{"id":17997,"date":"2026-03-06T09:43:36","date_gmt":"2026-03-06T09:43:36","guid":{"rendered":"https:\/\/cryptoted.net\/index.php\/2026\/03\/06\/secured-4-bug-bounty-rewards-now-up-to-250000-usd\/"},"modified":"2026-03-06T09:43:36","modified_gmt":"2026-03-06T09:43:36","slug":"secured-4-bug-bounty-rewards-now-up-to-250000-usd","status":"publish","type":"post","link":"https:\/\/cryptoted.net\/index.php\/2026\/03\/06\/secured-4-bug-bounty-rewards-now-up-to-250000-usd\/","title":{"rendered":"Secured #4: Bug Bounty Rewards now up to $250,000 USD"},"content":{"rendered":"<p> <br \/>\n<br \/><img decoding=\"async\" src=\"https:\/\/blog.ethereum.org\/images\/posts\/upload_630d77544672a1e0df792c0d71489bd6.jpg\" \/><\/p>\n<div id=\"\">\n<p class=\"chakra-text css-gi02ar\">The Ethereum Foundation Bug Bounty Program is one of the earliest and longest running programs of its kind. It was launched in 2015 and targeted the Ethereum PoW mainnet and related software. In 2020, a second Bug Bounty Program for the new Proof-of-Stake Consensus Layer was launched, running alongside the original Bug Bounty Program.<\/p>\n<p class=\"chakra-text css-gi02ar\">The split of these programs is historic due to the way the Proof-of-Stake Consensus Layer was architected separately and in parallel to the existing Execution Layer (inside the PoW chain). Since the launch of the Beacon Chain in December of 2020, the technical architecture between the Execution Layer and the Consensus Layer has been distinct, except for the deposit contract, so the two bug bounty programs have remained separated.<\/p>\n<p class=\"chakra-text css-gi02ar\">In light of the coming Merge, today we are happy to announce that these two programs have been successfully <em class=\"chakra-text css-0\">merged<\/em> by the awesome ethereum.org team, and that the max bounty reward has been substantially increased!<\/p>\n<h2 class=\"chakra-heading group css-1kpzc4q\" id=\"merge-of-the-bug-bounty-programs\" data-group=\"true\"><a class=\"chakra-link css-128fqrf\" aria-label=\"merge of the bug bounty programs permalink\" href=\"#merge-of-the-bug-bounty-programs\"><svg viewbox=\"0 0 24 24\" focusable=\"false\" class=\"chakra-icon css-173jpr1\"><g fill=\"currentColor\"><path d=\"M10.458,18.374,7.721,21.11a2.853,2.853,0,0,1-3.942,0l-.892-.891a2.787,2.787,0,0,1,0-3.941l5.8-5.8a2.789,2.789,0,0,1,3.942,0l.893.892A1,1,0,0,0,14.94,9.952l-.893-.892a4.791,4.791,0,0,0-6.771,0l-5.8,5.8a4.787,4.787,0,0,0,0,6.77l.892.891a4.785,4.785,0,0,0,6.771,0l2.736-2.735a1,1,0,1,0-1.414-1.415Z\"\/><path d=\"M22.526,2.363l-.892-.892a4.8,4.8,0,0,0-6.77,0l-2.905,2.9a1,1,0,0,0,1.414,1.414l2.9-2.9a2.79,2.79,0,0,1,3.941,0l.893.893a2.786,2.786,0,0,1,0,3.942l-5.8,5.8a2.769,2.769,0,0,1-1.971.817h0a2.766,2.766,0,0,1-1.969-.816,1,1,0,1,0-1.415,1.412,4.751,4.751,0,0,0,3.384,1.4h0a4.752,4.752,0,0,0,3.385-1.4l5.8-5.8a4.786,4.786,0,0,0,0-6.771Z\"\/><\/g><\/svg><\/a>Merge (of the Bug Bounty Programs) \u2728<\/h2>\n<p class=\"chakra-text css-gi02ar\">With <a target=\"_blank\" rel=\"noopener\" class=\"chakra-link css-vezwxf\" href=\"https:\/\/tim.mirror.xyz\/PWFVaHY3Mrx7srarMmuBWya0J5kioR1l2xaH3p5APDk\">The Merge approaching<\/a>, the two previously disparate bug bounty programs have been merged into <a target=\"_blank\" rel=\"noopener\" class=\"chakra-link css-vezwxf\" href=\"https:\/\/bounty.ethereum.org\/\">one<\/a>.<\/p>\n<p class=\"chakra-text css-gi02ar\">As the <a target=\"_blank\" rel=\"noopener\" class=\"chakra-link css-vezwxf\" href=\"https:\/\/ethereum.org\/en\/learn\/#execution-layer-upgrades\">Execution Layer<\/a> and <a target=\"_blank\" rel=\"noopener\" class=\"chakra-link css-vezwxf\" href=\"https:\/\/ethereum.org\/en\/learn\/#consensus-layer-upgrades\">Consensus Layer<\/a> become more and more interconnected, it is increasingly valuable to combine the security efforts of these layers. There are already multiple efforts being organized by client teams and the community to further increase knowledge and expertise across the two layers. Unifying the Bounty Program will further increase visibility and coordination efforts on identifying and mitigating vulnerabilities.<\/p>\n<h2 class=\"chakra-heading group css-1kpzc4q\" id=\"increased-rewards\" data-group=\"true\"><a class=\"chakra-link css-128fqrf\" aria-label=\"increased rewards permalink\" href=\"#increased-rewards\"><svg viewbox=\"0 0 24 24\" focusable=\"false\" class=\"chakra-icon css-173jpr1\"><g fill=\"currentColor\"><path d=\"M10.458,18.374,7.721,21.11a2.853,2.853,0,0,1-3.942,0l-.892-.891a2.787,2.787,0,0,1,0-3.941l5.8-5.8a2.789,2.789,0,0,1,3.942,0l.893.892A1,1,0,0,0,14.94,9.952l-.893-.892a4.791,4.791,0,0,0-6.771,0l-5.8,5.8a4.787,4.787,0,0,0,0,6.77l.892.891a4.785,4.785,0,0,0,6.771,0l2.736-2.735a1,1,0,1,0-1.414-1.415Z\"\/><path d=\"M22.526,2.363l-.892-.892a4.8,4.8,0,0,0-6.77,0l-2.905,2.9a1,1,0,0,0,1.414,1.414l2.9-2.9a2.79,2.79,0,0,1,3.941,0l.893.893a2.786,2.786,0,0,1,0,3.942l-5.8,5.8a2.769,2.769,0,0,1-1.971.817h0a2.766,2.766,0,0,1-1.969-.816,1,1,0,1,0-1.415,1.412,4.751,4.751,0,0,0,3.384,1.4h0a4.752,4.752,0,0,0,3.385-1.4l5.8-5.8a4.786,4.786,0,0,0,0-6.771Z\"\/><\/g><\/svg><\/a>Increased Rewards \ud83d\udcb0<\/h2>\n<p class=\"chakra-text css-gi02ar\">The max reward of the Bounty Program is now <span class=\"math math-inline\"><span class=\"katex\"><span class=\"katex-mathml\"><math xmlns=\"http:\/\/www.w3.org\/1998\/Math\/MathML\"><semantics><mrow><mn>250<\/mn><mo separator=\"true\">,<\/mo><mn>000<\/mn><mo stretchy=\"false\">(<\/mo><mi>p<\/mi><mi>a<\/mi><mi>i<\/mi><mi>d<\/mi><mi>o<\/mi><mi>u<\/mi><mi>t<\/mi><mi>i<\/mi><mi>n<\/mi><mi>E<\/mi><mi>T<\/mi><mi>H<\/mi><mi>o<\/mi><mi>r<\/mi><mi>D<\/mi><mi>A<\/mi><mi>I<\/mi><mo stretchy=\"false\">)<\/mo><mi>f<\/mi><mi>o<\/mi><mi>r<\/mi><mi>v<\/mi><mi>u<\/mi><mi>l<\/mi><mi>n<\/mi><mi>e<\/mi><mi>r<\/mi><mi>a<\/mi><mi>b<\/mi><mi>i<\/mi><mi>l<\/mi><mi>i<\/mi><mi>t<\/mi><mi>i<\/mi><mi>e<\/mi><mi>s<\/mi><mi>i<\/mi><mi>n<\/mi><mi>s<\/mi><mi>c<\/mi><mi>o<\/mi><mi>p<\/mi><mi>e<\/mi><mi mathvariant=\"normal\">.<\/mi><mi>U<\/mi><mi>p<\/mi><mi>g<\/mi><mi>r<\/mi><mi>a<\/mi><mi>d<\/mi><mi>e<\/mi><mi>s<\/mi><mi>l<\/mi><mi>i<\/mi><mi>v<\/mi><mi>e<\/mi><mi>o<\/mi><mi>n<\/mi><mi>p<\/mi><mi>u<\/mi><mi>b<\/mi><mi>l<\/mi><mi>i<\/mi><mi>c<\/mi><mi>t<\/mi><mi>e<\/mi><mi>s<\/mi><mi>t<\/mi><mi>n<\/mi><mi>e<\/mi><mi>t<\/mi><mi>s<\/mi><mi>a<\/mi><mi>n<\/mi><mi>d<\/mi><mi>t<\/mi><mi>a<\/mi><mi>r<\/mi><mi>g<\/mi><mi>e<\/mi><mi>t<\/mi><mi>e<\/mi><mi>d<\/mi><mi>f<\/mi><mi>o<\/mi><mi>r<\/mi><mi>a<\/mi><mi>M<\/mi><mi>a<\/mi><mi>i<\/mi><mi>n<\/mi><mi>n<\/mi><mi>e<\/mi><mi>t<\/mi><mi>r<\/mi><mi>e<\/mi><mi>l<\/mi><mi>e<\/mi><mi>a<\/mi><mi>s<\/mi><mi>e<\/mi><mi>a<\/mi><mi>r<\/mi><mi>e<\/mi><mi>a<\/mi><mi>l<\/mi><mi>s<\/mi><mi>o<\/mi><mi>s<\/mi><mi>c<\/mi><mi>o<\/mi><mi>p<\/mi><mi>e<\/mi><mo separator=\"true\">,<\/mo><mi>a<\/mi><mi>n<\/mi><mi>d<\/mi><mi>r<\/mi><mi>e<\/mi><mi>w<\/mi><mi>a<\/mi><mi>r<\/mi><mi>d<\/mi><mi>s<\/mi><mi>a<\/mi><mi>r<\/mi><mi>e<\/mi><mi>d<\/mi><mi>o<\/mi><mi>u<\/mi><mi>b<\/mi><mi>l<\/mi><mi>e<\/mi><mi>d<\/mi><mi>d<\/mi><mi>u<\/mi><mi>r<\/mi><mi>i<\/mi><mi>n<\/mi><mi>g<\/mi><mi>t<\/mi><mi>h<\/mi><mi>i<\/mi><mi>s<\/mi><mi>t<\/mi><mi>i<\/mi><mi>m<\/mi><mi>e<\/mi><mo separator=\"true\">,<\/mo><mi>w<\/mi><mi>h<\/mi><mi>i<\/mi><mi>c<\/mi><mi>h<\/mi><mi>m<\/mi><mi>e<\/mi><mi>a<\/mi><mi>n<\/mi><mi>s<\/mi><mi>t<\/mi><mi>h<\/mi><mi>a<\/mi><mi>t<\/mi><mi>t<\/mi><mi>h<\/mi><mi>e<\/mi><mi>m<\/mi><mi>a<\/mi><mi>x<\/mi><mi>r<\/mi><mi>e<\/mi><mi>w<\/mi><mi>a<\/mi><mi>r<\/mi><mi>d<\/mi><mi>i<\/mi><mi>s<\/mi><\/mrow><annotation encoding=\"application\/x-tex\">250,000 (paid out in ETH or DAI) for vulnerabilities in scope. Upgrades live on public testnets and targeted for a Mainnet release are also scope, and rewards are doubled during this time, which means that the max reward is <\/annotation><\/semantics><\/math><\/span><span class=\"katex-html\" aria-hidden=\"true\"><span class=\"base\"><span class=\"strut\" style=\"height:1em;vertical-align:-0.25em\"\/><span class=\"mord\">250<\/span><span class=\"mpunct\">,<\/span><span class=\"mspace\" style=\"margin-right:0.1667em\"\/><span class=\"mord\">000<\/span><span class=\"mopen\">(<\/span><span class=\"mord mathnormal\">p<\/span><span class=\"mord mathnormal\">ai<\/span><span class=\"mord mathnormal\">d<\/span><span class=\"mord mathnormal\">o<\/span><span class=\"mord mathnormal\">u<\/span><span class=\"mord mathnormal\">t<\/span><span class=\"mord mathnormal\">in<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.13889em\">ET<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.02778em\">HorD<\/span><span class=\"mord mathnormal\">A<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.07847em\">I<\/span><span class=\"mclose\">)<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.10764em\">f<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.02778em\">or<\/span><span class=\"mord mathnormal\">vu<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.01968em\">l<\/span><span class=\"mord mathnormal\">n<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.02778em\">er<\/span><span class=\"mord mathnormal\">abi<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.01968em\">l<\/span><span class=\"mord mathnormal\">i<\/span><span class=\"mord mathnormal\">t<\/span><span class=\"mord mathnormal\">i<\/span><span class=\"mord mathnormal\">es<\/span><span class=\"mord mathnormal\">in<\/span><span class=\"mord mathnormal\">sco<\/span><span class=\"mord mathnormal\">p<\/span><span class=\"mord mathnormal\">e<\/span><span class=\"mord\">.<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.10903em\">U<\/span><span class=\"mord mathnormal\">p<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.03588em\">g<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.02778em\">r<\/span><span class=\"mord mathnormal\">a<\/span><span class=\"mord mathnormal\">d<\/span><span class=\"mord mathnormal\">es<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.01968em\">l<\/span><span class=\"mord mathnormal\">i<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.03588em\">v<\/span><span class=\"mord mathnormal\">eo<\/span><span class=\"mord mathnormal\">n<\/span><span class=\"mord mathnormal\">p<\/span><span class=\"mord mathnormal\">u<\/span><span class=\"mord mathnormal\">b<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.01968em\">l<\/span><span class=\"mord mathnormal\">i<\/span><span class=\"mord mathnormal\">c<\/span><span class=\"mord mathnormal\">t<\/span><span class=\"mord mathnormal\">es<\/span><span class=\"mord mathnormal\">t<\/span><span class=\"mord mathnormal\">n<\/span><span class=\"mord mathnormal\">e<\/span><span class=\"mord mathnormal\">t<\/span><span class=\"mord mathnormal\">s<\/span><span class=\"mord mathnormal\">an<\/span><span class=\"mord mathnormal\">d<\/span><span class=\"mord mathnormal\">t<\/span><span class=\"mord mathnormal\">a<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.02778em\">r<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.03588em\">g<\/span><span class=\"mord mathnormal\">e<\/span><span class=\"mord mathnormal\">t<\/span><span class=\"mord mathnormal\">e<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.10764em\">df<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.02778em\">or<\/span><span class=\"mord mathnormal\">a<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.10903em\">M<\/span><span class=\"mord mathnormal\">ainn<\/span><span class=\"mord mathnormal\">e<\/span><span class=\"mord mathnormal\">t<\/span><span class=\"mord mathnormal\">re<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.01968em\">l<\/span><span class=\"mord mathnormal\">e<\/span><span class=\"mord mathnormal\">a<\/span><span class=\"mord mathnormal\">se<\/span><span class=\"mord mathnormal\">a<\/span><span class=\"mord mathnormal\">re<\/span><span class=\"mord mathnormal\">a<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.01968em\">l<\/span><span class=\"mord mathnormal\">sosco<\/span><span class=\"mord mathnormal\">p<\/span><span class=\"mord mathnormal\">e<\/span><span class=\"mpunct\">,<\/span><span class=\"mspace\" style=\"margin-right:0.1667em\"\/><span class=\"mord mathnormal\">an<\/span><span class=\"mord mathnormal\">d<\/span><span class=\"mord mathnormal\">re<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.02691em\">w<\/span><span class=\"mord mathnormal\">a<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.02778em\">r<\/span><span class=\"mord mathnormal\">d<\/span><span class=\"mord mathnormal\">s<\/span><span class=\"mord mathnormal\">a<\/span><span class=\"mord mathnormal\">re<\/span><span class=\"mord mathnormal\">d<\/span><span class=\"mord mathnormal\">o<\/span><span class=\"mord mathnormal\">u<\/span><span class=\"mord mathnormal\">b<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.01968em\">l<\/span><span class=\"mord mathnormal\">e<\/span><span class=\"mord mathnormal\">dd<\/span><span class=\"mord mathnormal\">u<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.02778em\">r<\/span><span class=\"mord mathnormal\">in<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.03588em\">g<\/span><span class=\"mord mathnormal\">t<\/span><span class=\"mord mathnormal\">hi<\/span><span class=\"mord mathnormal\">s<\/span><span class=\"mord mathnormal\">t<\/span><span class=\"mord mathnormal\">im<\/span><span class=\"mord mathnormal\">e<\/span><span class=\"mpunct\">,<\/span><span class=\"mspace\" style=\"margin-right:0.1667em\"\/><span class=\"mord mathnormal\" style=\"margin-right:0.02691em\">w<\/span><span class=\"mord mathnormal\">hi<\/span><span class=\"mord mathnormal\">c<\/span><span class=\"mord mathnormal\">hm<\/span><span class=\"mord mathnormal\">e<\/span><span class=\"mord mathnormal\">an<\/span><span class=\"mord mathnormal\">s<\/span><span class=\"mord mathnormal\">t<\/span><span class=\"mord mathnormal\">ha<\/span><span class=\"mord mathnormal\">tt<\/span><span class=\"mord mathnormal\">h<\/span><span class=\"mord mathnormal\">e<\/span><span class=\"mord mathnormal\">ma<\/span><span class=\"mord mathnormal\">x<\/span><span class=\"mord mathnormal\">re<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.02691em\">w<\/span><span class=\"mord mathnormal\">a<\/span><span class=\"mord mathnormal\" style=\"margin-right:0.02778em\">r<\/span><span class=\"mord mathnormal\">d<\/span><span class=\"mord mathnormal\">i<\/span><span class=\"mord mathnormal\">s<\/span><\/span><\/span><\/span><\/span>500,000 during these periods!<\/p>\n<p class=\"chakra-text css-gi02ar\">In total, this marks a <em class=\"chakra-text css-0\">10x increase<\/em> from the previous maximum payout on Consensus Layer bounties and a <em class=\"chakra-text css-0\">20x increase<\/em> from the previous max payout on Execution Layer bounties.<\/p>\n<h2 class=\"chakra-heading group css-1kpzc4q\" id=\"impact-measurement\" data-group=\"true\"><a class=\"chakra-link css-128fqrf\" aria-label=\"impact measurement permalink\" href=\"#impact-measurement\"><svg viewbox=\"0 0 24 24\" focusable=\"false\" class=\"chakra-icon css-173jpr1\"><g fill=\"currentColor\"><path d=\"M10.458,18.374,7.721,21.11a2.853,2.853,0,0,1-3.942,0l-.892-.891a2.787,2.787,0,0,1,0-3.941l5.8-5.8a2.789,2.789,0,0,1,3.942,0l.893.892A1,1,0,0,0,14.94,9.952l-.893-.892a4.791,4.791,0,0,0-6.771,0l-5.8,5.8a4.787,4.787,0,0,0,0,6.77l.892.891a4.785,4.785,0,0,0,6.771,0l2.736-2.735a1,1,0,1,0-1.414-1.415Z\"\/><path d=\"M22.526,2.363l-.892-.892a4.8,4.8,0,0,0-6.77,0l-2.905,2.9a1,1,0,0,0,1.414,1.414l2.9-2.9a2.79,2.79,0,0,1,3.941,0l.893.893a2.786,2.786,0,0,1,0,3.942l-5.8,5.8a2.769,2.769,0,0,1-1.971.817h0a2.766,2.766,0,0,1-1.969-.816,1,1,0,1,0-1.415,1.412,4.751,4.751,0,0,0,3.384,1.4h0a4.752,4.752,0,0,0,3.385-1.4l5.8-5.8a4.786,4.786,0,0,0,0-6.771Z\"\/><\/g><\/svg><\/a>Impact Measurement \ud83d\udca5<\/h2>\n<p class=\"chakra-text css-gi02ar\">The Bug Bounty Program is primarily focused on securing the base layer of the Ethereum Network. With this in mind, the impact of a vulnerability is in direct correlation to the impact on the network as a whole.<\/p>\n<p class=\"chakra-text css-gi02ar\">While, for example, a Denial of Service vulnerability found in a client being used by 30% of the network.<\/p>\n<h2 class=\"chakra-heading group css-1kpzc4q\" id=\"visibility\" data-group=\"true\"><a class=\"chakra-link css-128fqrf\" aria-label=\"visibility permalink\" href=\"#visibility\"><svg viewbox=\"0 0 24 24\" focusable=\"false\" class=\"chakra-icon css-173jpr1\"><g fill=\"currentColor\"><path d=\"M10.458,18.374,7.721,21.11a2.853,2.853,0,0,1-3.942,0l-.892-.891a2.787,2.787,0,0,1,0-3.941l5.8-5.8a2.789,2.789,0,0,1,3.942,0l.893.892A1,1,0,0,0,14.94,9.952l-.893-.892a4.791,4.791,0,0,0-6.771,0l-5.8,5.8a4.787,4.787,0,0,0,0,6.77l.892.891a4.785,4.785,0,0,0,6.771,0l2.736-2.735a1,1,0,1,0-1.414-1.415Z\"\/><path d=\"M22.526,2.363l-.892-.892a4.8,4.8,0,0,0-6.77,0l-2.905,2.9a1,1,0,0,0,1.414,1.414l2.9-2.9a2.79,2.79,0,0,1,3.941,0l.893.893a2.786,2.786,0,0,1,0,3.942l-5.8,5.8a2.769,2.769,0,0,1-1.971.817h0a2.766,2.766,0,0,1-1.969-.816,1,1,0,1,0-1.415,1.412,4.751,4.751,0,0,0,3.384,1.4h0a4.752,4.752,0,0,0,3.385-1.4l5.8-5.8a4.786,4.786,0,0,0,0-6.771Z\"\/><\/g><\/svg><\/a>Visibility \ud83d\udc40<\/h2>\n<p class=\"chakra-text css-gi02ar\">In addition to the merge of the bounty programs and increase of the max reward, multiple steps have been taken to clarify how to report vulnerabilities.<\/p>\n<h4 class=\"chakra-heading group css-qm6a1\" id=\"github-security\" data-group=\"true\"><a class=\"chakra-link css-128fqrf\" aria-label=\"github security permalink\" href=\"#github-security\"><svg viewbox=\"0 0 24 24\" focusable=\"false\" class=\"chakra-icon css-173jpr1\"><g fill=\"currentColor\"><path d=\"M10.458,18.374,7.721,21.11a2.853,2.853,0,0,1-3.942,0l-.892-.891a2.787,2.787,0,0,1,0-3.941l5.8-5.8a2.789,2.789,0,0,1,3.942,0l.893.892A1,1,0,0,0,14.94,9.952l-.893-.892a4.791,4.791,0,0,0-6.771,0l-5.8,5.8a4.787,4.787,0,0,0,0,6.77l.892.891a4.785,4.785,0,0,0,6.771,0l2.736-2.735a1,1,0,1,0-1.414-1.415Z\"\/><path d=\"M22.526,2.363l-.892-.892a4.8,4.8,0,0,0-6.77,0l-2.905,2.9a1,1,0,0,0,1.414,1.414l2.9-2.9a2.79,2.79,0,0,1,3.941,0l.893.893a2.786,2.786,0,0,1,0,3.942l-5.8,5.8a2.769,2.769,0,0,1-1.971.817h0a2.766,2.766,0,0,1-1.969-.816,1,1,0,1,0-1.415,1.412,4.751,4.751,0,0,0,3.384,1.4h0a4.752,4.752,0,0,0,3.385-1.4l5.8-5.8a4.786,4.786,0,0,0,0-6.771Z\"\/><\/g><\/svg><\/a>Github Security<\/h4>\n<p class=\"chakra-text css-gi02ar\">Repositories such as <a target=\"_blank\" rel=\"noopener\" class=\"chakra-link css-vezwxf\" href=\"https:\/\/github.com\/ethereum\/consensus-specs\/\">ethereum\/consensus-specs<\/a> and <a target=\"_blank\" rel=\"noopener\" class=\"chakra-link css-vezwxf\" href=\"https:\/\/github.com\/ethereum\/go-ethereum\/\">ethereum\/go-ethereum<\/a> now contain information on how to report vulnerabilities in <span class=\"chakra-text css-ons8vw\">SECURITY.md<\/span> files.<\/p>\n<h4 class=\"chakra-heading group css-qm6a1\" id=\"securitytxt\" data-group=\"true\"><a class=\"chakra-link css-128fqrf\" aria-label=\"securitytxt permalink\" href=\"#securitytxt\"><svg viewbox=\"0 0 24 24\" focusable=\"false\" class=\"chakra-icon css-173jpr1\"><g fill=\"currentColor\"><path d=\"M10.458,18.374,7.721,21.11a2.853,2.853,0,0,1-3.942,0l-.892-.891a2.787,2.787,0,0,1,0-3.941l5.8-5.8a2.789,2.789,0,0,1,3.942,0l.893.892A1,1,0,0,0,14.94,9.952l-.893-.892a4.791,4.791,0,0,0-6.771,0l-5.8,5.8a4.787,4.787,0,0,0,0,6.77l.892.891a4.785,4.785,0,0,0,6.771,0l2.736-2.735a1,1,0,1,0-1.414-1.415Z\"\/><path d=\"M22.526,2.363l-.892-.892a4.8,4.8,0,0,0-6.77,0l-2.905,2.9a1,1,0,0,0,1.414,1.414l2.9-2.9a2.79,2.79,0,0,1,3.941,0l.893.893a2.786,2.786,0,0,1,0,3.942l-5.8,5.8a2.769,2.769,0,0,1-1.971.817h0a2.766,2.766,0,0,1-1.969-.816,1,1,0,1,0-1.415,1.412,4.751,4.751,0,0,0,3.384,1.4h0a4.752,4.752,0,0,0,3.385-1.4l5.8-5.8a4.786,4.786,0,0,0,0-6.771Z\"\/><\/g><\/svg><\/a>security.txt<\/h4>\n<p class=\"chakra-text css-gi02ar\"><a target=\"_blank\" rel=\"noopener\" class=\"chakra-link css-vezwxf\" href=\"https:\/\/securitytxt.org\/\">security.txt<\/a> is implemented and contains information about how to report vulnerabilities. The file itself <a target=\"_blank\" rel=\"noopener\" class=\"chakra-link css-vezwxf\" href=\"https:\/\/ethereum.org\/.well-known\/security.txt\">can be found here<\/a>.<\/p>\n<h4 class=\"chakra-heading group css-qm6a1\" id=\"dns-security-txt\" data-group=\"true\"><a class=\"chakra-link css-128fqrf\" aria-label=\"dns security txt permalink\" href=\"#dns-security-txt\"><svg viewbox=\"0 0 24 24\" focusable=\"false\" class=\"chakra-icon css-173jpr1\"><g fill=\"currentColor\"><path d=\"M10.458,18.374,7.721,21.11a2.853,2.853,0,0,1-3.942,0l-.892-.891a2.787,2.787,0,0,1,0-3.941l5.8-5.8a2.789,2.789,0,0,1,3.942,0l.893.892A1,1,0,0,0,14.94,9.952l-.893-.892a4.791,4.791,0,0,0-6.771,0l-5.8,5.8a4.787,4.787,0,0,0,0,6.77l.892.891a4.785,4.785,0,0,0,6.771,0l2.736-2.735a1,1,0,1,0-1.414-1.415Z\"\/><path d=\"M22.526,2.363l-.892-.892a4.8,4.8,0,0,0-6.77,0l-2.905,2.9a1,1,0,0,0,1.414,1.414l2.9-2.9a2.79,2.79,0,0,1,3.941,0l.893.893a2.786,2.786,0,0,1,0,3.942l-5.8,5.8a2.769,2.769,0,0,1-1.971.817h0a2.766,2.766,0,0,1-1.969-.816,1,1,0,1,0-1.415,1.412,4.751,4.751,0,0,0,3.384,1.4h0a4.752,4.752,0,0,0,3.385-1.4l5.8-5.8a4.786,4.786,0,0,0,0-6.771Z\"\/><\/g><\/svg><\/a>DNS Security TXT<\/h4>\n<p class=\"chakra-text css-gi02ar\"><a target=\"_blank\" rel=\"noopener\" class=\"chakra-link css-vezwxf\" href=\"https:\/\/dnssecuritytxt.org\/\">DNS Security TXT<\/a> is implemented and contains information about how to report vulnerabilities. This entry can be viewed by running <span class=\"chakra-text css-ons8vw\">dig _security.ethereum.org TXT<\/span>.<\/p>\n<h2 class=\"chakra-heading group css-1kpzc4q\" id=\"how-can-you-get-started\" data-group=\"true\"><a class=\"chakra-link css-128fqrf\" aria-label=\"how can you get started permalink\" href=\"#how-can-you-get-started\"><svg viewbox=\"0 0 24 24\" focusable=\"false\" class=\"chakra-icon css-173jpr1\"><g fill=\"currentColor\"><path d=\"M10.458,18.374,7.721,21.11a2.853,2.853,0,0,1-3.942,0l-.892-.891a2.787,2.787,0,0,1,0-3.941l5.8-5.8a2.789,2.789,0,0,1,3.942,0l.893.892A1,1,0,0,0,14.94,9.952l-.893-.892a4.791,4.791,0,0,0-6.771,0l-5.8,5.8a4.787,4.787,0,0,0,0,6.77l.892.891a4.785,4.785,0,0,0,6.771,0l2.736-2.735a1,1,0,1,0-1.414-1.415Z\"\/><path d=\"M22.526,2.363l-.892-.892a4.8,4.8,0,0,0-6.77,0l-2.905,2.9a1,1,0,0,0,1.414,1.414l2.9-2.9a2.79,2.79,0,0,1,3.941,0l.893.893a2.786,2.786,0,0,1,0,3.942l-5.8,5.8a2.769,2.769,0,0,1-1.971.817h0a2.766,2.766,0,0,1-1.969-.816,1,1,0,1,0-1.415,1.412,4.751,4.751,0,0,0,3.384,1.4h0a4.752,4.752,0,0,0,3.385-1.4l5.8-5.8a4.786,4.786,0,0,0,0-6.771Z\"\/><\/g><\/svg><\/a>How can you get started? \ud83d\udd28<\/h2>\n<p class=\"chakra-text css-gi02ar\">With nine different clients written in various languages, Solidity, the Specifications, and the deposit smart contract all within the scope of the bounty program, there is a plenty for bounty hunters to dig into.<\/p>\n<p class=\"chakra-text css-gi02ar\">If you&#8217;re looking for some ideas of where to start your bug hunting journey, take a look at the <a class=\"chakra-link css-vezwxf\" href=\"https:\/\/blog.ethereum.org\/2022\/03\/09\/secured-no-2\">previously reported vulnerabilities<\/a>. This was last updated in March and contains all the reported vulnerabilities we have on record, up until the Altair network upgrade.<\/p>\n<p class=\"chakra-text css-gi02ar\">We&#8217;re looking forward to your reports! \ud83d\udc1b<\/p>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/blog.ethereum.org\/en\/2022\/05\/16\/secured-no-4\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The Ethereum Foundation Bug Bounty Program is one of the earliest and longest running programs of its kind. It was launched in 2015 and targeted the Ethereum PoW mainnet and related software. In 2020, a second Bug Bounty Program for the new Proof-of-Stake Consensus Layer was launched, running alongside the original Bug Bounty Program. The [&hellip;]<\/p>\n","protected":false},"author":6,"featured_media":17825,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"tdm_status":"","tdm_grid_status":"","footnotes":""},"categories":[24],"tags":[],"kronos_expire_date":[],"class_list":["post-17997","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-ethereum"],"_links":{"self":[{"href":"https:\/\/cryptoted.net\/index.php\/wp-json\/wp\/v2\/posts\/17997","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cryptoted.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cryptoted.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cryptoted.net\/index.php\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"https:\/\/cryptoted.net\/index.php\/wp-json\/wp\/v2\/comments?post=17997"}],"version-history":[{"count":0,"href":"https:\/\/cryptoted.net\/index.php\/wp-json\/wp\/v2\/posts\/17997\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cryptoted.net\/index.php\/wp-json\/wp\/v2\/media\/17825"}],"wp:attachment":[{"href":"https:\/\/cryptoted.net\/index.php\/wp-json\/wp\/v2\/media?parent=17997"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cryptoted.net\/index.php\/wp-json\/wp\/v2\/categories?post=17997"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cryptoted.net\/index.php\/wp-json\/wp\/v2\/tags?post=17997"},{"taxonomy":"kronos_expire_date","embeddable":true,"href":"https:\/\/cryptoted.net\/index.php\/wp-json\/wp\/v2\/kronos_expire_date?post=17997"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}