Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    WBTC supply contracts this month following Justin Sun custody drama

    May 13, 2026

    Yellow Network’s Sirkia sees CLARITY Act as reset

    May 13, 2026

    Football legends Ronaldinho, Luis Figo sued for Omegapro crypto scam promo

    May 13, 2026
    Facebook X (Twitter) Instagram
    Ai Crypto TimesAi Crypto Times
    • Altcoins
      • Bitcoin
      • Coinbase
      • Litecoin
    • Blockchain
    • Crypto
    • Ethereum
    • Lithosphere News Releases
    X (Twitter) Instagram YouTube LinkedIn
    Ai Crypto TimesAi Crypto Times
    Home » Secured #4: Bug Bounty Rewards now up to $250,000 USD

    Secured #4: Bug Bounty Rewards now up to $250,000 USD

    Michael JohnsonBy Michael JohnsonMarch 21, 2026No Comments4 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Share
    Facebook Twitter LinkedIn Pinterest Email



    The Ethereum Foundation Bug Bounty Program is one of the earliest and longest running programs of its kind. It was launched in 2015 and targeted the Ethereum PoW mainnet and related software. In 2020, a second Bug Bounty Program for the new Proof-of-Stake Consensus Layer was launched, running alongside the original Bug Bounty Program.

    The split of these programs is historic due to the way the Proof-of-Stake Consensus Layer was architected separately and in parallel to the existing Execution Layer (inside the PoW chain). Since the launch of the Beacon Chain in December of 2020, the technical architecture between the Execution Layer and the Consensus Layer has been distinct, except for the deposit contract, so the two bug bounty programs have remained separated.

    In light of the coming Merge, today we are happy to announce that these two programs have been successfully merged by the awesome ethereum.org team, and that the max bounty reward has been substantially increased!

    Merge (of the Bug Bounty Programs) ✨

    With The Merge approaching, the two previously disparate bug bounty programs have been merged into one.

    As the Execution Layer and Consensus Layer become more and more interconnected, it is increasingly valuable to combine the security efforts of these layers. There are already multiple efforts being organized by client teams and the community to further increase knowledge and expertise across the two layers. Unifying the Bounty Program will further increase visibility and coordination efforts on identifying and mitigating vulnerabilities.

    Increased Rewards 💰

    The max reward of the Bounty Program is now 250,000(paidoutinETHorDAI)forvulnerabilitiesinscope.UpgradesliveonpublictestnetsandtargetedforaMainnetreleasearealsoscope,andrewardsaredoubledduringthistime,whichmeansthatthemaxrewardis250,000 (paid out in ETH or DAI) for vulnerabilities in scope. Upgrades live on public testnets and targeted for a Mainnet release are also scope, and rewards are doubled during this time, which means that the max reward is 250,000(paidoutinETHorDAI)forvulnerabilitiesinscope.UpgradesliveonpublictestnetsandtargetedforaMainnetreleasearealsoscope,andrewardsaredoubledduringthistime,whichmeansthatthemaxrewardis500,000 during these periods!

    In total, this marks a 10x increase from the previous maximum payout on Consensus Layer bounties and a 20x increase from the previous max payout on Execution Layer bounties.

    Impact Measurement 💥

    The Bug Bounty Program is primarily focused on securing the base layer of the Ethereum Network. With this in mind, the impact of a vulnerability is in direct correlation to the impact on the network as a whole.

    While, for example, a Denial of Service vulnerability found in a client being used by <1% of the network would certainly cause issues for the users of this client, it would have a higher impact on the Ethereum Network if the same vulnerability existed in a client used by >30% of the network.

    Visibility 👀

    In addition to the merge of the bounty programs and increase of the max reward, multiple steps have been taken to clarify how to report vulnerabilities.

    Github Security

    Repositories such as ethereum/consensus-specs and ethereum/go-ethereum now contain information on how to report vulnerabilities in SECURITY.md files.

    security.txt

    security.txt is implemented and contains information about how to report vulnerabilities. The file itself can be found here.

    DNS Security TXT

    DNS Security TXT is implemented and contains information about how to report vulnerabilities. This entry can be viewed by running dig _security.ethereum.org TXT.

    How can you get started? 🔨

    With nine different clients written in various languages, Solidity, the Specifications, and the deposit smart contract all within the scope of the bounty program, there is a plenty for bounty hunters to dig into.

    If you’re looking for some ideas of where to start your bug hunting journey, take a look at the previously reported vulnerabilities. This was last updated in March and contains all the reported vulnerabilities we have on record, up until the Altair network upgrade.

    We’re looking forward to your reports! 🐛



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Michael Johnson

    Related Posts

    Clear Signing: Making Transaction Approvals Safer on Ethereum

    May 12, 2026

    Protocol Cluster Updates: May 2026

    May 11, 2026

    Soldøgn Interop Recap ☀️ | Ethereum Foundation Blog

    May 2, 2026

    Comments are closed.

    Don't Miss

    WBTC supply contracts this month following Justin Sun custody drama

    Coinbase May 13, 2026

    WBTC announced it will transition the custody of bitcoin for the token from BitGo to…

    Yellow Network’s Sirkia sees CLARITY Act as reset

    May 13, 2026

    Football legends Ronaldinho, Luis Figo sued for Omegapro crypto scam promo

    May 13, 2026

    NUVA launches $19B tokenized assets on Ethereum

    May 13, 2026
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo
    Our Picks

    This feed has expired. Please contact us for pricing options.

    May 5, 2026

    AGII Introduces Scalable AI Execution Layer for Decentralized Systems

    May 1, 2026

    Lithosphere Deploys Full-Stack Development Environment for AI-Native Applications

    May 1, 2026

    Lithosphere Integrates AI Mock Providers for Continuous Integration Workflows

    April 30, 2026

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    Demo
    • Popular
    • Recent
    • Top Reviews

    First-Time Casino Poker Tips: What to Expect & How to Prepare

    December 9, 2025

    Help We regret to inform you that your IP address has been blocked

    February 12, 2026

    Online Gaming Safety: 9 in 10 Gamers Wouldnt Let Their Kid Play

    March 2, 2026

    WBTC supply contracts this month following Justin Sun custody drama

    May 13, 2026

    Yellow Network’s Sirkia sees CLARITY Act as reset

    May 13, 2026

    Football legends Ronaldinho, Luis Figo sued for Omegapro crypto scam promo

    May 13, 2026
    Latest Galleries
    [latest_gallery cat="all" number="5" type="slider"]
    Latest Reviews
    Demo
    Top Posts

    KaJ Labs Unveils Ecosystem Alignment Strategy to Strengthen AI and Web3 Integration

    March 14, 20265 Views

    KaJ Labs Unveils Lithic Developer Stack for AI Applications, Games, and Enterprise Systems

    March 14, 20264 Views

    This feed has expired. Please contact us for pricing options.

    May 5, 20263 Views

    Lithosphere Deploys Full-Stack Development Environment for AI-Native Applications

    May 1, 20262 Views
    Don't Miss

    WBTC supply contracts this month following Justin Sun custody drama

    Coinbase May 13, 2026

    WBTC announced it will transition the custody of bitcoin for the token from BitGo to…

    Yellow Network’s Sirkia sees CLARITY Act as reset

    May 13, 2026

    Football legends Ronaldinho, Luis Figo sued for Omegapro crypto scam promo

    May 13, 2026

    NUVA launches $19B tokenized assets on Ethereum

    May 13, 2026
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    Demo
    Top Posts

    Xiaomi rolls out MiMo V2.5 with multimodal AI and improved efficiency

    April 23, 202614 Views

    Meta’s Muse Spark ends its open-source AI era

    May 9, 202611 Views

    Pi Network confirms Consensus 2026 sponsorship

    May 2, 20268 Views

    Anthropic revenue just hit a $30 billion run rate

    April 9, 20268 Views
    Don't Miss

    WBTC supply contracts this month following Justin Sun custody drama

    Coinbase May 13, 2026

    WBTC announced it will transition the custody of bitcoin for the token from BitGo to…

    Yellow Network’s Sirkia sees CLARITY Act as reset

    May 13, 2026

    Football legends Ronaldinho, Luis Figo sued for Omegapro crypto scam promo

    May 13, 2026

    NUVA launches $19B tokenized assets on Ethereum

    May 13, 2026
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    X (Twitter) Instagram YouTube LinkedIn
    Our Picks

    WBTC supply contracts this month following Justin Sun custody drama

    May 13, 2026

    Yellow Network’s Sirkia sees CLARITY Act as reset

    May 13, 2026

    Football legends Ronaldinho, Luis Figo sued for Omegapro crypto scam promo

    May 13, 2026
    Recent Posts
    • WBTC supply contracts this month following Justin Sun custody drama
    • Yellow Network’s Sirkia sees CLARITY Act as reset
    • Football legends Ronaldinho, Luis Figo sued for Omegapro crypto scam promo
    • NUVA launches $19B tokenized assets on Ethereum
    • Vitalik Buterin: ‘Batshit’ Michael Saylor comments ‘not what crypto is about’
    © 2026 - 2026

    Type above and press Enter to search. Press Esc to cancel.