- CheckMates
- :
- Products
- :
- Harmony
- :
- Endpoint
- :
- brazillian hacker bypasses harmony endpoint anti-e...
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
brazillian hacker bypasses harmony endpoint anti-exploit
brazillian hacker bypasses harmony endpoint anti-exploit, is there anything we can do in this scenario?
https://www.linkedin.com/feed/update/urn:li:activity:7167862407908868096/
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
As I can see here, the rules of responsible disclosure were not respected. Just to make sure, any security issue with our products should be reported through appropriate tools instead of being disclosed in a public forum. Also, LinkedIn is not the best place to discuss those things, by far, and it is a very strange choice by the author, even for a red-team hacker.
Without many details, it may be that the policy is not configured according to the best practices, as already suggested in the comments on LinkedIn.
I have already reached out to relevant people to review this and provide a response. I am confident that an official response will be provided once all the details are clear.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Val, thanks for the reply. I´ll be sure to post this kind of stuff on the appropriate place next time...
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I was not referring to what you personally did here but to the topic-starter on LinkedIn. Someone claiming to be a white hat should know how things work in the industry.
We will look into this, but at this point, I don't think you should be alarmed. So far we have a video but no tech details. The appropriate team will try to get the full details, if there is anything to get, before responding.
