Skip to content

Hide Navigation Hide TOC

Function: Public source vulnerability discovery (9ff2dcf3-7b42-5114-9fb9-0d9cd7037845)

A CSIRT may initially learn about a new vulnerability from various public sources that announce such information. The sources can include vendor announcements, security websites, mailing lists, vulnerability databases, security conferences, social media, etc. This function may also learn of new vulnerabilities through other third-party sources that may not be completely open to the public, such as through paid subscriptions or premium services where information is shared with only a limited group. Staff may be assigned the responsibility to perform this function and collect information to organize it for further review and sharing. Similar vulnerability information might also be received from the services of the Situational Awareness service area.

Cluster A Galaxy A Cluster B Galaxy B Level
Service: Vulnerability discovery / research (e43c7bab-34c9-5ee1-9e40-915d265ccd70) FIRST CSIRT Services Framework Function: Public source vulnerability discovery (9ff2dcf3-7b42-5114-9fb9-0d9cd7037845) FIRST CSIRT Services Framework 1