$1 Million Sandbox Challenge Uncovers Linux Kernel Flaws

 Million Sandbox Challenge Uncovers Linux Kernel Flaws
Vercel’s two-week sandbox bug-bounty challenge generated 1,285 reports, but none of the findings allowed access to customer data. The most significant issues were two Linux kernel networking flaws, and Vercel also used the event to improve its sandbox and automate triage with an agentic system. #Vercel #LinuxKernel #Firecracker #HackerOne #TrailofBits

Keypoints

  • Vercel ran a two-week sandbox bug-bounty challenge with a $1 million reward pool.
  • The program produced 1,285 filings and substantial validation activity.
  • None of the reports showed access to real customer data.
  • The most serious findings were two defects in the Linux kernel networking stack.
  • Vercel built an agentic triage system to handle the large volume of reports faster.

Read More: https://www.securityweek.com/1-million-sandbox-challenge-uncovers-linux-kernel-flaws/