All Topics
All Topics
Technology
Technology
Design
Design
Programming
Programming
Science
Science
News
News
Gaming
Gaming
Entertainment
Entertainment
Business
Business
Finance
Finance
Sports
Sports
Health
Health
Food
Food
Travel
Travel
Art
Art
Music
Music
Books
Books
Education
Education
Politics
Politics
Personal
Personal
No algorithm. No AI slop. No ads. Just RSS. Pro-human. Indie writers. Real journalism. Open web. Chronological. Hand toasted.

Microsoft calls for coordinated vulnerability disclosure after zero-day disclosures put customers at risk

By

MSRC

1d ago· 2 min readen

Summary

Microsoft addresses the recent public disclosure of zero-day vulnerabilities that were not shared with the company beforehand, putting customers at risk. The article emphasizes the importance of Coordinated Vulnerability Disclosure (CVD), the industry standard where researchers share findings with affected vendors before public release, allowing time to understand and address the impact. Microsoft highlights its ongoing partnership with hundreds of security researchers through this process.

Key quotes

· 3 pulled
The details of these vulnerabilities were not shared with Microsoft prior to release, and the disclosures put our customers at unnecessary risk.
Every year, we work with hundreds of security researchers through Coordinated Vulnerability Disclosure (CVD) – the industry standard that asks researchers to share their findings with affected vendors.
This partnership allows us to make updates to impacted services
Snippet from the RSS feed
In recent weeks several zero-day vulnerabilities have been publicly disclosed. The details of these vulnerabilities were not shared with Microsoft prior to release, and the disclosures put our customers at unnecessary risk.

You might also wanna read