-
Meet the MSRC at Black Hat 2019
We’re getting close to Black Hat, and we hope to see you there. Here’s where you can find members of the Microsoft Security Response Center if you’d like to say hello, ask a question about a report you made, discuss a recent blog article, or just show us pictures of your dog. Wednesday, August 7...- News
- Thread
- black hat community cybersecurity discussion event microsoft msrc network security technology
- Replies: 0
- Forum: Security Alerts
-
Inside the MSRC – Building your own security incident response process
This is the third and last in a series of posts that looks at how Microsoft responds to elevated threats to customers through the Microsoft Security Response Center’s (MSRC) Software and Services Incident Response Plan (SSIRP). Our previous posts discussed how Microsoft protects customers...- News
- Thread
- anatomy building customers elevated event incident management microsoft msrc plan posts process protection response response center security services software ssirp threats
- Replies: 1
- Forum: Security Alerts
-
Inside the MSRC – Anatomy of a SSIRP incident
This is the second in a series of blog posts that shares how the MSRC responds to elevated threats to customers through the Software and Services Incident Response Plan (SSIRP). In our last blog post, we looked at the history of the Microsoft Security Response Center and SSIRP, and how...- News
- Thread
- blog customers holistic incident microsoft msrc response security ssirp threats
- Replies: 0
- Forum: Security Alerts
-
BlueHat Shanghai 2019: Amplifying the power of defensive partnerships around the world
Earlier this week Link Removed brought together security researchers and hundreds of cybersecurity professionals from China and across Asia to explore the latest topics in cybersecurity research. Including presentations from Qihoo 360, Baidu, Alibaba and the Chinese Academy of Sciences, BlueHat...- News
- Thread
- awards bluehat bounty program community containers cybersecurity dynamics emerging engineering github iot microsoft msrc partnership research security shanghai technology vulnerabilities
- Replies: 0
- Forum: Security Alerts
-
Announcing the Microsoft Azure DevOps Bounty program
The Microsoft Security Response Center (MSRC) is pleased to announce the launch of the Link Removed program, a program dedicated to providing rock-solid security for our DevOps customers. Starting January 17, 2019, we’re excited to offer rewards up to US$20,000 for eligible vulnerabilities in...- News
- Thread
- azure devops bounty program bug bounty cloud computing code submission collaborative coding community engagement developer community development lifecycle microsoft msrc online services product improvement public acknowledgment recognition rewards security security research software development vulnerabilities
- Replies: 0
- Forum: Security Alerts
-
Should You Send Your Pen Test Report to the MSRC?
Every day, the Microsoft Security Response Center (MSRC) receives vulnerability reports from security researchers, technology/industry partners, and customers. We want those reports, because they help us make our products and services more secure. High-quality reports that include proof of...- News
- Thread
- account lockout active directory attack vector audit logs brute force customer deployment cybersecurity defense in depth iis arr lync server 2013 microsoft msrc password policy penetration testing risk assessment security security best practices security mitigation vulnerability reporting web security
- Replies: 0
- Forum: Security Alerts
-
October 2018 Security Update Release
Today, we released security updates to provide additional protections against malicious attackers. As a best practice, we encourage customers to turn on automatic updates. More information about this month’s security updates can be found in the Link Removed. MSRC team Continue reading...- News
- Thread
- automatic updates cybersecurity extended security updates malicious attacks msrc october patch management windows security
- Replies: 0
- Forum: Security Alerts
-
Standing behind “MSRC Listens”
Last week at BlueHat’s “MSRC Listens” session, I took the stage with Mechele Gruhn, manager of the Vulnerability Response PM team, to explain how MSRC is changing our communication, workflows, and tooling to deliver an improved user experience for our partners in the security research community...- News
- Thread
- bluehat bounty program bounty terms cfg change logging communication community programs evaluation mitigation msrc research security submission tools transparency user experience vulnerability workflow
- Replies: 0
- Forum: Security Alerts
-
September 2018 Security Update Release
Today, we released security updates to provide additional protections against malicious attackers. As a best practice, we encourage customers to turn on automatic updates. More information about this month’s security updates can be found in the Link Removed. MSRC team Continue reading...- News
- Thread
- automatic updates cybersecurity extended security updates malicious attacks msrc protection september update release windows security windows update
- Replies: 0
- Forum: Security Alerts
-
VIDEO Inside MSRC: Sharing Our Story & Customer Tips
For the last 20 years, the Microsoft Security Response Center has been an integral part of Microsoft’s commitment to customer security. We are often called on to talk about the work we do and how customers can apply the lessons we have learned over that period to better their security posture...- News
- Thread
- best practices blue teams bug bounty cloud security code security coordinated disclosure customer tips cybersecurity government programs industry programs microsoft msrc operational security red team security security best practices security conferences video vulnerability
- Replies: 1
- Forum: Security Alerts
-
August 2018 Security Update Release
Today, we released security updates to provide additional protections against malicious attackers. As a best practice, we encourage customers to turn on automatic updates. More information about this month’s security updates can be found on the Link Removed. MSRC team Continue reading...- News
- Thread
- 2016 automatic updates best practices cybersecurity malicious attacks microsoft msrc patch protection release security software system update tech news update user guide vulnerability windows windows update
- Replies: 0
- Forum: Security Alerts
-
The Making of the Top 100 Researcher List
At Black Hat USA each year, we unveil the Top 100 Security Researcher list to reflect the amazing engagement we get from the community. During this period, we had several thousand researchers engage with the Microsoft Security Response Center (MSRC). We appreciate all the partnership and...- News
- Thread
- 2016 acknowledgements annual report blackhat usa bounty for defense community engagement cybersecurity industry collaboration microsoft mitigation bounty msrc research research impact research methodologies research recognition security researcher security risks top 100 vulnerabilities
- Replies: 0
- Forum: Security Alerts
-
Recognizing Q4 Top 5 Bounty Hunters
We have tabulated the results from April-June 2018. The Top 5 Bounty Hunters for Q4 are now in. As with our list from Q3, we want to recognize both the leaders in payouts and in number of successful submissions. We appreciate the hard work and dedication of the following individuals and...- News
- Thread
- april ashar javed awards black hat bounty hunters bug bounty cameron vincent june marcin towalski microsoft msrc payouts qihoo 360 recognition research security security research submission top 5 vulcan team
- Replies: 0
- Forum: Security Alerts
-
June 2018 Security Update Release
Today, we released security updates to provide additional protections against malicious attackers. As a best practice, we encourage customers to turn on automatic updates. More information about this month’s security updates can be found on the Link Removed. MSRC team Continue reading...- News
- Thread
- automatic updates cybersecurity june malware msrc security update windows
- Replies: 0
- Forum: Security Alerts
-
May 2018 security update release
Today, we released security updates to provide additional protections against malicious attackers. As a best practice, we encourage customers to turn on automatic updates. More information about this month’s security updates can be found on the Link Removed. MSRC team Continue reading...- News
- Thread
- automatic updates malware may 2018 msrc security update
- Replies: 0
- Forum: Security Alerts
-
Recognizing Q3 Top 5 Bounty Hunters
Throughout the year, security researchers submit some amazing work to us under the Microsoft Bug Bounty program. Starting this quarter, we want to give a shout out to and acknowledge the hard work and dedication of the following individuals and companies who have contributed to securing...- News
- Thread
- ashar javed awards blackhat usa bug bounty cameron vincent ecosystem kai kang mario gomes microsoft msrc national cyber security centre nick freeman quarterly research security submission suresh chelladuri top 5 yunhai zhang yves jean avenard
- Replies: 0
- Forum: Security Alerts
-
The MSRC 2017 list of “Top 100” security researchers
Security researchers play an essential role in Microsoft’s security strategy and are key to community-based defense. To show our appreciation for their hard work and partnership, each year at BlackHat North America, the Microsoft Security Response Center highlights contributions of these...- News
- Thread
- black hat community contributions cybersecurity defensive impact innovation microsoft msrc participation partnership ranking report research security tech news threats top 100 vulnerabilities
- Replies: 0
- Forum: Security Alerts
-
July 2017 security update release
Today, we released security updates to provide additional protections against malicious attackers. By default, Windows 10 receives these updates automatically, and for customers running previous versions, we recommend they turn on automatic updates as a best practice. More information about...- News
- Thread
- automatic best practices customer service july malicious software msrc protection security update windows 10
- Replies: 0
- Forum: Security Alerts
-
Extending Microsoft Edge Bounty Program
Over the past 10 months, we’ve paid out more than $200,000 USD in bounties to researchers reporting vulnerabilities through the Microsoft Edge Bounty Program. Partnering with the research community has helped improve Microsoft Edge security, and to continue this collaboration, today we’re...- News
- Thread
- bounty program collaboration community extensions improvements june 30, 2017 microsoft edge msrc payment programs report research security update usd vulnerabilities
- Replies: 0
- Forum: Security Alerts
-
May 2017 security update release
Today, we released security updates to provide additional protections against malicious attackers. By default, Windows 10 receives these updates automatically, and for customers running previous versions, we recommend they turn on automatic updates as a best practice. More information about...- News
- Thread
- automatic updates best practices malware may 2017 msrc patch management protection security update windows 10
- Replies: 0
- Forum: Security Alerts