Meta has expanded its bug bounty program for WhatsApp, announcing new incentives to improve security research on the messaging platform alongside a $4 million award to white hat hackers who discover vulnerabilities. According to the tech company’s press statement released on Tuesday, WhatsApp is a lucrative target for state-sponsored hackers and commercial spyware developers. Meta […]Meta has expanded its bug bounty program for WhatsApp, announcing new incentives to improve security research on the messaging platform alongside a $4 million award to white hat hackers who discover vulnerabilities. According to the tech company’s press statement released on Tuesday, WhatsApp is a lucrative target for state-sponsored hackers and commercial spyware developers. Meta […]

Meta unveils $4 million bounty program for WhatsApp security research

2025/11/19 20:11
4 min read
For feedback or concerns regarding this content, please contact us at crypto.news@mexc.com

Meta has expanded its bug bounty program for WhatsApp, announcing new incentives to improve security research on the messaging platform alongside a $4 million award to white hat hackers who discover vulnerabilities.

According to the tech company’s press statement released on Tuesday, WhatsApp is a lucrative target for state-sponsored hackers and commercial spyware developers. Meta said the new initiative seeks to make it easier for security researchers to investigate hacking strategies used specifically on the app messenger.

Meta launches WhatsApp Research Proxy for bug bounty researchers

Meta has introduced a tool called the WhatsApp Research Proxy to help security researchers examine the messaging platform’s network protocol more effectively. Initially available to a select group of long-time bug bounty participants, the company said it helps simplify investigations into WhatsApp’s infrastructure.

The Research Proxy is intended to assist in uncovering vulnerabilities that might otherwise go undetected, and plans to expand access to more researchers over time are underway, leading to its public release in the coming months.

“Our goal is to lower the barrier of entry for academics and other researchers who might not be as familiar with bug bounties to join our program,” a Meta spokesperson said. “WhatsApp clients and server infrastructure are high targets but also among the hardest surfaces to find bugs in.”

Meta issues $25 million in payouts to global bug hunting participation

Meta confirmed that it has already paid $4 million this year for nearly 800 validated reports. Over the past 15 years, the company has awarded more than $25 million to 1,400 researchers from 88 countries, and it received approximately 13,000 submissions from security researchers worldwide.

According to the Facebook and Instagram parent company’s latest blog, academic researchers at the University of Vienna recently reported a novel method for enumerating WhatsApp accounts at scale. 

University of Vienna’s study generated lists of possible phone numbers using open-source tools, and checked if the numbers registered on WhatsApp compiled publicly accessible information. Although the research exceeded the platform’s intended limits, Meta said it provided valuable security flaws it needed to mitigate.

Other bugs were found in an incomplete validation flaw on WhatsApp versions prior to v2.25.23.73, WhatsApp Business for iOS v2.25.23.82, and WhatsApp for Mac v2.25.23.83. 

The vulnerabilities could have allowed attackers to process content retrieved from arbitrary URLs on another user’s device. Meta released an operating system-level patch to address CVE-2025-59489, an exploit that could have installed malware on Quest devices to execute arbitrary code on Unity applications.

In its annual Bug Bounty Researcher Conference, security researcher RyotaK won the “Most Impact Award” for identifying bugs from the Quest device vulnerability traced to Unity’s third-party code. The researcher worked with Unity to resolve the issue affecting apps built on Unity 2017.1 and later.

Meta counts legal victory in antitrust US FTC case

Meta’s bug bounty program announcement comes on the heels of a legal win in its antitrust case against the US Federal Trade Commission, as reported by Cryptopolitan on Tuesday. 

The FTC had alleged five years ago that Meta held a monopoly in social networking through Instagram and WhatsApp. In a memorandum opinion, Judge James Boasberg of the US District Court in Washington, DC, said the FTC had failed to prove its case. 

“Whether or not Meta enjoyed monopoly power in the past, though, the agency must show that it continues to hold such power now. The Court’s verdict today determines that the FTC has not done so. A judgment so stating shall issue this day.”

Meta CEO Mark Zuckerberg, former operating chief Sheryl Sandberg, Instagram co-founder Kevin Systrom, and other executives all gave their testimonies earlier this year. The court had dismissed the case in 2021 for lack of evidence, although the FTC filed an amended complaint that year with updated metrics and user data. 

Boasberg allowed the case to proceed in 2022 after a review, but he finally ruled in Meta’s favor this week.

Joe Simonson, the FTC’s director of public affairs, argued that Meta was favored by Judge Boasberg, whom he claimed was “currently facing articles of impeachment.” 

“We are reviewing all our options,” Simonson told reporters after the ruling, insinuating that another appeal could come.

Claim your free seat in an exclusive crypto trading community - limited to 1,000 members.

Market Opportunity
4 Logo
4 Price(4)
$0.007459
$0.007459$0.007459
+5.65%
USD
4 (4) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact crypto.news@mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Franklin Templeton CEO Dismisses 50bps Rate Cut Ahead FOMC

Franklin Templeton CEO Dismisses 50bps Rate Cut Ahead FOMC

The post Franklin Templeton CEO Dismisses 50bps Rate Cut Ahead FOMC appeared on BitcoinEthereumNews.com. Franklin Templeton CEO Jenny Johnson has weighed in on whether the Federal Reserve should make a 25 basis points (bps) Fed rate cut or 50 bps cut. This comes ahead of the Fed decision today at today’s FOMC meeting, with the market pricing in a 25 bps cut. Bitcoin and the broader crypto market are currently trading flat ahead of the rate cut decision. Franklin Templeton CEO Weighs In On Potential FOMC Decision In a CNBC interview, Jenny Johnson said that she expects the Fed to make a 25 bps cut today instead of a 50 bps cut. She acknowledged the jobs data, which suggested that the labor market is weakening. However, she noted that this data is backward-looking, indicating that it doesn’t show the current state of the economy. She alluded to the wage growth, which she remarked is an indication of a robust labor market. She added that retail sales are up and that consumers are still spending, despite inflation being sticky at 3%, which makes a case for why the FOMC should opt against a 50-basis-point Fed rate cut. In line with this, the Franklin Templeton CEO said that she would go with a 25 bps rate cut if she were Jerome Powell. She remarked that the Fed still has the October and December FOMC meetings to make further cuts if the incoming data warrants it. Johnson also asserted that the data show a robust economy. However, she noted that there can’t be an argument for no Fed rate cut since Powell already signaled at Jackson Hole that they were likely to lower interest rates at this meeting due to concerns over a weakening labor market. Notably, her comment comes as experts argue for both sides on why the Fed should make a 25 bps cut or…
Share
BitcoinEthereumNews2025/09/18 00:36
Payroll giant Gusto adds USDC as a payment option for international contractors for the same day.

Payroll giant Gusto adds USDC as a payment option for international contractors for the same day.

PANews reported on March 20th that, according to SolanaFloor, payroll services giant Gusto has added a same-day payment option for international contractors, supporting
Share
PANews2026/03/20 10:55
US charges 3 tied to Super Micro Computer with helping smuggle AI chips to China

US charges 3 tied to Super Micro Computer with helping smuggle AI chips to China

The scheme sees US-made servers being sent through Taiwan to other countries in Southeast Asia, where they are swapped into unmarked boxes and sent onward to China
Share
Rappler2026/03/20 11:36