
Bitdefender
External Program
Submit bugs directly to this organization


External Program
Submit bugs directly to this organization
The Bug Bounty Reward program encourages security researchers to identify and submit vulnerability reports regarding virtually everything that bears the Bitdefender brand, including but not limited to the website, products and services.
Participation in the Bitdefender Bug Bounty Reward program is voluntary and subject to the legal terms and conditions detailed on Terms and Conditions page. By submitting a vulnerability report to Bitdefender, you acknowledge that you have read and agreed to our program terms.
The program covers any exploitable vulnerability that can compromise the integrity of our user data, crash applications (leading to compromise of data) or disclose sensitive information (for example remote code execution, SQL injection, Cross-Site Scripting, Cross-Site Request Forgery, information disclosure of sensitive data, authentication theft or bypass, clickjacking).
Make sure your submission report includes the proof of concept and replication information.
This is not a BETA test program. Cosmetic bugs, UX issues, product crashes that can’t be exploited will not qualify.
We encourage you to send your submissions in an encrypted format to [email protected]
We prefer PGP and you can import our public key from here. Make sure your report includes: