NEWSLETTER

Receive and collect information on suspected product security vulnerabilities.
Coordinate with relevant teams to perform vulnerability validation and risk assessment.
Analyze the root cause of the vulnerability and implement vulnerability remediation.
Proactively disclose vulnerability information and release firmware updates/fixes.
According to EU Cyber Resilience Act (CRA) REGULATION (EU) 2024/2847
| Actively exploited vulnerability | Severe security incidents | |
| Timeliness | 1. Early warning notification within 24 hours 2. General information submission within 72 hours 3. Final report no later than 14 days | 1. Early warning notification within 24 hours 2. General information submission within 72 hours 3. Final report no later than 1 month |
| Content | 1. Vulnerability Description 2. Severity and Impact 3. Malicious Actors Exploiting the Vulnerability 4. Detailed Information on Security Updates or Corrective Measures | 1. Incident Description 2. Severity and Impact 3. Threat Type or Root Cause 4. Mitigation Measures Taken and Ongoing |
Last updated: [Month DD, YYYY]
For sensitive technical details, please use encrypted communication where possible.