From fe76300a5fb1151535804af4d7a9070925c1f59a Mon Sep 17 00:00:00 2001 From: Travis Plunk Date: Wed, 9 Nov 2022 14:27:13 -0800 Subject: [PATCH] Update security reporting policy to recommend security portal for more streamlined reporting (#18437) --- .github/SECURITY.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/SECURITY.md b/.github/SECURITY.md index 10633f0d6d..6241b2c57b 100644 --- a/.github/SECURITY.md +++ b/.github/SECURITY.md @@ -8,5 +8,5 @@ change, but PowerShell must be secure by default. ## Reporting a security vulnerability If you believe that there is a security vulnerability in PowerShell, -it **must** be reported to [secure@microsoft.com](https://technet.microsoft.com/security/ff852094.aspx) to allow for [Coordinated Vulnerability Disclosure](https://technet.microsoft.com/security/dn467923). -**Only** file an issue, if [secure@microsoft.com](https://www.microsoft.com/en-us/msrc/faqs-report-an-issue?rtc=1) has confirmed filing an issue is appropriate. +it **must** be reported using [https://aka.ms/secure-at](https://aka.ms/secure-at) to allow for [Coordinated Vulnerability Disclosure](https://technet.microsoft.com/security/dn467923). +**Only** file an issue, if [MSRC](https://www.microsoft.com/en-us/msrc/faqs-report-an-issue?rtc=1) has confirmed filing an issue is appropriate.