English

English

X

Microsoft is offering a reward of up to $15,000 for the purpose of enticing AI-powered Bing

Microsoft warmly invites you to test its new AI-powered Bing search tools and push them to the limits of their existence. If you succeed in provoking ...

K. Holt

Oct 13, 2023

Microsoft is offering a reward of up to $15,000 for the purpose of enticing AI-powered Bing

Microsoft warmly invites you to test its new AI-powered Bing search tools and push them to the limits of their existence. If you succeed in provoking an existential crisis in AI Bing, Microsoft is willing to offer a reward of up to $15,000 for your efforts.

Indeed, AI Bing has become part of Microsoft's bug bounty program, as reported by Bleeping Computer. The program is primarily designed for security professionals, who are encouraged to identify and report any vulnerabilities or security issues they discover in Microsoft's products and services. In return, they receive a monetary reward from Microsoft. To qualify for the full $15,000 reward, participants must submit a comprehensive report that satisfies a lengthy list of submission requirements.

In order to be eligible for the bug bounty program, you will need to determine the specific type of vulnerability and the affected environment, which includes providing a BuildLabEx string. Additionally, you will be required to produce a vulnerability reproduction report, a proof of concept, and fulfill other specified criteria. To be more precise, Microsoft is seeking vulnerabilities that align with the following definitions:

  • Influencing and changing Bing’s chat behavior across user boundaries, i.e. change the AI in ways that impact all other users.
  • Modifying Bing’s chat behavior by adjusting client and/or server visible configuration, such as setting debug flags, changing feature flags, etc.
  • Breaking Bing’s cross-conversation memory protections and history deletion.
  • Revealing Bing’s internal workings and prompts, decision making processes and confidential information.
  • Bypassing Bing’s chat mode session limits and/or restrictions/rules.

So, as you can see, this goes beyond simply trying to provoke Bing with perplexing questions until it undergoes an existential crisis or begins gaslighting you about the date. However, the new program encompasses nearly all AI-powered Bing services:

  • AI-powered Bing experiences on bing.com in Browser (All major vendors are supported, including Bing Chat, Bing Chat for Enterprise, and Bing Image Creator)
  • AI-powered Bing integration in Microsoft Edge (Windows), including Bing Chat for Enterprise
  • AI-powered Bing integration in the Microsoft Start Application (iOS and Android)
  • AI-powered Bing integration in the Skype Mobile Application (iOS and Android)

So, you have numerous attack vectors to explore, which provides ample opportunities. Furthermore, Microsoft has disclosed that from the previous year up until June, they have disbursed over $13 million in bug bounty rewards, with a single payout of $200,000 to an individual. This indicates that certain individuals have successfully met all of Microsoft's security requirements. Good luck!

POPULAR

The benchmarks for the MSI Nvidia RTX 4060 Ti 16GB have revealed sluggish performance in comparison to the 8GB model Hardware

The benchmarks for the MSI Nvidia RTX 4060 Ti 16GB have revealed sluggish performance in comparison to the 8GB model

The Nvidia GeForce RTX 4060 Ti 16GB appeared with a discreet announcement, largely due to Nvidia's decision and its partner manufacturers (AIB) not to...

Casey L. Moore

Jul 21, 2023

Windows Copilot is not functioning properly when used alongside AMD's Adrenalin software Hardware

Windows Copilot is not functioning properly when used alongside AMD's Adrenalin software

Microsoft's Copilot feature is being made available to users worldwide. Given the scale of providing an AI assistant to hundreds of millions of users,...

Anthony Gharib

Oct 04, 2023

I'm sorry, but it seems like your sentence is incomplete. Could you please provide the complete sentence or clarify your request? Hardware

I'm sorry, but it seems like your sentence is incomplete. Could you please provide the complete sentence or clarify your request?

Lords of the Fallen, the upcoming game from developer Hexworks, is scheduled to release with support for AMD FSR 3 and Nvidia DLSS 3 right from the st...

Nathan Evans

Oct 12, 2023

Surfshark: Fast, feature-rich Hardware

Surfshark: Fast, feature-rich

Surfshark VPN was launched in 2018 - much later than many of the top VPN services like ExpressVPN and NordVPN. Despite being relatively new, Surfshark...

Matias Grez

Sept 06, 2023

Review of Creality Ender 3 V3 SE: Over 200 mm/s for less than $200 Hardware

Review of Creality Ender 3 V3 SE: Over 200 mm/s for less than $200

The latest model, Ender 3, from Creality is a beginner user's dream, with enhancements that were previously considered a luxury, all while keeping the...

Paulina Dedaj

Sept 24, 2023