Intel suspends bug bounty program that paid up to $100,000 per flaw — new Intigriti disclosure program offers no rewards
Intel’s bug bounty program on Intigriti now shows as suspended, and a new Intel disclosure program there pays no bounties.
Intel has suspended its bug bounty program that once offered up to $100,000 per flaw, according to reports from Phoronix. The company's new Intigriti disclosure program, which replaces the old program, does not offer any rewards. Intel did not provide any explanation for the change. The Intigriti site confirms the program as suspended, although the bounty board remains up but lists the program as suspended.
The old program, which launched in 2017 and was open to all researchers since 2018, covered software, hardware, firmware, and open-source projects. Nearly half of the 231 CVEs Intel addressed in 2020 originated from the bounty program. The program's scope expanded to include web services between mid-2025 and October 2025, but Intel announced the suspension about eight months later.
A report suggested that the Linux kernel and other open-source projects being overwhelmed with security reports may have contributed to the suspension. AI-assisted research is said to be expanding vulnerability discovery across the ecosystem, but it may not have a significant impact on hardware and firmware. Intel's next steps will be closely watched to determine if the suspension is permanent.
Written by urgent.news from Tom's Hardware's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.