{"id":21953,"date":"2022-01-27T07:40:06","date_gmt":"2022-01-27T07:40:06","guid":{"rendered":"https:\/\/academy.apnic.net\/?page_id=21953"},"modified":"2024-09-17T03:45:09","modified_gmt":"2024-09-17T03:45:09","slug":"apnics-vulnerability-reporting-program-92078415741","status":"publish","type":"page","link":"https:\/\/academy.apnic.net\/en\/webinar-courses\/apnics-vulnerability-reporting-program-92078415741","title":{"rendered":"APNIC&#8217;s Vulnerability Reporting Program"},"content":{"rendered":"\n<h2 class=\"wp-block-heading\">Overview<\/h2>\n\n\n\n<p><strong>Course Overview<\/strong><\/p>\n\n\n\n<p>APNIC has been running a public&nbsp;<a href=\"https:\/\/www.apnic.net\/community\/security\/apnic-vulnerability-reporting-program\/\">Vulnerability Reporting Program<\/a>&nbsp;(VRP) for just over a year now, where we have been inviting security researchers worldwide to responsibly report to us any vulnerabilities they find in our networks, servers, and services.<\/p>\n\n\n\n<p>This course will follow the VRP from its first concept, through creation and the first year of operations. We\u2019ll look at when went well, and what improvements were made along the way. We\u2019ll also review the vulnerabilities reported, and examine them based on when they were reported, their severity, and who reported the issues to us. We\u2019ll then cover some lessons learned from this project, and what APNIC is doing next to improve external vulnerability management.<\/p>\n\n\n\n<p><br><\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Course Outline<\/h2>\n\n\n\n<p>This course will cover the following topics:<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li>What is a Vulnerability Reporting\/Disclosure Program? (VRP\/VDP)<\/li>\n\n\n\n<li>Why APNIC started a VRP<\/li>\n\n\n\n<li>Process of creating a VRP<\/li>\n\n\n\n<li>Review of vulnerabilities reported (count, severity, who reported them)<\/li>\n\n\n\n<li>Lessons learned<\/li>\n\n\n\n<li>What are the next steps after the VD<\/li>\n<\/ol>\n\n\n\n<h2 class=\"wp-block-heading\">Course Materials<\/h2>\n\n\n\n<div class=\"wp-block-file\"><a id=\"wp-block-file--media-9bf134b2-df81-4fa1-bc63-16cce4b8b23c\" href=\"https:\/\/academy-wp-media-prod.storage.googleapis.com\/wp-content\/uploads\/2022\/03\/09233037\/APNIC-Academy-APNICs-Vulnerability-Reporting-Program-2022-02-18.pdf\">Slides: APNIC&#8217;s Vulnerability Reporting Program<\/a><a href=\"https:\/\/academy-wp-media-prod.storage.googleapis.com\/wp-content\/uploads\/2019\/02\/09234130\/slides_ipv6_ap.pdf\" class=\"wp-block-file__button wp-element-button\" download aria-describedby=\"wp-block-file--media-9bf134b2-df81-4fa1-bc63-16cce4b8b23c\">Download<\/a><\/div>\n\n\n\n<p><br><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Overview Course Overview APNIC has been running a public&nbsp;Vulnerability Reporting Program&nbsp;(VRP) for just over a year now, where we have been inviting security researchers worldwide to responsibly report to us any vulnerabilities they find in our networks, servers, and services. This course will follow the VRP from its first concept, through creation and the first [&hellip;]<\/p>\n","protected":false},"author":12243,"featured_media":24310,"parent":1693,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"page-templates\/webinar-course.php","meta":{"footnotes":""},"tags":[25,42,561],"class_list":["post-21953","page","type-page","status-publish","has-post-thumbnail","hentry","tag-network-security","tag-security","tag-vrp-vdp"],"_links":{"self":[{"href":"https:\/\/academy.apnic.net\/en\/wp-json\/wp\/v2\/pages\/21953","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/academy.apnic.net\/en\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/academy.apnic.net\/en\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/academy.apnic.net\/en\/wp-json\/wp\/v2\/users\/12243"}],"replies":[{"embeddable":true,"href":"https:\/\/academy.apnic.net\/en\/wp-json\/wp\/v2\/comments?post=21953"}],"version-history":[{"count":9,"href":"https:\/\/academy.apnic.net\/en\/wp-json\/wp\/v2\/pages\/21953\/revisions"}],"predecessor-version":[{"id":32836,"href":"https:\/\/academy.apnic.net\/en\/wp-json\/wp\/v2\/pages\/21953\/revisions\/32836"}],"up":[{"embeddable":true,"href":"https:\/\/academy.apnic.net\/en\/wp-json\/wp\/v2\/pages\/1693"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/academy.apnic.net\/en\/wp-json\/wp\/v2\/media\/24310"}],"wp:attachment":[{"href":"https:\/\/academy.apnic.net\/en\/wp-json\/wp\/v2\/media?parent=21953"}],"wp:term":[{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/academy.apnic.net\/en\/wp-json\/wp\/v2\/tags?post=21953"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}