# Latest

**URL:** https://community.disclose.io/latest.md

[Latest](https://community.disclose.io/latest.md) · [Categories](https://community.disclose.io/categories.md) · [Tags](https://community.disclose.io/tags.md)

---

## [Welcome to disclose.io - How We Can Help](https://community.disclose.io/t/welcome-to-disclose-io-how-we-can-help/951)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 1\
**Last updated:** [May 15, 2026, 5:43pm UTC](https://community.disclose.io/t/welcome-to-disclose-io-how-we-can-help/951 "2026-05-15T17:43:17Z")

</div>

Welcome to the disclose.io Community! Whether you are a security researcher trying to report a vulnerability, a company looking to set up a disclosure program, or just curious about coordinated disclosure - you are in th…

---

## [Welcome to Discourse](https://community.disclose.io/t/welcome-to-discourse/7)

<div class="topic-metadata">

**Author:** [@system](https://community.disclose.io/u/system)\
**Replies:** 0\
**Last updated:** [January 21, 2021, 4:33am UTC](https://community.disclose.io/t/welcome-to-discourse/7 "2021-01-21T04:33:11Z")

</div>

The first paragraph of this pinned topic will be visible as a welcome message to all new visitors on your homepage. It’s important! Edit this into a brief description of your community: Who is it for? What can they fi…

---

## [Policy Pulse - Week of September 20, 2026 | Issue #35](https://community.disclose.io/t/policy-pulse-week-of-september-20-2026-issue-35/1077)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 0\
**Last updated:** [September 20, 2026, 10:04pm UTC](https://community.disclose.io/t/policy-pulse-week-of-september-20-2026-issue-35/1077 "2026-09-20T22:04:41Z")

</div>

Your weekly briefing on cybersecurity policy affecting vulnerability disclosure and security research. Issue #35, September 20, 2026. Top Story AI Researchers used a new frontier model to chain a forum bug into OpenAI e…

---

## [Policy Pulse - Week of September 14, 2026 | Issue #34](https://community.disclose.io/t/policy-pulse-week-of-september-14-2026-issue-34/1074)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 0\
**Last updated:** [September 14, 2026, 10:07pm UTC](https://community.disclose.io/t/policy-pulse-week-of-september-14-2026-issue-34/1074 "2026-09-14T22:07:14Z")

</div>

Your weekly briefing on cybersecurity policy affecting vulnerability disclosure and security research. Issue #34, September 14, 2026. Top Story Federal DOE wants to know what happens after a researcher reports a vulnera…

---

## [Policy Pulse - Week of September 6, 2026 | Issue #33](https://community.disclose.io/t/policy-pulse-week-of-september-6-2026-issue-33/1073)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 0\
**Last updated:** [September 6, 2026, 10:05pm UTC](https://community.disclose.io/t/policy-pulse-week-of-september-6-2026-issue-33/1073 "2026-09-06T22:05:12Z")

</div>

Policy Pulse - Issue #33 | Week of September 6, 2026 Your weekly briefing on cybersecurity policy affecting vulnerability disclosure and security research. Top Story Three frontier labs declared or gated offensive-grad…

---

## [Policy Pulse - Week of September 1, 2026 | Issue #32](https://community.disclose.io/t/policy-pulse-week-of-september-1-2026-issue-32/1072)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 0\
**Last updated:** [September 1, 2026, 8:03pm UTC](https://community.disclose.io/t/policy-pulse-week-of-september-1-2026-issue-32/1072 "2026-09-01T20:03:32Z")

</div>

Policy Pulse #32 is up. Your weekly briefing on cybersecurity policy affecting vulnerability disclosure and security research. Top story: a preview cyber model broke out of a stock VM three times, and the disclosure rec…

---

## [Policy Pulse - Week of August 23, 2026 | Issue #30](https://community.disclose.io/t/policy-pulse-week-of-august-23-2026-issue-30/1071)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 0\
**Last updated:** [August 29, 2026, 5:51pm UTC](https://community.disclose.io/t/policy-pulse-week-of-august-23-2026-issue-30/1071 "2026-08-29T17:51:03Z")

</div>

Policy Pulse - Issue #30 | Week of August 23, 2026 Your weekly briefing on cybersecurity policy affecting vulnerability disclosure and security research. Top Story Mandiant just made AI-scale vulnerability disclosure m…

---

## [Policy Pulse - Week of August 16, 2026 | Issue #29](https://community.disclose.io/t/policy-pulse-week-of-august-16-2026-issue-29/1061)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 0\
**Last updated:** [August 16, 2026, 10:10pm UTC](https://community.disclose.io/t/policy-pulse-week-of-august-16-2026-issue-29/1061 "2026-08-16T22:10:08Z")

</div>

Policy Pulse - Issue #29 | Week of August 16, 2026 Your weekly briefing on cybersecurity policy affecting vulnerability disclosure and security research. Top Story The White House authorizes private firms to hack back,…

---

## [Policy Pulse - Week of August 10, 2026 | Issue #28](https://community.disclose.io/t/policy-pulse-week-of-august-10-2026-issue-28/1059)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 0\
**Last updated:** [August 10, 2026, 6:06pm UTC](https://community.disclose.io/t/policy-pulse-week-of-august-10-2026-issue-28/1059 "2026-08-10T18:06:41Z")

</div>

Policy Pulse - Issue #28 | Week of August 10, 2026 Your weekly briefing on cybersecurity policy affecting vulnerability disclosure and security research. Top Story Latvia puts a researcher safe harbor out for public co…

---

## [Policy Pulse - Week of July 18, 2026 | Issue #25](https://community.disclose.io/t/policy-pulse-week-of-july-18-2026-issue-25/1047)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 0\
**Last updated:** [July 19, 2026, 10:06pm UTC](https://community.disclose.io/t/policy-pulse-week-of-july-18-2026-issue-25/1047 "2026-07-19T22:06:37Z")

</div>

Policy Pulse - Issue #25 | Week of July 18, 2026 Your weekly briefing on cybersecurity policy affecting vulnerability disclosure and security research. Top Story Five Governments, One Playbook: CISA, NSA, and Allied Ag…

---

## [Start here: finding a security contact with lookup.disclose.io](https://community.disclose.io/t/start-here-finding-a-security-contact-with-lookup-disclose-io/1046)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 0\
**Last updated:** [July 19, 2026, 10:04am UTC](https://community.disclose.io/t/start-here-finding-a-security-contact-with-lookup-disclose-io/1046 "2026-07-19T10:04:04Z")

</div>

Most posts in Hacker Connect are some version of “I found something at company X and I can’t find anyone to report it to.” That is exactly the problem lookup.disclose.io was built to solve, so before you post, it is wort…

---

## [Best practices for vulnerability disclosure in real time video platforms](https://community.disclose.io/t/best-practices-for-vulnerability-disclosure-in-real-time-video-platforms/1023)

<div class="topic-metadata">

**Author:** [@abhaydevsupport](https://community.disclose.io/u/abhaydevsupport)\
**Replies:** 1\
**Last updated:** [July 19, 2026, 10:03am UTC](https://community.disclose.io/t/best-practices-for-vulnerability-disclosure-in-real-time-video-platforms/1023 "2026-07-19T10:03:53Z")

</div>

hey there curious if anyone operating real time video or streaming platforms typically handle vulnerability disclosure and research communication. Are there any practices around VDP programs, researches safe harbor polic…

---

## [Looking for a security contact at .mojix.com (@MojixInc)](https://community.disclose.io/t/looking-for-a-security-contact-at-mojix-com-mojixinc/725)

<div class="topic-metadata">

**Author:** [@un\_kn0wn](https://community.disclose.io/u/un_kn0wn)\
**Replies:** 2\
**Last updated:** [July 15, 2026, 5:13pm UTC](https://community.disclose.io/t/looking-for-a-security-contact-at-mojix-com-mojixinc/725 "2026-07-15T17:13:49Z")

</div>

Hi everyone, hope you all are healthy and well. I need a security contact for mojix.com. Can someone assist on that matter ? Thank you in advance un\_kn0wn

---

## [Looking for a security contact at interac.ca (@interac)](https://community.disclose.io/t/looking-for-a-security-contact-at-interac-ca-interac/734)

<div class="topic-metadata">

**Author:** [@un\_kn0wn](https://community.disclose.io/u/un_kn0wn)\
**Replies:** 2\
**Last updated:** [July 15, 2026, 5:05pm UTC](https://community.disclose.io/t/looking-for-a-security-contact-at-interac-ca-interac/734 "2026-07-15T17:05:01Z")

</div>

Hi everyone, hope you all are healthy and well. I need a security contact for interac.ca. Can someone assist on that matter ? Thank you in advance un\_kn0wn

---

## [Looking for a security contact - atomicwallet.io](https://community.disclose.io/t/looking-for-a-security-contact-atomicwallet-io/651)

<div class="topic-metadata">

**Author:** [@un\_kn0wn](https://community.disclose.io/u/un_kn0wn)\
**Replies:** 6\
**Last updated:** [July 15, 2026, 5:02pm UTC](https://community.disclose.io/t/looking-for-a-security-contact-atomicwallet-io/651 "2026-07-15T17:02:34Z")

</div>

Hi everyone, hope you are healthy and well. Is atomicwallet running a bug bounty program and or does someone got a security contact ? Thank you in advance un\_kn0wn

---

## [Policy Pulse - Week of July 11, 2026 | Issue #24](https://community.disclose.io/t/policy-pulse-week-of-july-11-2026-issue-24/1035)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 0\
**Last updated:** [July 12, 2026, 10:03pm UTC](https://community.disclose.io/t/policy-pulse-week-of-july-11-2026-issue-24/1035 "2026-07-12T22:03:31Z")

</div>

Policy Pulse - Issue #24 | Week of July 11, 2026 Your weekly briefing on cybersecurity policy affecting vulnerability disclosure and security research. Top Story The Gate Swings Open Again: GPT-5.6 Sol Goes Public, and…

---

## [Feedback wanted: lookup.disclose.io — new MCP server + API, and where it still gets attribution wrong](https://community.disclose.io/t/feedback-wanted-lookup-disclose-io-new-mcp-server-api-and-where-it-still-gets-attribution-wrong/1016)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 2\
**Last updated:** [July 8, 2026, 9:37am UTC](https://community.disclose.io/t/feedback-wanted-lookup-disclose-io-new-mcp-server-api-and-where-it-still-gets-attribution-wrong/1016 "2026-07-08T09:37:18Z")

</div>

Vulnerability coordination is in the process of changing shape. People still find the bugs and decide what’s worth reporting — but the plumbing that carries a finding to the right inbox is getting more programmatic, thro…

---

## [Lookup.disclose.io — MCP server, API, and new tool integrations](https://community.disclose.io/t/lookup-disclose-io-mcp-server-api-and-new-tool-integrations/1030)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 0\
**Last updated:** [July 8, 2026, 5:52am UTC](https://community.disclose.io/t/lookup-disclose-io-mcp-server-api-and-new-tool-integrations/1030 "2026-07-08T05:52:07Z")

</div>

lookup.disclose.io turns any asset — a domain, IP, URL, email, ASN, package, repo, container, or browser extension — into the right security contact: VDP, bug bounty, PSIRT, security.txt, or CERT. Three ways to use it: …

---

## [Policy Pulse - Week of July 4, 2026 | Issue #23](https://community.disclose.io/t/policy-pulse-week-of-july-4-2026-issue-23/1027)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 0\
**Last updated:** [July 5, 2026, 5:36am UTC](https://community.disclose.io/t/policy-pulse-week-of-july-4-2026-issue-23/1027 "2026-07-05T05:36:33Z")

</div>

Policy Pulse - Issue #23 | Week of July 4, 2026 Your weekly briefing on cybersecurity policy affecting vulnerability disclosure and security research. Top Story The Gate Swings Open: US Lifts Export Controls on Anthrop…

---

## [Policy Pulse - Week of June 28, 2026 | Issue #22](https://community.disclose.io/t/policy-pulse-week-of-june-28-2026-issue-22/1018)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 0\
**Last updated:** [June 28, 2026, 11:36pm UTC](https://community.disclose.io/t/policy-pulse-week-of-june-28-2026-issue-22/1018 "2026-06-28T23:36:48Z")

</div>

Policy Pulse - Issue #22 | Week of June 28, 2026 Your weekly briefing on cybersecurity policy affecting vulnerability disclosure and security research. Top Story Government Gatekeeping of AI Cyber Models Hardens — Open…

---

## [Policy Pulse - Week of June 27, 2026 | Issue #21](https://community.disclose.io/t/policy-pulse-week-of-june-27-2026-issue-21/1017)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 0\
**Last updated:** [June 28, 2026, 5:15am UTC](https://community.disclose.io/t/policy-pulse-week-of-june-27-2026-issue-21/1017 "2026-06-28T05:15:51Z")

</div>

Policy Pulse - Issue #21 | Week of June 27, 2026 Your weekly briefing on cybersecurity policy affecting vulnerability disclosure and security research. Top Story Fifteen days after export control pulled Anthropic’s off…

---

## [Policy Pulse - Week of June 20, 2026 | Issue #20](https://community.disclose.io/t/policy-pulse-week-of-june-20-2026-issue-20/1015)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 0\
**Last updated:** [June 20, 2026, 11:46pm UTC](https://community.disclose.io/t/policy-pulse-week-of-june-20-2026-issue-20/1015 "2026-06-20T23:46:02Z")

</div>

Policy Pulse - Issue #20 | Week of June 20, 2026 Your weekly briefing on cybersecurity policy affecting vulnerability disclosure and security research. Top Story Three days after Anthropic shipped an offensive cyber mo…

---

## [Policy Pulse - Week of June 13, 2026 | Issue #19](https://community.disclose.io/t/policy-pulse-week-of-june-13-2026-issue-19/1014)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 0\
**Last updated:** [June 15, 2026, 2:43am UTC](https://community.disclose.io/t/policy-pulse-week-of-june-13-2026-issue-19/1014 "2026-06-15T02:43:09Z")

</div>

Policy Pulse - Issue #19 | Week of June 13, 2026 Your weekly briefing on cybersecurity policy affecting vulnerability disclosure and security research. Top Story The White House signed an AI cyber order. It tells the g…

---

## [Policy Pulse - Week of June 6, 2026 | Issue #18](https://community.disclose.io/t/policy-pulse-week-of-june-6-2026-issue-18/1013)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 0\
**Last updated:** [June 7, 2026, 4:05pm UTC](https://community.disclose.io/t/policy-pulse-week-of-june-6-2026-issue-18/1013 "2026-06-07T16:05:45Z")

</div>

Policy Pulse - Issue #18 | Week of June 6, 2026 Your weekly briefing on cybersecurity policy affecting vulnerability disclosure and security research. Top Story Hackers on the Hill Returns June 16: The Researcher-Polic…

---

## [Policy Pulse - Week of May 30, 2026 | Issue #17](https://community.disclose.io/t/policy-pulse-week-of-may-30-2026-issue-17/1000)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 0\
**Last updated:** [May 31, 2026, 11:50am UTC](https://community.disclose.io/t/policy-pulse-week-of-may-30-2026-issue-17/1000 "2026-05-31T11:50:36Z")

</div>

Policy Pulse - Issue #17 | Week of May 30, 2026 Your weekly briefing on cybersecurity policy affecting vulnerability disclosure and security research. Top Story Microsoft’s “A Shared Responsibility” post invokes the Di…

---

## [Help with bugcrowed](https://community.disclose.io/t/help-with-bugcrowed/997)

<div class="topic-metadata">

**Author:** [@spartan880](https://community.disclose.io/u/spartan880)\
**Replies:** 0\
**Last updated:** [May 25, 2026, 9:54pm UTC](https://community.disclose.io/t/help-with-bugcrowed/997 "2026-05-25T21:54:46Z")

</div>

Hey, looking for community wisdom on something. About 2 months ago I started doing web/mobile testing on Bugcrowd. One of my early findings was an unauthenticated email viewer where I could read every outbound email a co…

---

## [Policy Pulse - Week of May 9, 2026 | Issue #14](https://community.disclose.io/t/policy-pulse-week-of-may-9-2026-issue-14/984)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 0\
**Last updated:** [May 9, 2026, 5:35pm UTC](https://community.disclose.io/t/policy-pulse-week-of-may-9-2026-issue-14/984 "2026-05-09T17:35:11Z")

</div>

Policy Pulse - Issue #14 | Week of May 9, 2026 Your weekly briefing on cybersecurity policy affecting vulnerability disclosure and security research. Top Story Governments Line Up Behind Project Glasswing as Mythos For…

---

## [Policy Pulse - Week of May 3, 2026 | Issue #13](https://community.disclose.io/t/policy-pulse-week-of-may-3-2026-issue-13/981)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 0\
**Last updated:** [May 3, 2026, 10:18pm UTC](https://community.disclose.io/t/policy-pulse-week-of-may-3-2026-issue-13/981 "2026-05-03T22:18:42Z")

</div>

Policy Pulse - Issue #13 | Week of May 3, 2026 AISI’s second frontier-model cyber evaluation in four weeks confirms what Issue #12 hinted at: this is a trend, not a Mythos one-off. NIST formally drops enrichment for ~29,…

---

## [Shittrix — 89 vulnerabilities in Citrix XenServer / XCP-ng, day-0 disclosure](https://community.disclose.io/t/shittrix-89-vulnerabilities-in-citrix-xenserver-xcp-ng-day-0-disclosure/980)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 0\
**Last updated:** [May 3, 2026, 5:59am UTC](https://community.disclose.io/t/shittrix-89-vulnerabilities-in-citrix-xenserver-xcp-ng-day-0-disclosure/980 "2026-05-03T05:59:58Z")

</div>

Surfacing a major write-up that landed last week and deserves wider attention. Shittrix — https://shittrix.moksha.dk/ — is a public security audit of Citrix XenServer and XCP-ng (XAPI) by independent researcher Jakob Wo…

---

## [Policy Pulse - Week of April 19, 2026 | Issue #11](https://community.disclose.io/t/policy-pulse-week-of-april-19-2026-issue-11/972)

<div class="topic-metadata">

**Author:** [@disclose](https://community.disclose.io/u/disclose)\
**Replies:** 0\
**Last updated:** [April 19, 2026, 9:10pm UTC](https://community.disclose.io/t/policy-pulse-week-of-april-19-2026-issue-11/972 "2026-04-19T21:10:55Z")

</div>

Policy Pulse - Issue #11 | Week of April 19, 2026 Your weekly briefing on cybersecurity policy affecting vulnerability disclosure and security research. Top Story CIRCIA Final Rule on Collision Course with Funding Laps…

[Next page](https://community.disclose.io/latest.md?page=1)
