Open-source vulnerability disclosure and bug bounty program database
-
Updated
Mar 28, 2026 - Python
Open-source vulnerability disclosure and bug bounty program database
⚔️ A compiled list of companies who have active programs for responsible disclosure
Open-source vulnerability disclosure policy templates.
security.txt collection of most popular world-wide domains
Three Claude production tiers generated functional exploit code against live infrastructure when memory-stored interaction protocols suppressed constitutional safety checks. Six submissions over 27 days. Zero acknowledgment from Anthropic. Full transcripts, PoC evidence, and interactive research tools included.
CVE hunting harness for Claude Code - 20 skills, 5-agent team, systematic vulnerability research with false positive elimination
Find sites vulnerable to github subdomain takeover
Coordinated Vulnerability Disclosure Policy
Security.txt Manager for WordPress. For more plugins, visit https://handyplugins.co/
🛡️ Discover and analyze critical vulnerabilities in Meta AI's Instagram Group Chat, ensuring robust security through comprehensive testing and reporting.
Bug bounty report demonstrating prompt injection and command execution vulnerabilities in Meta AI's Instagram Group Chat
Responsible Disclosure Policy of Bigbank AS
Mechanism-grounded taxonomy of 40 LLM jailbreak patterns across 10 categories. Full evaluation harness for 4 frontier models. AI safety research with responsible disclosure.
The Internet Observatory (Obsrva) is a vulnerability research project founded by independent security researcher Tyler Butler. Obsrva engages product vendors in coordinated disclosures, publishes vulnerability advisories, and creates proof of concept exploits.
Technical advisories on security vulnerabilities
Security analysis and disclosure of a CTDB socket handling vulnerability in Samba (Bugzilla #15921)
Responsible Disclosure Report for vulnerabilities found in PHPGurukul HMS Project
Public record of responsible disclosures, security assessments, and ethical hacking work.
Automated Bash script to verify WordPress XML-RPC system.multicall vulnerabilities. Designed for responsible disclosure processes to demonstrate bypasses of traditional rate-limiting.
My personal repository.
Add a description, image, and links to the responsible-disclosure topic page so that developers can more easily learn about it.
To associate your repository with the responsible-disclosure topic, visit your repo's landing page and select "manage topics."