At Aegrion Security, we believe in protecting our systems and helping the community stay secure. If you've discovered a vulnerability or security issue in our digital footprint or products, we want to hear about it. Thank you for helping us keep our infrastructure secure!
What to Report
We are interested in hearing about any security issues that pose a real risk to Aegrion Security or our users. This includes:
- Cross-Site Scripting (XSS)
- SQL Injection / NoSQL Injection
- Remote Code Execution (RCE)
- Broken Authentication or Session Management
- Data Exposure or Privilege Escalation
- Misconfigured Cloud Infrastructure exposing data
How to Report
Please send all reports directly to our security inbox. To help us triage your report quickly, please include:
- A detailed description of the vulnerability.
- Clear, step-by-step reproduction instructions or a Proof of Concept (PoC) script/video.
- The potential impact of the issue if exploited.
Send your report via email to: aegrioncsoffical@gmail.com
Bounty & Credits
We are currently in a pre-revenue, early startup phase, so we do not operate a formal, paid bug bounty program at this time. However, we deeply appreciate the security research community's efforts. For valid, responsibly-disclosed vulnerabilities, we will:
- Acknowledge and credit your name/handle in our future security updates.
- Provide a formal letter of appreciation/credit acknowledging your contribution.
Responsible Disclosure Guidelines
To protect our systems and our users, we ask that you follow these guidelines when researching and reporting:
- Give us a reasonable amount of time to review and patch the issue before making it public.
- Do not access, modify, or download data belonging to other users or companies. Only interact with test accounts under your control.
- No Automated Scanning: Avoid using high-volume automated scanners that disrupt services or trigger alerts.
- No Social Engineering: Do not engage in phishing, vishing, or other social engineering attacks against our founder, partners, or users.
- Do not perform Denial of Service (DoS) or Distributed Denial of Service (DDoS) testing.
Contact Info
For official security-related inquiries, please reach out to us at:
- Email: aegrioncsoffical@gmail.com
- Phone: +91 93630 80588
- Address: Madurai, Tamil Nadu, India