Google launches bug bounty program for Android Enterprise

Phone security
(Image credit: Shutterstock)

Google has announced the first vulnerability rewards program for its Android Enterprise initiative with bounties going up to $250,000, as part of its effort to further secure the platform.

Android Enterprise is Google’s attempt to enable the use of Android devices and apps in the workplace, by enabling mobile developers to integrate Android support into mobile device management (MDM) solutions.

Explaining its new push for securing Android Enterprise, Rajeev Pathak, a senior product manager at Google writes that effectively managing the growing number of mobile devices has become imperative for businesses as remote working and hybrid work environments become the norm.

TechRadar needs you!

We're looking at how our readers use VPNs with streaming sites like Netflix so we can improve our content and offer better advice. This survey won't take more than 60 seconds of your time, and we'd hugely appreciate if you'd share your experiences with us.

>> Click here to start the survey in a new window <<

“Since we believe scrutiny and transparency are key to improving security, we’ve launched a new Android Enterprise category as part of the Android Security Rewards Program. We’re offering a reward of up to $250,000 for a full exploit on a Pixel device running Android Enterprise,” shares Pathak.

Comprehensive security

Despite IDC revealing that over 80% of IT leaders are increasing their investing in enterprise mobility, Pathak argues that spending more on security and management solutions alone won’t provide control over enterprise data.

“For mobility to truly work in the long term, it’s critical to balance strong platform security with effortless, flexible management that scales to specific needs around user choice, privacy and control,” explains Pathak.

Pathak uses this argument to introduce the security enhancements in Android 12 especially for business customers, including improving password complexity controls, and disabling USB signaling on company-owned devices to limit USB-based attacks. 

He shares that although Android 12 already meets the most rigorous deployment requirements, including the United States Department of Defense's Security Technical Implementation Guide, the company wants to use the rewards program to further secure the platform.

TOPICS
Mayank Sharma

With almost two decades of writing and reporting on Linux, Mayank Sharma would like everyone to think he’s TechRadar Pro’s expert on the topic. Of course, he’s just as interested in other computing topics, particularly cybersecurity, cloud, containers, and coding.

Read more
Application Security Testing Concept with Digital Magnifying Glass Scanning Applications to Detect Vulnerabilities - AST - Process of Making Apps Resistant to Security Threats - 3D Illustration
Google bug bounty payments hit nearly $12 million in 2024
A woman at a table using a Windows laptop, opposite sits a man, neither show their face
Microsoft will now pay you even more to find security bugs in Copilot
an image of the Samsung Galaxy S24 Ultra
Samsung pulls curtains on classified operation called Project Infinity, where teams compete relentlessly to improve security on billions of Galaxy phones
An Android phone being held in the hand
Google is ramping up Android security protection with new Android app safety tools
Google Pixel 9 in wintergreen
Google offers ‘voluntary exit’ for any US employees working on Pixel, Android
Facebook on laptop
Researcher nets major reward for finding Facebook bug able to unlock the gates to its internal systems
Latest in Security
Insecure network with several red platforms connected through glowing data lines and a black hat hacker symbol
Multiple H3C Magic routers hit by critical severity remote command injection, with no fix in sight
An abstract image of a lock against a digital background, denoting cybersecurity.
Critical security flaw in Next.js could spell big trouble for JavaScript users
Microsoft
"Another pair of eyes" - Microsoft launches all-new Security Copilot Agents to give security teams the upper hand
Lock on Laptop Screen
Medusa ransomware is able to disable anti-malware tools, so be on your guard
An abstract image of digital security.
Fake file converters are stealing info, pushing ransomware, FBI warns
Insecure network with several red platforms connected through glowing data lines and a black hat hacker symbol
Coinbase targeted after recent Github attacks
Latest in News
girl using laptop hoping for good luck with her fingers crossed
Windows 11 24H2 seems to be a massive fail – so Microsoft apparently working on 25H2 fills me with hope... and fear
ChatGPT Advanced Voice mode on a smartphone.
Talking to ChatGPT just got better, and you don’t need to pay to access the new functionality
Insecure network with several red platforms connected through glowing data lines and a black hat hacker symbol
Multiple H3C Magic routers hit by critical severity remote command injection, with no fix in sight
Apple Watch Ultra 2 timer
The Apple Watch is getting a sleep alarm upgrade it probably should have had 10 years ago
Nikon Z5
The Nikon Z5 II could land soon – here's what to expect from Nikon's rumored entry-level full-frame camera
An abstract image of a lock against a digital background, denoting cybersecurity.
Critical security flaw in Next.js could spell big trouble for JavaScript users