE exploits; focuses on privacy/compromise in apps like Facebook/Instagram.
IntelIntel Bug Bounty$100,000For critical hardware RCE; lower for software-only issues.
Honestly I trust none of them. Fully, no way.
Score: 12 Votes (Like | Disagree)
WarmWinterHat Avatar
11 months ago

Can you give some examples of those?
https://9to5mac.com/2025/07/31/apple-security-bounties-pay-up-to-2m-but-it-only-paid-1k-for-a-critical-bug/
Score: 10 Votes (Like | Disagree)