
DC3 VDP
@dc3vdp
Official Twitter account of the U.S. DoD Vulnerability Disclosure Program (VDP).
ID: 1081215337603960833
https://www.dc3.mil/Missions/Vulnerability-Disclosure/Vulnerability-Disclosure-Program-VDP/ 04-01-2019 15:46:39
409 Tweet
4,4K Followers
114 Following

NOV 2024 Department of Defense ๐บ๐ธ Vulnerability Disclosure Program (#VDP) #Hacker0x01 DoD VDP received a critical severity submission detailing the presence of AWS instances and SMTP server credentials within public configuration files. Read all about it in the #Knowledgebyte.


A huge shoutout to Roy Solberg (Roy Solberg) for closing out the year with an incredible achievement! From RXSS and SSRF to database extractions, your detailed findings have significantly bolstered DoD cybersecurity. Thank you for your dedication and expertise! #InfoSec #DoDVDP



Dec 2024 Department of Defense ๐บ๐ธ Defense Industrial Based Vulnerability Disclosure Program #DIBVDP #Hackers reported a vulnerability involving SQL Injection which could have led to dumping sensitive data. Read all about it in the #KnowledgeByte.


DEC 2024 Department of Defense ๐บ๐ธ Vulnerability Disclosure Program #VDP #Hacker0x01 DoD VDP received a critical severity submission detailing a vulnerability that allowed for the extraction of database contents from a Lotus Domino Server. Read all about it in the #Knowledgebyte.



Huge thanks to ใใฟใกใใ for uncovering the critical JWT info disclosure vulnerability! Your dedication to improving web security helps protect us all. This finding highlights the risks that could impact security frameworks. Stay vigilant! ๐ #DIBVDP #CyberSecurity #EthicalHacking


JAN 2025 Department of Defense ๐บ๐ธ Vulnerability Disclosure Program (#VDP) #Hacker0x01 #Hackers reported a critical severity in GraphQL API misconfigurations that could allow for unauthorized data modification. Read all about it in the #Knowledgebyte.


JAN 2025 Department of Defense ๐บ๐ธ Defense Industrial Based Vulnerability Disclosure Program #DIBVDP #Hackers reported a vulnerability involving JWT vulnerability which could have led to exposing sensitive data. Read all about it in the #KnowledgeByte.






FEB 2025 Department of Defense ๐บ๐ธ Defense Industrial Based Vulnerability Disclosure Program (#DIBVDP) #Hackers reported a vulnerability involving exposed PII which could have led to an advisory obtaining sensitive data. Read all about it in the #KnowledgeByte.


FEB 2025 Department of Defense ๐บ๐ธ Vulnerability Disclosure Program (#VDP) #Hacker0x01 #Hackers reported a critical severity vulnerability identifying a security misconfiguration discovered in a DoD Salesforce deployment. Read all about it in the #Knowledgebyte.


Huge thanks to farinhando for uncovering critical vulnerabilities in Authentication Bypass via Response Manipulation! These findings highlight serious security risks that need urgent attention. Stay vigilant, update systems, and prioritize cybersecurity! ๐ #DIBVDP #CyberSecurity


Huge thanks to Jonas Dias Rebelo for identifying an exposed debug file containing a full database dumpโwith plaintext passwords. A sharp catch that reinforces the importance of secure development practices. Your work is truly appreciated! #CyberSecurity #InfoSec #DoDSecurity


MAR 2025 Department of Defense ๐บ๐ธ Defense Industrial Based Vulnerability Disclosure Program #DIBVDP #Hackers reported a vulnerability involving Improper Authentication that could lead to unauthorized access and system compromise. Read all about it in the #KnowledgeByte.


