disclose-io.bsky.social
@disclose-io.bsky.social
m.disclose.io/2WIvxxz just added 25 NEW bug bounty and VDP platforms! - @disclose_io Community Forum
Platforms.disclose.io just added 25 NEW bug bounty and VDP platforms!
Help Us Map the Global Bug Bounty Ecosystem TL;DR: platforms.disclose.io is our community-maintained directory of 80+ bug bounty and VDP platforms worldwide. We just added 25 new platforms, and we…
m.disclose.io
November 29, 2025 at 1:00 AM
Hey! We just updated platforms.disclose.io with 25+ new bug bounty & VDP platforms! 🎯

• Web3: @Cantinaxyz @CodeHawks @CertiK @xyz_remedy
• Russia: @standoff365 @bizone
• Asia: @IssueHunt (Japan), @patchday_io (Korea), Butian (China)

Check out the full list: platforms.disclose.io

#BugBounty #VDP
Open-Sourced Collection of Bug Bounty Platforms
Open-Sourced Collection of Bug Bounty Platforms Part of The @disclose_io Project.
platforms.disclose.io
November 28, 2025 at 6:19 PM
Need Help – Company Shut Down Bug Bounty Program After Fixing My 10 Reported Bugs Without Reward - Hacker Connect - @disclose_io Community Forum
Need Help – Company Shut Down Bug Bounty Program After Fixing My 10 Reported Bugs Without Reward
I reported 10 valid bugs including SQL Injection and account takeover to a company running a public bug bounty program. Initially, they acknowledged the reports and later fixed all the issues. But…
m.disclose.io
November 28, 2025 at 1:00 AM
Possibly uncovering a domain spoofing scheme targeting major real estate brands — looking for guidance - Hacker Connect - @disclose_io Community Forum m.disclose.io/3XXk7Cc
Possibly uncovering a domain spoofing scheme targeting major real estate brands — looking for guidance
Hi all, I’ve come across what might be a coordinated domain spoofing or redirect scheme affecting multiple large companies in the real estate and homebuilding industry — including portals,…
community.disclose.io
November 27, 2025 at 6:19 PM
Risky Bulletin: Russian bill would require researchers to report bugs to the FSB 👀

m.disclose.io/4oTTbz1
Risky Bulletin: Russian bill would require researchers to report bugs to the FSB - Risky Business Media
Russian lawmakers are working on a new bill that would require security researchers, security firms, and other white-hat hackers to report [Read More]
m.disclose.io
November 3, 2025 at 5:24 PM
Ugh… It’s 2025 and vendors still don’t understand the Streisand-effect.

cc: @disclose_io (threats.disclose.io)

YouTuber with nearly 4M subscribers sued by lock company after he breaks into lock with just a can www.uniladtech.com/social-media...
YouTuber with nearly 4M subscribers sued by lock company after he breaks into lock with just a can
YouTuber Trevor McNally was sued by a lock company after he broke into one of their products using just a can, all for entertainment on his channel.
www.uniladtech.com
October 29, 2025 at 10:15 PM
Research on legal risk experiences — seeking interviewees - Hacker Connect - @disclose_io Community Forum m.disclose.io/4lkPpgy
Research on legal risk experiences — seeking interviewees
We’re doing a research project to document researchers’ lived experiences of legal risk under US and UK law. If you’ve experienced legal risks under US or UK law, and can spare an hour or two of your…
community.disclose.io
July 14, 2025 at 6:10 PM
The disclose.io Community Forum is Back—Here’s How to Dive In substack.com/home/post/p-...
The disclose.io Community Forum is Back—Here’s How to Dive In
Rumors of it's death were greatly exaggerated...
disclose.io
May 18, 2025 at 8:39 PM
👀 👀 👀 Published yesterday, ENISA’s latest guidelines outline best practices for vulnerability management and disclosure in IT products under the EU Common Criteria (EUCC).
m.disclose.io
February 28, 2025 at 12:12 AM
Policymaker: The free, open-source vulnerability disclosure program (VDP) policy, security.txt, and DNS Security TXT generator - Part of the @disclose_io Project.
Policymaker: Open-source vulnerability disclosure program policy, security.txt, and DNS Security TXT generator - Part of the @disclose_io Project.
Disclose.io policymaker
buff.ly
November 16, 2024 at 6:00 AM
dnssecuritytxt - A standard allowing organizations to nominate security contact points and policies via DNS TXT records - Part of the @disclose_io Project
dnssecuritytxt
A standard allowing organizations to nominate security contact points and policies via DNS TXT records.
buff.ly
November 15, 2024 at 11:23 PM
threats.disclose.io: An ongoing collection of legal threats made against Security Researchers: over-reactions, demands, and cease & desist letters against good faith research - A part of the
@disclose_io Project https://m.disclose.io/3bfIfLT
Research Threats: Legal Threats Against Security Researchers
Collection of legal threats against good faith Security Researchers; vulnerability disclosure gone wrong. A continuation of work started by @attritionorg Part of The @disclose_io Project.
threats.disclose.io
November 15, 2024 at 6:00 AM