logo

How MSRC coordinates vulnerability research and disclosure while building community

ID: ee8d6724-0212-5062-b4e9-683df941614b

STIX ID: report--ee8d6724-0212-5062-b4e9-683df941614b

Feed Name: Microsoft Security

Date Published: 2025-03-13

Date Updated: 2026-04-28

Author: Tom Gallagher

...
...

This document outlines how the Microsoft Security Response Center (MSRC) coordinates vulnerability reporting and remediation through CVD, expanded bug bounty and recognition programs (including Defender, AI, and Zero Day Quest), machine-readable CSAF advisories and the Security Updates API, and early partner sharing via MAPP to accelerate protections. It highlights Microsoft’s monthly security update cadence, clarifies when customer action is required, and promotes community education via the MSRC blog, Security Update Guide, and BlueHat conference, with links to resources for staying informed.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.