Headlines
The Risks and Controversy Surrounding EU's Vulnerability Disclosure Rulewordpress,EU,vulnerabilitydisclosure,risks,controversy

The Risks and Controversy Surrounding EU’s Vulnerability Disclosure Rule

The EU‘s Controversial Vulnerability Disclosure Requirement Introduction The European Union (EU) has proposed a new rule under Article 11 of the Cyber Resilience Act (CRA) that would require software publishers to disclose unpatched vulnerabilities to government agencies within 24 hours of exploitation. While some IT security professionals support this rule, there is growing concern among…

Read More
Exploring Google's Project Zero: Insights from Researcher Natalie Silvanovichgoogle,projectzero,nataliesilvanovich,cybersecurity,vulnerabilityresearch,bugbounty,softwaresecurity,hacking,zero-dayvulnerabilities,vulnerabilitydisclosure

Exploring Google’s Project Zero: Insights from Researcher Natalie Silvanovich

Vulnerabilities Researcher Conversations: Natalie Silvanovich From Google’s Project Zero Introduction In a recent conversation with Natalie Silvanovich, a member of Google‘s Project Zero, SecurityWeek explores the important work of vulnerabilities researchers in the field of cybersecurity. Silvanovich provides insight into the mission and approach of Project Zero, the challenges faced in vulnerability disclosure, the characteristics…

Read More
Federal Contractor Vulnerability Disclosure: Strengthening Cybersecurity Safeguards in Government Partnershipswordpress,federalcontractor,vulnerabilitydisclosure,cybersecurity,safeguards,governmentpartnerships

Federal Contractor Vulnerability Disclosure: Strengthening Cybersecurity Safeguards in Government Partnerships

Management & Strategy Lawmaker Wants Federal Contractors to Have Vulnerability Disclosure Policies Congresswoman Nancy Mace (R-SC) has introduced a bill that would require federal contractors to implement a Vulnerability Disclosure Policy (VDP) in line with NIST guidelines. The proposed legislation, named the Federal Cybersecurity Vulnerability Reduction Act, aims to strengthen the cybersecurity posture of federal…

Read More
"Perimeter81's Security Lapse: An Analysis of a Bungled Vulnerability Disclosure"wordpress,security,vulnerabilitydisclosure,perimeter81,analysis

“Perimeter81’s Security Lapse: An Analysis of a Bungled Vulnerability Disclosure”

Vulnerabilities Perimeter81 Vulnerability Disclosed After Botched Disclosure Process Cybersecurity Company Perimeter81 Faces Criticism for Botched Vulnerability Disclosure Cybersecurity firm Perimeter81 has come under scrutiny after a privilege escalation vulnerability was disclosed in its macOS application. The vulnerability, which allows attackers to execute arbitrary commands with root privileges, was discovered by cybersecurity researcher Erhad Husovic. Husovic…

Read More