FOLLOW US

Thu

June 4, 2026

America October 9, 2020 4 mins read

Apple bug bounty program: hackers rewarded $288,500 for reporting 55 vulnerabilities

America ı By Jackie Allen

0 Comments

ciobulletin-apple-bug-bounty-program

Apple Inc (NASDAQ: AAPL) rewarded $28,500 to a team of hackers who submitted a detailed report about the 55 vulnerabilities they found after hacking the tech giant's security bounty or bug bounty program.

In a blog post, one of the hackers, Sam Curry wrote that he and his fellow hackers spent three months hacking the Apple Security Bounty program.

 He and Brett Buerhaus, Ben Sadeghipour, Samuel Erb, and Tanner Barnes worked as a team from July 6 to October 6 understanding the Apple infrastructure and targeting its individual web servers that they think are more likely to have security flaws.

According to Curry, they discovered 55 vulnerabilities with 11 critical severity, 29 high severity, 13 medium severity, and 2 low severity reports.

The security flaws that they found in the tech giant's infrasture could have "allowed an attacker to fully compromise both customer and employee applications, launch a worm capable of automatically taking over a victim's iCloud account, retrieve source code for internal Apple projects," wrote Curry.

He added that the vulnerabilities could have enabled bad actors to "fully compromise an industrial control warehouse software used by Apple, and take over the sessions of Apple employees with the capability of accessing management tools and sensitive resources."

Curry noted that most of the vulnerabilities they reported to Apple have been fixed as of October 6. It only takes as little as 4-6 hours to fix the problems.

Apple has a massive and complex infrastructure

Curry said they started scanning to determine what the Apple universe includes and what parts would be accessible to them. The results of their scanning were indexed in a dashboard along with HTTP status code, response body, headers, and a screenshot of the accessible web servers under the various domains owned by Apple.

Apple owns all of the 17.0.0.0/8 IP range, including 25,000 web servers with 10,000 under apple.com, 7,000 unique domains, as well as Apple’s own TLD (.apple) are part of this vital and growing infrastructure. 

Curry said they spent the majority of their time on the core foundations. The core of functionality comes from the 17.0.0.0/8 IP range, .apple.com, and .icloud.com.

They extensively scanned Apple’s systems and tested various exploits and found vulnerabilities. 

12

Previous Article

Six men arrested, charged with conspiracy to kidnap Michigan Gov. Gretchen Whitmer

Read More
Jackie Allen
3155 Posts

Jackie Allen

Jackie is a freelance journalist and technology geek. She worked as a telecom project director for AT&T and BellSouth. Before joining the USA Herald she has written books, articles, blogs and whitepapers. Her clients include Samsung and other technology companies.

Discussion

No comments yet. Be the first to join the discussion!

Don’t Miss It
Arizona January 11, 2025
Kelly Warner Law Firm Blames USA…

In what appears as a desperate attempt to defend multiple…

By – USA Herald
Arizona January 4, 2025
Aaron Kelly Law Firm Resorts To…

Attorney Aaron Kelly and his law partner Daniel Warner are…

By – Jeff Watterson
Arizona December 12, 2024
Arizona Bar Opens Investigation on Attorney…

USA Herald recently reported on a developing story involving Attorneys…

By – Paul O'Neal
America June 2, 2026
Josh Duggar Appeal Denied as Convicted…

Josh Duggar remains behind bars after a federal judge denied…

By – Jackie Allen
America June 2, 2026
Federal Judge Lets ’86 47′ Flag…

An Obama-appointed judge just ruled a political group can keep…

By – Samuel Lopez
California News June 2, 2026
Sabrina Carpenter Granted Restraining Order Following…

Citing “severe emotional distress,” the American pop star has successfully…

By – Tyler Brooks
Entertainment June 2, 2026
The Diddy Fallout: Cassie Fights Back…

As Sean “Diddy” Combs serves time behind bars, the shockwaves…

By – Tyler Brooks
America June 2, 2026
South Carolina Jury Clears Store Owner…

A South Carolina courtroom erupted with emotion Monday after a…

By – Tyler Brooks
Business June 2, 2026
Archer Aviation: The eVTOL Takeoff Facing…

Strategic Analysis — June 2026 The electric vertical takeoff and…

By – Tyler Brooks
America June 1, 2026
Sleeping Dog Documentary Chronicles Jeremy Corbell’s…

The new documentary Sleeping Dog arrives at a pivotal moment…

By – Jackie Allen
America June 1, 2026
Kendall Jenner, Jacob Elordi and the…

I’ve been writing about royals and celebrities for 20 years.…

By – Nathan Kay
America June 1, 2026
Chaotic Midnight Shooting Leaves 3 Bloodied…

Downtown San Jose gunfire wounds 3, sparks wild building crash…

By – Tyler Brooks
America June 1, 2026
43-year-old Man Hospitalized After a Stranger…

Stranger shoots San Antonio man, 43, through door By Tyler…

By – Tyler Brooks
America June 1, 2026
Hurricane Season Starts Today – Here’s…

Texas faces 20% hurricane risk as season begins By Tyler…

By – Tyler Brooks
America June 1, 2026
U.S. Military Strike In The Eastern…

U.S. Pacific boat strike kills 3, casualties cross 200 By…

By – Tyler Brooks
America June 1, 2026
Rare Blue Micromoon Lights Up the…

Skywatchers are in for a unique celestial event as a…

By – Jackie Allen
America May 31, 2026
Murder-for-hire Ends with Life Sentence for…

A shocking Murder-for-hire case that spanned multiple states has concluded…

By – Jackie Allen
America May 31, 2026
Frank Lloyd Wright and the Taliesin…

In The Killer and Frank Lloyd Wright, veteran true-crime author…

By – Jackie Allen
America May 30, 2026
Hollywood at a Crossroads: Spencer Pratt…

Los Angeles has its primary election this Tuesday, and the…

By – Jackie Allen
America May 30, 2026
Hayden Panettiere has a Memoir About…

Hayden Panettiere is revealing the emotional toll of growing up…

By – Jackie Allen
America May 29, 2026
Blue Origin Rocket Explodes in Massive…

Blue Origin suffered a major setback Thursday night when one…

By – Jackie Allen
America May 29, 2026
Blue Origin Rocket Explodes in Massive…

Blue Origin suffered a major setback Thursday night when one…

By – Jackie Allen
America May 28, 2026
Alien Coneheads: New DNA Study Doesn’t…

The mystery surrounding the so-called Alien Coneheads of Peru has…

By – Jackie Allen
America May 28, 2026
Trump’s Alien.gov Reveal Turns Into Immigration…

INSIDE THIS REPORT What millions thought would be a historic…

By – Samuel Lopez
America May 28, 2026
Trump’s UFO files reveal mysterious flying…

The newly released UFO Files from the Trump administration have…

By – Jackie Allen
America May 28, 2026
Who’s Lying? E. Jean Carroll Faces…

Author and columnist E. Jean Carroll is once again at…

By – Jackie Allen
America May 28, 2026
Super El Niño: Will 2026 be…

Scientists across the globe are increasingly warning that a potential…

By – Jackie Allen
Business June 2, 2026
Archer Aviation: The eVTOL Takeoff Facing…

Strategic Analysis — June 2026 The electric vertical takeoff and…

By – Tyler Brooks
Featured June 2, 2026
From a Casual Night Out to…

It Doesn’t Happen Here’: Quiet Suburb Left Shattered After Fatal…

By – Tyler Brooks
Business June 2, 2026
From Folklore to High Finance: The…

Wall Street and Global Powers Monetize UFO Craze By Tyler…

By – Tyler Brooks
Business June 2, 2026
Anthropic Files Historic IPO Triggering Fierce…

Anthropic Files Historic IPO Triggering Fierce Wall Street Ethics War…

By – Tyler Brooks
Florida News June 1, 2026
Manhunt underway for Florida felon Adriel…

Manhunt underway for Florida felon Adriel Martinez after release breach…

By – Tyler Brooks
Featured June 1, 2026
Hawaii Warns Communities of Impending Kilauea…

Hawaii Warns Communities of Impending Kilauea Ashfall By Tyler Brooks…

By – Tyler Brooks
Health June 1, 2026
New Pill Doubles Survival for Pancreatic…

Pancreatic cancer pill doubles life to 13 months By Tyler…

By – Tyler Brooks
California News May 31, 2026
FDA warns public as cookie firm…

FDA warns public as cookie firm rejects urgent recall request…

By – Tyler Brooks
Health May 31, 2026
Trump orders CDC to slash childhood…

Trump orders CDC to slash childhood vaccines from 17 to…

By – Tyler Brooks
Health May 30, 2026
USDA warns Americans over Salmonella in…

USDA warns Americans over Salmonella in meat products By Tylor…

By – Tyler Brooks
America May 28, 2026
GKN Aerospace’s Biggest Battle May Not…

By Samuel López | USA Herald The immediate danger of…

By – Samuel Lopez
America May 24, 2026
Garden Grove Chemical Crisis Sparks Class…

By Samuel López | USA Herald A full-scale legal and…

By – Samuel Lopez
Featured June 1, 2026
Wembanyama in Tears: Spurs Dethrone Thunder…

Spurs dethrone Thunder in epic Game 7 road victory By…

By – Tyler Brooks
High Profile Court Cases May 31, 2026
Supreme Court signals 27 states could…

Supreme Court signals 27 states could ban trans female athletes…

By – Tyler Brooks
Sports May 31, 2026
Mauricio Pochettino sounds alarm on Chris…

Mauricio Pochettino sounds alarm on Chris Richards injury By Tylor…

By – Tyler Brooks
International May 30, 2026
USMNT star Chris Richards tears two…

USMNT star Chris Richards tears two ankle ligaments By Tylor…

By – Tyler Brooks
America May 28, 2026
“Money” Mayweather Tucks Tail: $100 Million…

Floyd Mayweather has beaten every opponent who ever climbed into…

By – Samuel Lopez
America May 27, 2026
Mackenzie Shirilla Sent Text Messages to…

Mackenzie Shirilla is once again at the center of public…

By – Jackie Allen

No posts found.

No posts found.

Signup for the USA Herald
exclusive Newsletter