Ask Chloé: Hackers’ Rights and Women in Infosec

Welcome to the Ask Chloé column on Security Boulevard! Each week, Chloé provides advice to readers’ questions to help guide them as they navigate the technology industry. This week, Chloé explores hackers’ rights and the challenges women face in… Continue reading Ask Chloé: Hackers’ Rights and Women in Infosec

IoT Cybersecurity Improvement Act Passed, Heads to President’s Desk

Security experts praised the newly approved IoT law as a step in the right direction for insecure connected federal devices. Continue reading IoT Cybersecurity Improvement Act Passed, Heads to President’s Desk

It’s No ‘Giggle’: Managing Expectations for Vulnerability Disclosure

Vulnerability-disclosure policies (VDPs), if done right, can help provide clarity and clear guidelines to both bug-hunters and vendors when it comes to going public with security flaws. Continue reading It’s No ‘Giggle’: Managing Expectations for Vulnerability Disclosure

Facebook Debuts Third-Party Vulnerability Disclosure Policy

If the social-media behemoth finds a bug in another platform’s code, the project has 90 days to remediate before Facebook goes public. Continue reading Facebook Debuts Third-Party Vulnerability Disclosure Policy

U.S. Agencies Must Adopt Vulnerability-Disclosure Policies by March 2021

U.S. agencies must implement vulnerability-disclosure policies by March 2021, according to a new CISA mandate. Continue reading U.S. Agencies Must Adopt Vulnerability-Disclosure Policies by March 2021

93% of Forbes Global 2000 Don’t Stress Vulnerability Disclosure Policies, Says HackerOne Report

As many as 93 percent of companies in the Forbes Global 2000 list don’t include a vulnerability disclosure policy among top business concerns, according to HackerOne’s The Hacker-Powered Security Report 2018, a deep dive into bug bount… Continue reading 93% of Forbes Global 2000 Don’t Stress Vulnerability Disclosure Policies, Says HackerOne Report