Joined November 2015
39 Photos and videos
security.txt (RFC 9116) retweeted
🚨 BREAKING 🚨 Our @securitytxt 2024 version is updated containing a new CTF-like challenge. Check it out now: swisscom.ch/.well-known/secu…

ALT game boy 90s GIF by Michael Shillingburg

4
3
27
3,797
security.txt (RFC 9116) retweeted
This is probably the best public Vulnerability Disclosure Program terms I've ever seen. It demonstrates the exact nature of a VDP, "see something, say something" no more, no less. 10 for hosting a @securitytxt file too. Nice work @ServiceNow 👏
1
2
36
4,825
🇯🇵
JPCERT/CC Eyes「RFC 9116「security.txt」の紹介(2022年8月)の続報」を公開。RFC 9116のおかげで開発者との脆弱性関連情報のコーディネーション(調整)が大変スムーズにできた事例と、「security.txt」の紹介記事についてご紹介します。^KI blogs.jpcert.or.jp/ja/2023/1…
6
745
security.txt (RFC 9116) retweeted
23 Jul 2023
Looking for a little project to keep you busy on the weekend? I was just thinking: how many of the breached websites in @haveibeenpwned now have a security.txt file? So, if you feel like grabbing those domains and querying them all, there's an API here: haveibeenpwned.com/API/v3#Al…
6
6
73
50,638
security.txt (RFC 9116) retweeted
Switzerland's largest retail company @migros published their vulnerability disclosure policy via @securitytxt 🥳
1
2
13
1,732
security.txt (RFC 9116) retweeted
31 May 2023
This is great: having a security.txt file is now mandatory for Dutch government websites. They either need to apply this as a standard or provide a good justification for why they're not using it ("Apply of Explain") digitaltrustcenter.nl/nieuws…
10
74
473
127,832
security.txt (RFC 9116) retweeted
security.txt 📑 has been added to the 'Comply or Explain' list of the Netherlands Standardisation Forum. This means that Dutch municipalities, provinces, the state, water boards and all operational organisations are obliged to apply this open standard.✅forumstandaardisatie.nl/nieu…
1
16
37
4,879
Bridge the gap between your website and security researchers. ✅ Implement security.txt and promote coordinated vulnerability disclosure. Need help getting started? ➡️ Head on over to securitytxt.org/. #securitytxt #cybersecurity
8
14
2,752
security.txt (RFC 9116) retweeted
Replying to @securitytxt
@securitytxt nice recommendation for security.txt in this @CISAgov advisory cisa.gov/news-events/cyberse…
1
1
5
355
That needed an update. 👀
Exciting news! @Apple joins the list of companies with a security.txt file. Now, we only need @netflix to complete the FAANG list. 🙌
5
45
16,258
security.txt (RFC 9116) retweeted
18 Apr 2023
Can you spare an hour to help us improve rfc-editor.org (the official home of RFCs)? If you’ve used RFCs for work, school or research, we’d love to learn from you - particularly if you're new here! Volunteer by answering a few quick questions: docs.google.com/forms/d/e/1F…

2
17
17
2,149
security.txt (RFC 9116) retweeted
A tale of Google dorks finding subdomain takeovers plus why having a security.txt & a responsive security team are good news all round. London Councils & pirate books. Google dorking for subdomain takeovers. Thanks to our @OPSEC_failed pentestpartners.com/security… #cybersecuritytips
3
6
1,407
security.txt (RFC 9116) retweeted
Check out the just released fresh version of Internet.nl with improved tests for CSP and security.txt, en.internet.nl/article/relea… Happy testing and improving! #moderninternet
17
32
5,090
Where did you first hear about security.txt?
68% Twitter
6% GitHub
8% Conference talk
19% Other (comment below 👇)
167 votes • Final results
7
2
2
4,254
security.txt (RFC 9116) retweeted
What can we say, twitter-driven development sometimes works :) netflix.com/.well-known/secu… Ya'll are good folks. Keep it going!

Exciting news! @Apple joins the list of companies with a security.txt file. Now, we only need @netflix to complete the FAANG list. 🙌
2
6
58
12,238