Chat with us, powered by LiveChat FCA to Offer Cash for Bugs | Quadratec Skip to main content
Blog

Fiat Chrysler Automobiles announced Wednesday it will become the first major automaker to put a bounty on bugs.

No, not the creepy crawling ones, but the dangerous security ones.  The ones that hackers could use, via current vehicle software flaws, to take control of an automobile or SUV with the intent to harm its owners through theft, monetary, or safety issues.

Dubbed the ‘public bug bounty program’, FCA said it will offer rewards up to $1,500 per bug – depending on impact and severity – to ‘ethical’ hackers who report on data security weaknesses in FCA vehicles.

Bugcrowd Inc., a crowdsourced community of cybersecurity researchers based in San Franscisco, will manage the program for FCA.

All Jeep-based vehicles are included in this program, the automaker said.

“There are a lot of people that like to tinker with their vehicles or tinker with IT systems,” said Titus Melnyk, FCA senior manager of security architecture.  “We want to encourage independent security researchers to reach out to us and share what they’ve found so that we can fix potential vulnerabilities before they’re an issue for our consumers.”

“By going with a financial reward, I think it’s going to encourage people to look for these vulnerabilities,”  Melnyk added, saying the automaker may up the rewards depending on how the launch of the program grows and what’s found.

Last year, a 2014 Jeep Cherokee was remotely hacked by a team of researchers who were able to control many of the vehicle’s functions.  More recently, a thief was shown starting a Jeep Wrangler using only a laptop. In the first case, FCA issued a software update for many of its vehicles equipped with the 8.4-inch Uconnect system.

Bugcrowd manages all reward payouts, which are scaled based upon the severity of the product security vulnerability identified, and the scope of impacted users. A reported vulnerability could earn a bug bounty of $150 to $1,500.

“It’s critical that the response happens quickly,”  Melnyk said. “If we get any information from this program that’s valuable for us in protecting the vehicle, then it’s paid for itself, in my opinion.”

Casey Ellis, Bugcrowd's chief executive, said during a media briefing that his company has 32,000 researchers who work through its service.  All are rated based on the quality of their work, he said.

“Automotive cybersafety is real, critical, and here to stay,” Ellis said. “Car manufacturers have the opportunity to engage the community of hackers that is already at the table and ready to help, and FCA US is the first full-line automaker to optimize that relationship through its paid bounty program.”

FCA said it “may make research findings public,” depending on the nature and potential vulnerability of the findings, and that the bug bounty program is one of the best ways to address cybersecurity challenges created by the convergence of technology and  the automotive industry.

“Exposing or publicizing vulnerabilities for the singular purpose of grabbing headlines or fame does little to protect the consumer,” Melnyk said. “Rather, we want to reward security researchers for the time and effort, which ultimately benefits us all.”

FCA & Bugcrowd soundbites: https://youtu.be/LEyYDwXJDMc

 

About Quadratec:

Since 1990, Quadratec's mission is always to deliver Expert Advice and Unbeatable Prices to enthusiasts of the legendary Jeep® CJ & Wrangler, Cherokee and Grand Cherokee.  Quadratec's courteous factory-trained sales & customer service staff has the knowledge to make sure you, and your vehicle, get exactly what you need.  Contact us at 800-745-2348 or www.quadratec.com.

Top Jeep Articles

Red Jeep covered in snow with trees as a backdrop
  • December 16, 2025
  • 5 min read
Merry Jeepmas Day Nine: How to Remove Ice And Snow From Your Jeep's Soft Top Windows
How to Protect Your Jeep Soft Top Windows in Winter: Safe Snow Removal Tips, What to Avoid, and How to Prevent Cracking or Damage
READ MORE
  • December 16, 2025
  • 7 min read
In Stock: Top 10 Jeep Holiday Gifts Under $50
Last-Minute Jeep Gifts Under $50: Top In-Stock Accessories Every Wrangler or Gladiator Owner Will Appreciate This Holiday Season
READ MORE
  • December 15, 2025
  • 5 min read
Merry Jeepmas Day Eight: Tru-Fit Eco Leather Seat Covers
Built for the daily grind and the weekend getaway, Tru-Fit Eco Leather Seat Covers deliver the perfect blend of durability, comfort, and style for your Jeep’s interior.
READ MORE
  • December 12, 2025
  • 9 min read
Merry Jeepmas Day Seven: Top Winter Jeep Products
The short days and cold temperatures mean it is a great time to take inventory of what your Jeep needs. Here are some of the best moving products so far this season.
READ MORE
Orange Jeep on a snowy road with a mountain background
  • December 12, 2025
  • 4 min read
2026 Jeep Wrangler Whitecap: A Heritage-Driven Special Edition That Celebrates Jeep’s Past While Defining Its Future
A Heritage-Inspired Special Edition Celebrating Jeep’s 85 Years With Retro Styling, Modern Capability, and a Yearlong Twelve 4 Twelve Rollout
READ MORE
  • December 11, 2025
  • 4 min read
Merry Jeepmas Day Six: Quadratec Dead Pedal
Why the Quadratec Jeep Dead Pedal Is a Must for any JL & JT Owner on Your Gift List this Holiday Season.
READ MORE
  • December 11, 2025
  • 4 min read
Jeep Headlights Q&A: Everything You Need to Know Before Your Next Upgrade
A Complete Guide to Jeep Headlight Upgrades: LED vs. Halogen, Projectors vs. Reflectors, Legal Options, Installation Tips & FAQ for Wrangler and CJ Owners
READ MORE
  • December 10, 2025
  • 7 min read
Merry Jeepmas Day Five: How To Enjoy Jeep Winter Driving
Essential Winter Driving Tips for Jeep Owners: How to Prepare, Maintain Traction, and Stay Safe on Snow- and Ice-Covered Trails
READ MORE
  • December 9, 2025
  • 8 min read
Merry Jeepmas Day Four: Best Jeep Winter Trail Recovery Tips
Along with picturesque scenery, winter months also offer some amazing off-roading that offers its own set of features and challenges that you should realize.
READ MORE