Email

hello@infosecpwn.com

We read everything and reply to most of it.

What’s worth sending

  • Corrections. Fastest route to a fix. Point at the specific claim and what’s wrong with it. We will correct the post and note the change.
  • Tips on active exploitation. Especially if you’re seeing something in your own telemetry that hasn’t been written up yet.
  • Detection improvements. If a query or rule here is noisy or wrong in your environment, that is useful to know.

What isn’t

  • Guest post and link-insertion offers. The answer is no.
  • Requests for exploit code or attack assistance. See About.
  • Vulnerability reports for third-party products — take those to the vendor or a coordinated disclosure program rather than here.

Responsible disclosure for this site

If you find a security issue in infosecpwn.com itself, email the address above. It is a static site with no user accounts and no database, so the surface is small — but we would still like to know.