Delhi hacker wins $30,000 reward from Microsoft for finding bug in Azure cloud system | The Business Standard
Skip to main content
  • Epaper
  • Economy
    • Aviation
    • Banking
    • Bazaar
    • Budget
    • Industry
    • NBR
    • RMG
    • Corporates
  • Stocks
  • Analysis
  • Videos
    • TBS Today
    • TBS Stories
    • TBS World
    • News of the day
    • TBS Programs
    • Podcast
    • Editor's Pick
  • World+Biz
  • Features
    • Panorama
    • The Big Picture
    • Pursuit
    • Habitat
    • Thoughts
    • Splash
    • Mode
    • Tech
    • Explorer
    • Brands
    • In Focus
    • Book Review
    • Earth
    • Food
    • Luxury
    • Wheels
  • Subscribe
    • Epaper
    • GOVT. Ad
  • More
    • Sports
    • TBS Graduates
    • Bangladesh
    • Supplement
    • Infograph
    • Archive
    • Gallery
    • Long Read
    • Interviews
    • Offbeat
    • Magazine
    • Climate Change
    • Health
    • Cartoons
  • বাংলা
The Business Standard

Wednesday
May 14, 2025

Sign In
Subscribe
  • Epaper
  • Economy
    • Aviation
    • Banking
    • Bazaar
    • Budget
    • Industry
    • NBR
    • RMG
    • Corporates
  • Stocks
  • Analysis
  • Videos
    • TBS Today
    • TBS Stories
    • TBS World
    • News of the day
    • TBS Programs
    • Podcast
    • Editor's Pick
  • World+Biz
  • Features
    • Panorama
    • The Big Picture
    • Pursuit
    • Habitat
    • Thoughts
    • Splash
    • Mode
    • Tech
    • Explorer
    • Brands
    • In Focus
    • Book Review
    • Earth
    • Food
    • Luxury
    • Wheels
  • Subscribe
    • Epaper
    • GOVT. Ad
  • More
    • Sports
    • TBS Graduates
    • Bangladesh
    • Supplement
    • Infograph
    • Archive
    • Gallery
    • Long Read
    • Interviews
    • Offbeat
    • Magazine
    • Climate Change
    • Health
    • Cartoons
  • বাংলা
WEDNESDAY, MAY 14, 2025
Delhi hacker wins $30,000 reward from Microsoft for finding bug in Azure cloud system

South Asia

TBS Report
29 June, 2021, 10:00 pm
Last modified: 29 June, 2021, 10:12 pm

Related News

  • The new Surface Pro is a great iPad alternative for Windows fans
  • Microsoft Bangladesh Championship begins 10 May
  • Meta launches AI app, Zuckerberg chats with Microsoft CEO Satya Nadella at developer conference
  • Microsoft fires employees protesting AI technology contracts with Israel
  • 'Shame on you all': Indian-American engineer resigns over Microsoft's Israel ties

Delhi hacker wins $30,000 reward from Microsoft for finding bug in Azure cloud system

Aditi Singh, who found a similar bug in Facebook just two months back and won a bounty of $7500, said that both companies had a remote code execution (RCE) bug, which is relatively new and is currently not being paid much attention to

TBS Report
29 June, 2021, 10:00 pm
Last modified: 29 June, 2021, 10:12 pm
Aditi Singh. Picture: Collected
Aditi Singh. Picture: Collected

A 20-year-old ethical hacker from the Indian capital of Delhi, has won a reward of $30,000 for spotting a bug in Microsoft's Azure cloud system.

Aditi Singh, who found a similar bug in Facebook just two months back and won a bounty of $7500, said that both companies had a remote code execution (RCE) bug, which is relatively new and is currently not being paid much attention to, reports the India Today.

Through such bugs, hackers can get access to internal systems and the information they hold.

The Business Standard Google News Keep updated, follow The Business Standard's Google news channel

Aditi notes that it is not easy spotting bugs and that ethical hackers have to stay on top of their game about new bugs, so they can report about them and still be eligible for their payouts. She, however, also emphasises on gaining knowledge and learning about ethical hacking first, rather than focussing on just making money.

"Microsoft has only fixed the bug which I spotted two months back. They have not fixed all of them," said Aditi, who was the first one to spot the RCE bug and said that the tech giant took two months to respond as they were checking if anybody had downloaded its insecure version. She suggests that before even starting to find a bug, people should ask the support team of that company ask if they are hosting a bounty program, and if that company confirms about such a program, bounty hunters should go ahead.

Bug bounty hunters are mostly certified cybersecurity professionals or security researchers who crawl the web and scan the systems for bugs or flaws through which hackers can sneak in and alert the companies. If they are successful, they are rewarded with cash.

Talking about the RCE bug spotted in Facebook and Microsoft, Aditi explains that the developers wrote the code directly when they should have the first download a Node Package Manager -- which is a subsidiary of GitHub where anybody can access the codes from these companies as they are open-sourced.

"Developers should write codes only after they have the NPM," she said.

Aditi has been into ethical hacking for the past two years. She first hacked into her neighbour's WiFi password (which she considers a personal feat), and there has been no looking back ever since.

"I took an interest in ethical hacking when I was preparing for NEET, my medical entrance in Kota," Aditi said.

"I didn't get through in medical school but have found bugs in over 40 companies including Facebook, Tiktok, Microsoft, Mozilla, Paytm, Ethereum, HP, among others."

She has also received appreciation letters from Harvard University, Columbia University, Stanford University, University of California and has also been highlighted in the Google hall of fame.

"I was certain I wanted to get into ethical hacking after I reported an OTP bypass bug in TikTok's Forgot Password section and won a bounty of $1100," added Aditi, who is self-taught and notes that anyone who can access Google and Twitter can become an ethical hacker.

"There are multiple resources and Google, Twitter and Hacker One that have write-ups with explanations about ethical hacking," Aditi said.

She further added sthat she was hired for a job after hacking into the company's application.

"They did not ask for my qualification but only saw my skills, and I was hired."

Aditi notes that if people want to get into advanced learning of hacking, then they should know a programming language -- either Python or JavaScript. She also suggests OSCP, which is a certificate course aimed at helping bussing ethical hackers.

When asked where she spends her "bounty", and she said most of it goes into buying hacking tools or spending on certificate courses about hacking.

Tech / Top News / World+Biz

bug / Microsoft / Azure Cloud System

Comments

While most comments will be posted if they are on-topic and not abusive, moderation decisions are subjective. Published comments are readers’ own views and The Business Standard does not endorse any of the readers’ comments.

Top Stories

  • Bangladesh secures staff-level agreement with IMF for $1.3b disbursement amid reform commitments
    Bangladesh secures staff-level agreement with IMF for $1.3b disbursement amid reform commitments
  • Photo: UNB
    Shammo killing: Suhrawardy Udyan to get permanent police box; no entry for public after 8pm
  • News of The Day, 14 MAY 2025
    News of The Day, 14 MAY 2025

MOST VIEWED

  • Representational image. File Photo: UNB
    Army updates contact numbers for people seeking help across Dhaka, surrounding districts
  • Logo of bkash. Photo: Collected
    bKash posts Tk132cr profit in three months
  • IMF agrees to release $1.3b in June for Bangladesh as disagreement over exchange rate flexibility resolved
    IMF agrees to release $1.3b in June for Bangladesh as disagreement over exchange rate flexibility resolved
  • Collage shows [from left] shows the woman rushing to her house with the cat after, getting into the lift and the cat that was beaten. Collage: TBS
    Animal abuse outrages citizens: Grameenphone condemns incident allegedly involving employee
  • Photo: Screenshot
    Businessman shot in Gulshan after reportedly refusing to pay extortion
  • Walton expands footprint in Sri Lanka
    Walton expands footprint in Sri Lanka

Related News

  • The new Surface Pro is a great iPad alternative for Windows fans
  • Microsoft Bangladesh Championship begins 10 May
  • Meta launches AI app, Zuckerberg chats with Microsoft CEO Satya Nadella at developer conference
  • Microsoft fires employees protesting AI technology contracts with Israel
  • 'Shame on you all': Indian-American engineer resigns over Microsoft's Israel ties

Features

An old-fashioned telescope, also from an old ship, is displayed at a store at Chattogram’s Madam Bibir Hat area. PHOTO: TBS

NO SCRAP LEFT BEHIND: How Bhatiari’s ship graveyard still furnishes homes across Bangladesh

32m | Panorama
Sketch: TBS

‘National University is now focusing on technical and language education’

21h | Pursuit
Illustration: TBS

How to crack the code to get into multinational companies

23h | Pursuit
More than 100 trucks of pineapples are sold from Madhupur every day, each carrying 3,000 to 10,000 pineapples. Photo: TBS

The bitter aftertaste of Madhupur's sweet pineapples

1d | Panorama

More Videos from TBS

News of The Day, 14 MAY 2025

News of The Day, 14 MAY 2025

32m | TBS News of the day
What did the governor say about IMF loan installments, dollar rate, and inflation?

What did the governor say about IMF loan installments, dollar rate, and inflation?

1h | TBS Today
BB resolves exchange rate dispute with IMF, expects next tranche in June

BB resolves exchange rate dispute with IMF, expects next tranche in June

2h | TBS Insight
What did Dr. Yunus say at the convocation of Chittagong University?

What did Dr. Yunus say at the convocation of Chittagong University?

2h | TBS Today
EMAIL US
contact@tbsnews.net
FOLLOW US
WHATSAPP
+880 1847416158
The Business Standard
  • About Us
  • Contact us
  • Sitemap
  • Advertisement
  • Privacy Policy
  • Comment Policy
Copyright © 2025
The Business Standard All rights reserved
Technical Partner: RSI Lab

Contact Us

The Business Standard

Main Office -4/A, Eskaton Garden, Dhaka- 1000

Phone: +8801847 416158 - 59

Send Opinion articles to - oped.tbs@gmail.com

For advertisement- sales@tbsnews.net