Huf PSIRT - Product Security Incident Response Team

The security of our products is our top priority. That is why Huf has a responsible disclosure process for the confidential reporting of any vulnerabilities or security breaches. If you have found a potential vulnerability in one of our products, please report it to us using the process described here. Our Huf PSIRT (Product Cybersecurity Incident Response Team) is a global team that manages information about security vulnerabilities related to our products. The Huf PSIRT is the central point of contact for all white-hat hackers, customers, partners, suppliers, and other individuals who wish to report security information related to Huf products..

How to contact our PSIRT (Product Security Incident Response Team):

To get in touch with the Huf PSIRT, use the web portal at:

https://huf-group.hintbox.de/

and change the language in the drop down menu on the right side to your preferred language. 

In this portal, select the option "Incidents relating to the cybersecurity of products". Huf has established this tool instead of a public PGP key. The system reliably protects your confidential data and is ISO 27001 certified. The Huf PSIRT will then contact you to discuss the next steps.

If you prefer to remain anonymous, this is also possible in the Huf Hintbox. The system provides case-specific access data, which you can use at any time to view the status of your enquiry, provide additional information or view feedback from the PSIRT.

Please provide at least the following information:

  • Contact details (option)
  • Which product is affected?
  • Detailed description and proof of concept

While we are processing your report, we ask you to treat your findings confidentially and not to publish them anywhere. The PSIRT will provide you with initial feedback within one week.

Thank you for your support and commitment to the safety of our products.

Why you should report weaknesses in Huf products to the Huf PSIRT?

Responsible disclosure of vulnerabilities is critical to the security and reliability of our products. By informing our Huf PSIRT about potential vulnerabilities, you help to make our products more secure and protect our customers. Here are some reasons why your report is important:

  1. Improving product security:

    By reporting vulnerabilities, you enable Huf to quickly identify and rectify security gaps. This helps to prevent potential attacks and ensure the security of our products.

  2. Protection of our customers:

    By eliminating vulnerabilities in our products, we at Huf can protect our customers from potential security risks. Your report helps to strengthen our customers' confidence in the security of our products.

  3. Continuous improvement:

    Reporting vulnerabilities helps us to continuously improve our security processes and guidelines. This leads to more robust and secure products in the future.

  4. Responsible disclosure:

    Huf highly values collaboration with the cyber security community and believes in the impact and value of responsible vulnerability disclosure. This means that we address vulnerabilities in a way that prioritises the security of the end users who use our products every day.

安全问题用于过滤垃圾消息。请在上方准确输入“Huf“字样(不包括引号)。谢谢