On Wednesday, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) and four allied cyber authorities published a guide telling software vendors how to build a coordinated vulnerability disclosure (CVD) program. Six days earlier, CISA published a blog post explaining how…
The post CISA folds its own hard-won lessons into coordinated vulnerability disclosure guidance appeared first on IT Security News.