Wednesday, 5 February 2025
26 C
Singapore
35 C
Thailand
23.2 C
Indonesia
26.6 C
Philippines

Apple offers US$1M reward for hacking its AI cloud

Apple is offering a US$1 million reward to anyone who can hack its AI cloud and inviting researchers to test the security of its Private Cloud Compute.

Apple has raised the stakes in digital security, offering up to US$1 million to anyone who can hack into its AI cloud, Private Cloud Compute (PCC). This bold move underscores Apple’s commitment to protecting user privacy and ensuring its artificial intelligence systems remain secure and trustworthy. The PCC will handle tasks requiring greater processing power than achievable on devices, but that comes with a heightened need for robust security.

Apple opens its AI cloud to the public for testing

In a recent Apple Security blog post, the company announced a new public research initiative, inviting developers, security researchers, and the tech-savvy public to examine PCCโ€™s security. Previously, the PCC was only accessible to select security researchers and auditors. Now, by expanding access, Apple hopes to uncover any vulnerabilities in its AI cloud, offering hackers and security experts a chance to find and report flaws.

The PCC operates as Appleโ€™s AI powerhouse, handling complex tasks when on-device capabilities, such as those on iPhones and Macs, fall short. Apple stresses that much of its AI processing is managed on-device to ensure data privacy. However, in cases where greater processing is necessary, data is transferred to the PCC, where Apple employs end-to-end encryption to keep user information secure. Still, leaving personal data on oneโ€™s device can be unsettling to some users, and Appleโ€™s bug bounty aims to reassure them by proving the robustness of its cloud security.

Up to US$1 million on offer for critical vulnerabilities

Appleโ€™s highest bug bounty payout is set at US$1 million for those able to execute malicious code on the PCC servers, posing the greatest potential threat to security. This reward aims to identify any vulnerabilities that could compromise user data or cloud functionality. A second, substantial bounty of US$250,000 will go to those who manage to exploit user data from the AI cloud, with smaller rewards starting at US$150,000 for accessing data from within Appleโ€™s network in a โ€œprivileged network position.โ€

The tiered structure of Appleโ€™s bounty program encourages ethical hackers and security professionals to discover a wide range of vulnerabilities, from critical issues that could allow malicious software to infiltrate the PCC to less severe but still concerning weaknesses. By providing rewards proportional to the risks posed, Apple is protecting its system and fostering a collaborative approach to security.

Security and privacy are Apple’s priorities

Apple has a history of offering rewards for bug identification and has successfully used such programs to prevent security threats. For example, two years ago, Apple paid a university student US$100,000 to identify a vulnerability within its Mac operating system. The stakes have increased with Appleโ€™s AI cloud, and the company hopes that the added incentive will attract top security talent to help safeguard its latest technological advancements.

The PCC will be critical in delivering seamless AI capabilities as Apple Intelligence becomes more widely integrated into products and services. While Apple assures users that data handled by the PCC remains private and is only accessible to the user, it is taking no chances regarding security. By opening its code to public scrutiny and incentivising discoveries, Apple is betting on the expertise of the tech community to identify and address any issues before they become real risks.

Apple sets a high standard for transparency and security in the tech industry with its new AI cloud bug bounty. This initiative could enhance user confidence in Appleโ€™s commitment to privacy and secure data handling if successful.

Hot this week

Intel secures US$2.2 billion in federal grants for chip production

Intel secures US$2.2 billion in CHIPS Act grants to boost U.S. semiconductor manufacturing, with an additional US$5.66 billion pending disbursement.

Nvidia’s DLSS 4 brings enhanced image quality and efficiency

Nvidiaโ€™s latest GPU driver update brings DLSS 4 to unsupported games, improves video upscaling, and introduces Smooth Motion for RTX 50-series owners.

Comcastโ€™s new โ€˜ultra-low lagโ€™ technology aims to transform internet speed

Comcast is rolling out ultra-low lag internet technology to improve video calls and gaming. Major cities will see upgrades, cutting latency by 78%.

New Relic introduces AI observability integration with DeepSeek to drive faster AI adoption and returns

New Relic introduces DeepSeek AI observability integration to help businesses optimise costs, boost performance, and accelerate AI adoption.

ASUS AI POD with NVIDIA GB200 NVL72 set to ship in March, transforming AI infrastructure

ASUS AI POD with NVIDIA GB200 NVL72 to ship in March, offering transformative AI solutions with NVIDIA GPUs, advanced cooling, and high performance.

SECO partners with impact.com to boost Senheng appโ€™s growth through affiliate marketing

SECO partners with impact.com to scale the Senheng app through affiliate marketing, aiming for growth, better ROI, and personalised consumer engagement.

Commvault partners with CrowdStrike to improve cyber threat detection and recovery

Commvault partners with CrowdStrike to enhance threat detection and data recovery, providing businesses with faster responses and stronger cyber resilience.

Unlock free skins during the Overwatch 2 spotlight livestream on February 12

Watch the Overwatch 2 spotlight livestream on February 12 to claim free skins, including Lucioโ€™s Cyber DJ and Flirty Flare Baptiste.

Singtel dominates mobile speeds in Singapore

Singtel and MyRepublic top Ooklaโ€™s 2024 Speedtest Connectivity Report, offering Singaporeans faster and more reliable mobile and broadband internet.

Related Articles