GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Screenshot from: www.ea.com/security/hall-of-fame Shows the Hall of Fame page for responsible vulnerability disclosure to EA. Transcript of entries shown: + Ramin Tépfer Social links: https;//wwwlinkedin.com/in/ramintopfer/ Q1 (January - March) - JayeLTee Social links: https;/infosec.exchange/@JayeLTee + Preetham Kumar Social links: https;//wwwlinkedin.com/in/preetham--kumar/

Download link

https://media.infosec.exchange/infosec.exchange/media_attachments/files/114/837/200/252/253/897/original/93db56d29f4bce92.png

Notices where this attachment appears

  1. Embed this notice
    JayeLTee (jayeltee@infosec.exchange)'s status on Saturday, 12-Jul-2025 17:37:22 JST JayeLTee JayeLTee

    I received an email earlier this week from EA asking if I wanted to be added to a public acknowledgement page they were creating for individuals who responsibly disclosed vulnerabilities to them.

    For all the shit people give EA, of the 100+ companies I contacted in the last two years, they were the only company I would say had a decent incident response.

    They fixed the issue within 12 hours after validating it as critical, and proactively provided me multiple updates over time.

    When the IR was done on their side, they reached out again with some more information about the potential impact if the issue hadn't been solved quickly, and also offered me a reward.

    I did not have to keep chasing anyone for updates, I wasn't asked for non-disclosure, or offered money in exchange for it, and people replied instead of ignoring me.

    I wasn't blamed for their mistake, either, or reported to the authorities.

    Unfortunately, at least one or multiple of the things mentioned above are present in most of my other incidents reported; it's a real shit show out there.

    #cybersecurity #infosec #responsibledisclosure #vulnerability #ea #electronicarts

    In conversation about a year ago from infosec.exchange permalink
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.