
A Year of Apple Security Bounty Research: 16 Closed Findings and Full Disclosure
CybersecurityBugBountyVulnerabilitiesDisclosure
The author submitted 16 security reports to Apple’s Security Bounty program between 2024 and 2025, all of which have now been closed. The write-up includes details on all findings, covering rejected reports, cases where proof-of-concept (PoC) code was flawed, and instances where exploit development was incomplete. The disclosure is presented without exaggeration or attempts to claim unnecessary CVEs.