logo

Vulnerability Disclosure is Now Mandatory for Federal Agencies - Here's How to Make it Happen

ID: 491f98eb-f228-59f6-a96b-0d05b8359c96

STIX ID: report--491f98eb-f228-59f6-a96b-0d05b8359c96

Feed Name: HackerOne Blog

Date Published: 2024-11-20

Date Updated: 2026-06-11

...
...

This document explains CISA's Binding Operational Directive 20-01, which mandates federal agencies publish vulnerability disclosure policies (VDPs) and meet specific timelines and handling requirements; it provides five practical steps for compliance and promotes HackerOne's tools and services to help agencies implement and manage VDP programs.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.