NCIIPC responsible vulnerability disclosure program

1,675 views
Skip to first unread message

null

unread,
May 14, 2015, 2:06:46 AM5/14/15
to null-...@googlegroups.com
Hi All,

Just thought I'll share this with everyone and specifically for all
the bug bounty hunters, if you find any security issues in Gov or more
specifically critical information infrastructure and are interested in
responsibly reporting it, NCIIPC has started a responsible
vulnerability disclosure program.

Details: https:/www.nciipc.gov.in
Please note that the website uses a self signed certificate ;).

The idea sounds interesting, but I hope they are active and
responsive. For me a successful vuln reporting program is one that is
responsive.

Also, reminds me of our early days with our keeda project for vuln
reporting. Old timers may still remember it :)

Best of Luck to NCIIPC with the responsible disclosure program :)

--
Cheers,
@seem

Darpan Adhlakha

unread,
May 14, 2015, 9:52:10 AM5/14/15
to null-...@googlegroups.com
seems site is down !

webDEViL

unread,
May 14, 2015, 9:53:44 AM5/14/15
to null-...@googlegroups.com

Site is only HTTPS. And it seems to be up.

On 14 May 2015 19:22, "Darpan Adhlakha" <d.adh...@gmail.com> wrote:
seems site is down !

--
_______________________________________________________________________________
Register for HackIM Powered by EMC, win Samsung gear,Arduino,nullcon pass,2 nights stay!
Details: http://ctf.nullcon.net nullcon - the neXt security thing!
_______________________________________________________________________________
null - Spreading the right Information
null Mailing list charter: http://null.co.in/section/about/null_list_charter/
---
You received this message because you are subscribed to the Google Groups "null" group.
To unsubscribe from this group and stop receiving emails from it, send an email to null-co-in+...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.

Abhisek

unread,
May 14, 2015, 10:53:10 AM5/14/15
to null-...@googlegroups.com

My concern is if this website get hacked and attacker gets hold of information related to all the vulnerabilities which would have been submitted.

Anant Shrivastava

unread,
May 14, 2015, 1:41:19 PM5/14/15
to null-...@googlegroups.com
As far as i can read they are asking people to send details over email and not on the websites. So ya concern valid but the concern should be for email id and not website.

Anant Shrivastava 
Web : http://anantshri.info

--
Reply all
Reply to author
Forward
0 new messages