Kuze kube namuhla i-Apple ibinohlelo lokuphana lwabacwaningi bezokuphepha abathola izimbungulu ku-iOS. Le mivuzo yayijwayele ukuba izimemo zemicimbi ethile noma imicimbi inkampani yaseMelika eyayisebenzisa ukuyigubha. Kusukela namhlanje, i-Apple isimemezele ukuthi izokwandisa leyo mivuzo kulabo abathola izimbungulu kwezinye izinhlelo zokusebenza, kufaka phakathi iMacOS.
Lolu hlelo olusha luqale namuhla. Kumenyezelwe yi-Apple engqungqutheleni yeBlack Hat eyayibanjelwe eLas Vegas ekuqaleni konyaka.
Imiklomelo eqotho uma uthola izimbungulu ku-macOS, i-iOS, i-tvOS, i-watchOS, noma i-iCloud
Lolu hlelo lwe-Apple bug bounty lwalususelwe kwizimemo, futhi kusukela namhlanje, amadivayisi angewona ama-iOS awazange afakwe. Kepha lokhu sekuguqukile futhi kuze kube namuhla, Noma yimuphi umcwaningi wezokuphepha othola izimbungulu ku-iOS, macOS, tvOS, watchOS, noma i-iCloud, angakhokhelwa imali ngokudalula ukuba sengozini kwe-Apple.
Ngaphambi kokunwetshwa kwalolu hlelo, umvuzo wokuba sengozini okutholakele wawungu- $ 200.000 ngokuxhaphaza ngakunye. Njengamanje umklomelo ungafinyelela kumaRandi ayisigidi. Kuzoncika enkingeni etholakele, kepha ukwenziwa kwekhodi yekernel ngo-zero ngokuphikelela kuzothola inani eliphakeme. Ukukhuphuka okumangazayo okuzokwenza abantu abaningi abazinikele endabeni yokuphepha kwamakhompyutha, babeke amabhethri.
Ilungele abasebenzisi, ilungele i-Apple. Ngale ndlela, labo abathola lobu bucayi bazoklonyeliswa ngemali enhle nezinzuzo ze-Apple ngokuba, manje, zonke izinhlelo zayo ezisebenzayo zisesikhathini.
Kepha ukumangala okusha akugcini lapha. Abakwa-Apple bathi bazofaka ibhonasi engamaphesenti angama-50 ngaphezulu kokukhokha okujwayelekile kwezimbungulu ezitholakala kwisoftware ye-beta, okuvumela inkampani ukuthi iqede inkinga ngaphambi kokuthi uhlelo lohlelo lusebenze emphakathini. Ibuye inikeze ibhonasi efanayo yalokho okuthiwa "amaphutha okuhlehla." Iziphazamisi ezazilungiswe i-Apple esikhathini esedlule kepha zaphinde zavela ngengozi enguqulweni yakamuva yesoftware.
Ungathola yonke imininingwane kuwebhusayithi eyenziwe yi-Apple kulo mcimbi. Kuleli khasi Imithetho yohlelo lwe-Bug bounty inemininingwane kanye nokuwohloka kwemivuzo ephelele inikezwe abaphenyi ngokuya ngokuxhaphaza abakutholayo.