Delhi hacker wins $30,000 reward from Microsoft for finding bug in Azure cloud system | The Business Standard
Skip to main content
  • Epaper
  • Economy
    • Aviation
    • Banking
    • Bazaar
    • Budget
    • Industry
    • NBR
    • RMG
    • Corporates
  • Stocks
  • Analysis
  • Videos
    • TBS Today
    • TBS Stories
    • TBS World
    • News of the day
    • TBS Programs
    • Podcast
    • Editor's Pick
  • World+Biz
  • Features
    • Panorama
    • The Big Picture
    • Pursuit
    • Habitat
    • Thoughts
    • Splash
    • Mode
    • Tech
    • Explorer
    • Brands
    • In Focus
    • Book Review
    • Earth
    • Food
    • Luxury
    • Wheels
  • Subscribe
    • Epaper
    • GOVT. Ad
  • More
    • Sports
    • TBS Graduates
    • Bangladesh
    • Supplement
    • Infograph
    • Archive
    • Gallery
    • Long Read
    • Interviews
    • Offbeat
    • Magazine
    • Climate Change
    • Health
    • Cartoons
  • বাংলা
The Business Standard

Saturday
May 17, 2025

Sign In
Subscribe
  • Epaper
  • Economy
    • Aviation
    • Banking
    • Bazaar
    • Budget
    • Industry
    • NBR
    • RMG
    • Corporates
  • Stocks
  • Analysis
  • Videos
    • TBS Today
    • TBS Stories
    • TBS World
    • News of the day
    • TBS Programs
    • Podcast
    • Editor's Pick
  • World+Biz
  • Features
    • Panorama
    • The Big Picture
    • Pursuit
    • Habitat
    • Thoughts
    • Splash
    • Mode
    • Tech
    • Explorer
    • Brands
    • In Focus
    • Book Review
    • Earth
    • Food
    • Luxury
    • Wheels
  • Subscribe
    • Epaper
    • GOVT. Ad
  • More
    • Sports
    • TBS Graduates
    • Bangladesh
    • Supplement
    • Infograph
    • Archive
    • Gallery
    • Long Read
    • Interviews
    • Offbeat
    • Magazine
    • Climate Change
    • Health
    • Cartoons
  • বাংলা
SATURDAY, MAY 17, 2025
Delhi hacker wins $30,000 reward from Microsoft for finding bug in Azure cloud system

South Asia

TBS Report
29 June, 2021, 10:00 pm
Last modified: 29 June, 2021, 10:12 pm

Related News

  • The new Surface Pro is a great iPad alternative for Windows fans
  • Microsoft Bangladesh Championship begins 10 May
  • Meta launches AI app, Zuckerberg chats with Microsoft CEO Satya Nadella at developer conference
  • Microsoft fires employees protesting AI technology contracts with Israel
  • 'Shame on you all': Indian-American engineer resigns over Microsoft's Israel ties

Delhi hacker wins $30,000 reward from Microsoft for finding bug in Azure cloud system

Aditi Singh, who found a similar bug in Facebook just two months back and won a bounty of $7500, said that both companies had a remote code execution (RCE) bug, which is relatively new and is currently not being paid much attention to

TBS Report
29 June, 2021, 10:00 pm
Last modified: 29 June, 2021, 10:12 pm
Aditi Singh. Picture: Collected
Aditi Singh. Picture: Collected

A 20-year-old ethical hacker from the Indian capital of Delhi, has won a reward of $30,000 for spotting a bug in Microsoft's Azure cloud system.

Aditi Singh, who found a similar bug in Facebook just two months back and won a bounty of $7500, said that both companies had a remote code execution (RCE) bug, which is relatively new and is currently not being paid much attention to, reports the India Today.

Through such bugs, hackers can get access to internal systems and the information they hold.

The Business Standard Google News Keep updated, follow The Business Standard's Google news channel

Aditi notes that it is not easy spotting bugs and that ethical hackers have to stay on top of their game about new bugs, so they can report about them and still be eligible for their payouts. She, however, also emphasises on gaining knowledge and learning about ethical hacking first, rather than focussing on just making money.

"Microsoft has only fixed the bug which I spotted two months back. They have not fixed all of them," said Aditi, who was the first one to spot the RCE bug and said that the tech giant took two months to respond as they were checking if anybody had downloaded its insecure version. She suggests that before even starting to find a bug, people should ask the support team of that company ask if they are hosting a bounty program, and if that company confirms about such a program, bounty hunters should go ahead.

Bug bounty hunters are mostly certified cybersecurity professionals or security researchers who crawl the web and scan the systems for bugs or flaws through which hackers can sneak in and alert the companies. If they are successful, they are rewarded with cash.

Talking about the RCE bug spotted in Facebook and Microsoft, Aditi explains that the developers wrote the code directly when they should have the first download a Node Package Manager -- which is a subsidiary of GitHub where anybody can access the codes from these companies as they are open-sourced.

"Developers should write codes only after they have the NPM," she said.

Aditi has been into ethical hacking for the past two years. She first hacked into her neighbour's WiFi password (which she considers a personal feat), and there has been no looking back ever since.

"I took an interest in ethical hacking when I was preparing for NEET, my medical entrance in Kota," Aditi said.

"I didn't get through in medical school but have found bugs in over 40 companies including Facebook, Tiktok, Microsoft, Mozilla, Paytm, Ethereum, HP, among others."

She has also received appreciation letters from Harvard University, Columbia University, Stanford University, University of California and has also been highlighted in the Google hall of fame.

"I was certain I wanted to get into ethical hacking after I reported an OTP bypass bug in TikTok's Forgot Password section and won a bounty of $1100," added Aditi, who is self-taught and notes that anyone who can access Google and Twitter can become an ethical hacker.

"There are multiple resources and Google, Twitter and Hacker One that have write-ups with explanations about ethical hacking," Aditi said.

She further added sthat she was hired for a job after hacking into the company's application.

"They did not ask for my qualification but only saw my skills, and I was hired."

Aditi notes that if people want to get into advanced learning of hacking, then they should know a programming language -- either Python or JavaScript. She also suggests OSCP, which is a certificate course aimed at helping bussing ethical hackers.

When asked where she spends her "bounty", and she said most of it goes into buying hacking tools or spending on certificate courses about hacking.

Tech / Top News / World+Biz

bug / Microsoft / Azure Cloud System

Comments

While most comments will be posted if they are on-topic and not abusive, moderation decisions are subjective. Published comments are readers’ own views and The Business Standard does not endorse any of the readers’ comments.

Top Stories

  • Illustration: TBS
    Inflation control, investment attraction prioritised in upcoming budget
  • A teacher offers water to a Jagannath University student breaking their hunger strike at Kakrail Mosque intersection, as protesters announce the end of their movement today (16 May) after their demands were met. Photo: TBS
    JnU protesters end strike as govt agrees to accept demands
  • Women workers, students, teachers, cultural activists, professionals, and people from various walks of life participate in a march with banners and placards demanding equal rights and social justice for women. The march was part of the “Narir Dake Maitree Jatra” programme held in front of the National Parliament on Manik Mia Avenue in Dhaka on 16 May 2025. Photo: Rajib Dhar
    'We will not be silenced': Women unite in colourful protest for equity, dignity

MOST VIEWED

  • Up to 20% dearness allowance for govt employees likely from July
    Up to 20% dearness allowance for govt employees likely from July
  • Infographics: TBS
    Textile sector under pressure; big players buck the trend
  • Representational image. Photo: TBS
    Prime mover workers to go on nationwide strike tomorrow
  • Shift to market-based exchange rate regime – what does it mean for the economy?
    Shift to market-based exchange rate regime – what does it mean for the economy?
  • Rais Uddin, general secretary of the university's teachers' association, made the announcement while talking to the media last night (15 May). Photo: Videograb
    JnU teachers, students to go on mass hunger strike after Friday prayers
  • One Sky Communications Limited leads technology training for Bangladesh Defence Forces
    One Sky Communications Limited leads technology training for Bangladesh Defence Forces

Related News

  • The new Surface Pro is a great iPad alternative for Windows fans
  • Microsoft Bangladesh Championship begins 10 May
  • Meta launches AI app, Zuckerberg chats with Microsoft CEO Satya Nadella at developer conference
  • Microsoft fires employees protesting AI technology contracts with Israel
  • 'Shame on you all': Indian-American engineer resigns over Microsoft's Israel ties

Features

Illustration: TBS

Cassettes, cards, and a contactless future: NFC’s expanding role in Bangladesh

7h | Panorama
Photo: Collected

The never-ending hype around China Mart and Thailand Haul

7h | Mode
Hatitjheel’s water has turned black and emits a foul odour, causing significant public distress. Photo: Syed Zakir Hossain

Blackened waters and foul stench: Why can't Rajuk control Hatirjheel pollution?

12h | Panorama
An old-fashioned telescope, also from an old ship, is displayed at a store at Chattogram’s Madam Bibir Hat area. PHOTO: TBS

NO SCRAP LEFT BEHIND: How Bhatiari’s ship graveyard still furnishes homes across Bangladesh

2d | Panorama

More Videos from TBS

India is not raising tariffs, Delhi refutes Trump's claim

India is not raising tariffs, Delhi refutes Trump's claim

3h | TBS World
News of The Day, 16 MAY 2025

News of The Day, 16 MAY 2025

5h | TBS News of the day
More woes for businesses as govt plans almost doubling minimum tax

More woes for businesses as govt plans almost doubling minimum tax

11h | TBS Insight
Can Hamza's Sheffield break a century-long curse to reach the Premier League?

Can Hamza's Sheffield break a century-long curse to reach the Premier League?

12h | TBS SPORTS
EMAIL US
contact@tbsnews.net
FOLLOW US
WHATSAPP
+880 1847416158
The Business Standard
  • About Us
  • Contact us
  • Sitemap
  • Advertisement
  • Privacy Policy
  • Comment Policy
Copyright © 2025
The Business Standard All rights reserved
Technical Partner: RSI Lab

Contact Us

The Business Standard

Main Office -4/A, Eskaton Garden, Dhaka- 1000

Phone: +8801847 416158 - 59

Send Opinion articles to - oped.tbs@gmail.com

For advertisement- sales@tbsnews.net