How to report a vulnerability?

3 views
Skip to first unread message

Prashanth Sivarajan

unread,
Dec 13, 2011, 12:09:36 AM12/13/11
to null-...@googlegroups.com
Hi Friends,

How do I report a vulnerability I find on Indian websites? Tried emailing the administrators of the websites. But as expected not even an acknowledgment.

regards,
Prashanth Sivarajan

सुधांशु अम्बेसंगे (Sudhanshu Ambesange)

unread,
Dec 13, 2011, 11:11:02 AM12/13/11
to null-...@googlegroups.com
http://www.cert-in.org.in



Prashanth Sivarajan

--
null - Spreading the right Information
null Mailing list charter: http://null.co.in/section/about/null_list_charter/



--
Sudhanshu Ambesange, Pune

Pardhasaradhi CH

unread,
Dec 13, 2011, 11:25:25 AM12/13/11
to null-...@googlegroups.com
keeda project from null drop a mail @ nu...@null.co.in

2011/12/13 सुधांशु अम्बेसंगे (Sudhanshu Ambesange) <sambe...@gmail.com>



--
CH.Pardhasaradhi


james willam

unread,
Dec 14, 2011, 1:09:28 AM12/14/11
to null
Leav That non of The administrator are much borther about that and
wont response for monts if that site is having financial transcations
or some educational materials .. or better way contact site owner form
whois.net check there you will get his name and complaint him about
same also if you get only name Then go for social engineering

Jaydeep Dave

unread,
Dec 14, 2011, 5:43:50 AM12/14/11
to null-...@googlegroups.com
www.packetstormsecurity.org

2011/12/13 सुधांशु अम्बेसंगे (Sudhanshu Ambesange) <sambe...@gmail.com>



--
Regards,

Jaydeep Dave
Mobile: +919898456445

Raxit Sheth

unread,
Dec 14, 2011, 12:24:45 PM12/14/11
to null-...@googlegroups.com

1. Find ceo/cto from linkedin fb etc and mail

2. Null list disclosure and cert

3. If site is big contact blogger or write your own blog !

Raxit


Prashanth Sivarajan

--

Jaydeep Dave

unread,
Dec 15, 2011, 11:17:40 AM12/15/11
to null-...@googlegroups.com
Practically, it is not ethical to write in blog about someone elses
vulnerabilities. i like the option 1.

Raxit Sheth

unread,
Dec 16, 2011, 8:31:14 AM12/16/11
to null-...@googlegroups.com

When site owner dont care, blogging is way! Just search bhararmatrimony hack  , I reported multiple time - no action, when blogged out it got fixed in couple of hours !

Raxit

On 16 Dec 2011 18:57, "Jaydeep Dave" <jaydi...@gmail.com> wrote:

Practically, it is not ethical to write in blog about someone elses
vulnerabilities. i like the option 1.


On Wednesday, December 14, 2011, Raxit Sheth <raxitsh...@gmail.com> wrote:

> 1. Find ceo/cto fr...

Reply all
Reply to author
Forward
0 new messages