Shilpa Kumari showcases GitHub’s expanded Bug Bounty incentives for Cybersecurity Awareness Month 2025, including bonuses for Copilot-related features and recognition of top security researchers.

GitHub Bug Bounty: Enhanced Incentives for Cybersecurity Awareness Month 2025

October marks Cybersecurity Awareness Month—a period highlighting the importance of security for the worldwide developer community. GitHub’s Bug Bounty team celebrates by recognizing the vital work of security researchers and launching new ways to reward impactful contributions.

Special Incentives in October 2025

For October 1–31, 2025, GitHub will grant an additional 10% bonus on all eligible, valid vulnerability submissions that pertain to the following features:

To qualify, researchers must ensure their reports clearly explain how the vulnerability connects to one of these features. Full details about program scope and rewards are available on bounty.github.com.

2025 Glass Firewall Conference

In partnership with Capital One, Salesforce, and HackerOne, GitHub is co-hosting the Glass Firewall Conference. This exclusive gathering supports women pursuing careers or hobbies in security research and ethical hacking, aiming to foster an inclusive, supportive environment. Attendees can explore foundational knowledge, connect with peers, and be inspired to start or grow their journey in cybersecurity.

Researcher Spotlight

Each year, GitHub highlights researchers whose work drives the program forward. Through interviews, these featured contributors share their approaches and stories, offering insights for the community. Explore past spotlights:

Stay tuned for additional features during Cybersecurity Awareness Month.

Participate

Every Bug Bounty submission helps make GitHub, its products, and the broader developer community more secure. If you’re interested in joining, visit bounty.github.com to review program rules, scope, and rewards.

This post appeared first on “The GitHub Blog”. Read the entire article here