ICTASL / open-meetings

Records of all meetings conducted by ICTA
http://ictasl.github.io/open-meetings
13 stars 1 forks source link

Assistance for Vulnerability Management for Government Software System #24

Open amindajames opened 4 years ago

amindajames commented 4 years ago

Dear ICTA, This is regarding the initiative ICTA had taken to address vulnerabilities in Government Software Systems with the help of responsible vulnerability disclosure. We greatly appreciate the initiative ICTA taken to address security vulnerabilities in government systems and our team might be able to help with this to be more productive and efficient. If you can provide us with a list of domains that security needs to be addressed, we can use our platform and our growing security researcher community to address all the current security vulnerabilities within a very short time. Please do visit our platform at hackedon.com to explore our services.

Currently our research community is keen on working with the government of Sri Lanka and ICTA to find and solve security vulnerabilities of government systems. Due to that we conducted a simple recon on some randomly selected government websites. During the recon process, our in house researchers manged to find multiple critical vulnerabilities in the selected sample set. We are more than happy to share these findings with you. However, our security researcher community is reluctant to report and communicate vulnerabilities due to lack of structured process of vulnerability reporting, managing, recognition and disclosure which we have already addressed through HackedON Security Platform. We are more than happy to work with you regarding this matter.

Feel free to contact us for further information, VXXX MaXXXXXXXa - +94XXXXXXXXXX AXXX SXXXXXXXXX - +94 XXXXXXXXXX

We are looking forward to working with you to secure Sri Lankan information infrastructure.

More about us, HackedON is a crowdsourced security platform designed to address the growing security needs of Sri Lankan digital applications. Currently, security researcher community consists of 150+ registered security researchers working in different industries. HackedON was recognized at the E-Swabhimani 2019 - Digital Social Impact Awards, as the youth award winner and certificate of appreciation in the Business and Commerce Category. Best Regards,

Team HackedON team@hackedon.com | hackedon.com