Security News > 2020 > September > Microsoft Explains How It Processes Vulnerability Reports

Microsoft Explains How It Processes Vulnerability Reports
2020-09-22 11:46

Microsoft has detailed the steps involved in the processing of vulnerability reports, so that reporting researchers know what to expect when submitting information on a bug.

The portal, the tech company notes, delivers a secure and guided way for security researchers to share all of the necessary details required to reproduce a reported vulnerability and identify a fix for it.

"The portal will also guide you in working out what additional information you will need to write a high-quality report. High-quality reports will help your researcher reputation score, and if your report qualifies for one of our bounty program rewards, you also may receive a higher reward amount too," Microsoft notes.

While a report is marked as 'New' in the Researcher Portal during triage and case assignment, its state is changed to 'Review/Repro' at the next step, and the reporter is informed via email, Microsoft notes.

After a fix has been rolled out, the report's status changes to 'Complete', Microsoft says.


News URL

http://feedproxy.google.com/~r/Securityweek/~3/-zTvzzxdZ9o/microsoft-explains-how-it-processes-vulnerability-reports

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Microsoft 365 49 1366 2821 162 4398