The Microsoft Bug Bounty Programs are subject to the legal terms and conditions outlined here, and our bounty Safe Harbor policy.

Bug Bounty Hunter is a job that requires skill. Finding bugs that have already been found will not yield the bounty hunters.

The first bug bounty program was released in 1983 for developers to hack Hunter & Ready's Versatile Real-Time Executive Operating System.

Using data from bug bounty biz HackerOne, security shop Trail of Bits observes that the top one per cent of bug hunters found on average 0.87 bugs per month, resulting in bounty earnings equivalent to an average yearly salary of $34,255 (£26,500).

The author — Peter Yaworski— is a prolific bug bounty hunter and explains how to find many of the most common (and fruitful) bugs around.

Security researchers looking to earn a living as bug bounty hunters would to do better to pursue actual insects.

But unlike a hacker looking for vulnerabilities to cause damage or steal data, Paxton-Fear is a bug bounty hunter.

For example, Google's bug bounty program will pay you up to $31,337 if you report a critical security vulnerability in a Google service.

The sheer number of bug bounty programs in existence and the fact that the bounties occasionally reach tens or hundreds of thousands dollars has, as a result, lead many a bug hunter …

If a developer reported a bug, they would receive a Volkswagen Beetle (aka a VW "bug") as a reward.

The bugs she finds are reported to the companies that write the code.

As such, we encourage everyone to participate in our open bug bounty program, which incentivizes researchers and hackers alike to responsibly find, disclose, and help us resolve security vulnerabilities.