We’re getting close to Black Hat, and we hope to see you there. Here’s where you can find members of the Microsoft Security Response Center if you’d like to say hello, ask a question about a report you made, discuss a recent blog article, or just show us pictures of your dog. Wednesday, August 7...
This is the third and last in a series of posts that looks at how Microsoft responds to elevated threats to customers through the Microsoft Security Response Center’s (MSRC) Software and Services Incident Response Plan (SSIRP). Our previous posts discussed how Microsoft protects customers...
anatomy
building
customers
elevated
event
incident
management
microsoft
msrc
plan
posts
process
protection
response
response center
security
services
software
ssirp
threats
This is the second in a series of blog posts that shares how the MSRC responds to elevated threats to customers through the Software and Services Incident Response Plan (SSIRP). In our last blog post, we looked at the history of the Microsoft Security Response Center and SSIRP, and how...
Earlier this week Link Removed brought together security researchers and hundreds of cybersecurity professionals from China and across Asia to explore the latest topics in cybersecurity research. Including presentations from Qihoo 360, Baidu, Alibaba and the Chinese Academy of Sciences, BlueHat...
awards
bluehat
bounty program
community
containers
cybersecurity
dynamics
emerging
engineering
github
iot
microsoft
msrc
partnership
research
security
shanghai
technology
vulnerabilities
The Microsoft Security Response Center (MSRC) is pleased to announce the launch of the Link Removed program, a program dedicated to providing rock-solid security for our DevOps customers. Starting January 17, 2019, we’re excited to offer rewards up to US$20,000 for eligible vulnerabilities in...
azure devops
bounty program
bug bounty
cloud computing
code submission
collaborative coding
community engagement
developer community
development lifecycle
microsoft
msrc
online services
product improvement
public acknowledgment
recognition
rewards
security
security research
software development
vulnerabilities
Every day, the Microsoft Security Response Center (MSRC) receives vulnerability reports from security researchers, technology/industry partners, and customers. We want those reports, because they help us make our products and services more secure. High-quality reports that include proof of...
Today, we released security updates to provide additional protections against malicious attackers. As a best practice, we encourage customers to turn on automatic updates.
More information about this month’s security updates can be found in the Link Removed.
MSRC team
Continue reading...
Last week at BlueHat’s “MSRC Listens” session, I took the stage with Mechele Gruhn, manager of the Vulnerability Response PM team, to explain how MSRC is changing our communication, workflows, and tooling to deliver an improved user experience for our partners in the security research community...
bluehat
bounty program
bounty terms
cfg
change logging
communication
community programs
evaluation
mitigation
msrc
research
security
submission
tools
transparency
user experience
vulnerability
workflow
Today, we released security updates to provide additional protections against malicious attackers. As a best practice, we encourage customers to turn on automatic updates.
More information about this month’s security updates can be found in the Link Removed.
MSRC team
Continue reading...
For the last 20 years, the Microsoft Security Response Center has been an integral part of Microsoft’s commitment to customer security. We are often called on to talk about the work we do and how customers can apply the lessons we have learned over that period to better their security posture...
best practices
blue teams
bug bounty
cloud security
code security
coordinated disclosure
customer tips
cybersecurity
government programs
industry programs
microsoft
msrc
operational security
red team
security
security best practices
security conferences
video
vulnerability
Today, we released security updates to provide additional protections against malicious attackers. As a best practice, we encourage customers to turn on automatic updates.
More information about this month’s security updates can be found on the Link Removed.
MSRC team
Continue reading...
2016
automatic updates
best practices
cybersecurity
malicious attacks
microsoft
msrc
patch
protection
release
security
software
system update
tech news
update
user guide
vulnerability
windows
windows update
At Black Hat USA each year, we unveil the Top 100 Security Researcher list to reflect the amazing engagement we get from the community. During this period, we had several thousand researchers engage with the Microsoft Security Response Center (MSRC). We appreciate all the partnership and...
2016
acknowledgements
annual report
blackhat usa
bounty for defense
community engagement
cybersecurity
industry collaboration
microsoft
mitigation bounty
msrc
research
research impact
research methodologies
research recognition
security researcher
security risks
severity rating
top 100
vulnerabilities
We have tabulated the results from April-June 2018. The Top 5 Bounty Hunters for Q4 are now in. As with our list from Q3, we want to recognize both the leaders in payouts and in number of successful submissions. We appreciate the hard work and dedication of the following individuals and...
april
ashar javed
awards
black hat
bounty hunters
bug bounty
cameron vincent
june
marcin towalski
microsoft
msrc
payouts
qihoo 360
recognition
research
security
security research
submission
top 5
vulcan team
Today, we released security updates to provide additional protections against malicious attackers. As a best practice, we encourage customers to turn on automatic updates.
More information about this month’s security updates can be found on the Link Removed.
MSRC team
Continue reading...
Today, we released security updates to provide additional protections against malicious attackers. As a best practice, we encourage customers to turn on automatic updates.
More information about this month’s security updates can be found on the Link Removed.
MSRC team
Continue reading...
Throughout the year, security researchers submit some amazing work to us under the Microsoft Bug Bounty program. Starting this quarter, we want to give a shout out to and acknowledge the hard work and dedication of the following individuals and companies who have contributed to securing...
ashar javed
awards
blackhat usa
bug bounty
cameron vincent
ecosystem
kai kang
mario gomes
microsoft
msrc
national cyber security centre
nick freeman
quarterly
research
security
submission
suresh chelladuri
top 5
yunhai zhang
yves jean avenard
Security researchers play an essential role in Microsoft’s security strategy and are key to community-based defense. To show our appreciation for their hard work and partnership, each year at BlackHat North America, the Microsoft Security Response Center highlights contributions of these...
black hat
community
contributions
cybersecurity
defensive
impact
innovation
microsoft
msrc
participation
partnership
ranking
report
research
security
tech news
threats
top 100
vulnerabilities
Today, we released security updates to provide additional protections against malicious attackers. By default, Windows 10 receives these updates automatically, and for customers running previous versions, we recommend they turn on automatic updates as a best practice.
More information about...
Over the past 10 months, we’ve paid out more than $200,000 USD in bounties to researchers reporting vulnerabilities through the Microsoft Edge Bounty Program. Partnering with the research community has helped improve Microsoft Edge security, and to continue this collaboration, today we’re...
bounty program
collaboration
community
extensions
improvements
june 30, 2017
microsoft edge
msrc
payment
programs
report
research
security
update
usd
vulnerabilities
Today, we released security updates to provide additional protections against malicious attackers. By default, Windows 10 receives these updates automatically, and for customers running previous versions, we recommend they turn on automatic updates as a best practice.
More information about...