Skip to content

Bison Infosolutions encourages responsible disclosure of security vulnerabilities to help protect users, systems and services.

How to Report

Please send detailed information about the vulnerability to:

Responsible Disclosure Guidelines

  • Do not exploit a vulnerability beyond what is necessary to confirm that it exists.
  • Do not access, modify, delete or download data belonging to other users.
  • Do not perform denial-of-service attacks, automated destructive testing or other activities that may affect service availability.
  • Do not publicly disclose the vulnerability before Bison Infosolutions has had a reasonable opportunity to investigate and resolve it.
  • Provide sufficient technical details so that the vulnerability can be reproduced and investigated.
  • Include affected URL, page, service or component wherever possible.

What to Include in Your Report

To help us investigate efficiently, please include information such as:

  • Description of the vulnerability
  • Affected page, URL or service
  • Steps required to reproduce the issue
  • Potential security impact
  • Screenshots or supporting technical information, where appropriate
  • Your contact information if you would like us to communicate with you regarding the report

Good-Faith Security Research

Security researchers are requested to act in good faith, avoid privacy violations, avoid disruption of services and report discovered vulnerabilities responsibly.

THE BISON BRIEF

Practical IT knowledge, once a week.

New troubleshooting guides, scripts and infrastructure notes. No noise.

By subscribing, you agree to our privacy policy.