官术网_书友最值得收藏!

Conduct guidelines

This section gives details about what a researcher should specifically never do when finding vulnerabilities in the program. It is a notification paragraph, stating that while the disclosure of vulnerabilities is highly appreciated, there are certain things that the researchers should not do, such as:

  • Disclose any vulnerabilities or suspected vulnerabilities discovered to any other person
  • Disclose the contents of any submission to the program
  • Access private information of any person stored on a program's product
  • Access sensitive information
  • Perform actions that may negatively affect the program's users
  • Conduct any kind of physical attack on the organization's personnel, property, or data centers
  • Socially engineer any employee or contractor
  • Conduct vulnerability testing of participating services using anything other than test accounts
  • Violate any laws or breach any agreements in order to discover vulnerabilities
主站蜘蛛池模板: 鲁甸县| 杭州市| 荆门市| 马鞍山市| 双桥区| 依兰县| 伊金霍洛旗| 家居| 浏阳市| 三原县| 合江县| 正镶白旗| 富顺县| 禄劝| 揭阳市| 盐源县| 临夏县| 武强县| 长阳| 瓦房店市| 西宁市| 保定市| 当阳市| 武宁县| 商都县| 石柱| 尼勒克县| 乐山市| 都兰县| 金山区| 阆中市| 冷水江市| 竹溪县| 太保市| 崇州市| 辉县市| 隆尧县| 昭平县| 福建省| 渑池县| 抚远县|