Apple’s Security Bounty system rewards any researcher or company that can bring the company’s attention to vulnerabilities or exploitation techniques that could pose a security threat to users of the company’s operating systems. Apple’s bug bounty system was initially a private program but was opened to the public in 2019; the company has historically raised the bounty numerous times also and currently awards up to $1 million U.S. dollars. Apple maintains a strong pro-privacy stance and has been criticised in the past for insufficient data security on its devices, both of these issues could be complicated massively if system vulnerabilities were to be sold to a higher bidder that seeks to exploit their system vulnerabilities. Is Apple’s bug bounty system enough to stop vulnerabilities being sold on a black market?

