locka99 / opcua

A client and server implementation of the OPC UA specification written in Rust
Mozilla Public License 2.0
476 stars 129 forks source link

How to report a security issue? #209

Closed SharonBrizinov closed 2 years ago

SharonBrizinov commented 2 years ago

We would like to responsibly report on a vulnerability we found in rust opcua. Where should we send our detailed report?

Additionally I would like to suggest adding a security policy to the repository to help other security researchers reach out to you properly.

Thanks! Team82 Claroty Research https://claroty.com/team82/

locka99 commented 2 years ago

I've added a SECURITY.md but you can raise an issue about it or contact me with the info in the document. Thx