The G DATA Vulnerability Management

Overview

Security is a top priority for G DATA. As a leading company for IT security "Made in Germany", we look for the highest security standards in all our products. However, we alone are not always able to ensure that the search for weak points is complete. Therefore, we are dependent on information from others about weak points in our products.

Should you discover a security vulnerability in our software solutions or on our website, please let us know. We take all reports concerning the security of our products very seriously and will verify then immediately.

Would you like to report a security vulnerability? Please visit our vulnerability reporting page! There, you can report your findings to us with absolute confidentiality and security.

G DATA does not take any legal action against persons acting in accordance with the guidelines listed below. Likewise, we are following all relevant laws.

  • Our Vulnerability Disclosure Policy can be found here.

  • Security advisories are published here.

  • Acknowledgements to contributors are listed here.

Vulnerabilities

G DATA handles responsible disclosure of potential vulnerabilities and software anomalies (bugs). This includes vulnerabilities and bugs in computer and mobile software that is produced by G DATA, as well as vulnerabilities in online services, domains and websites that are maintained by G DATA or/and its distributors and affiliates.

Additionally, we reward every confirmed vulnerability that is reported to us. More about our reward policy can be found at the end of our Vulnerability Disclosure Policy.