Security Bulletin
Access Kinco Security Bulletin for automation and robotics products. Find the tools, resources and guidance you need to move projects forward.
No security bulletin available at this time.
Vulnerability Reporting Requirements
To facilitate rapid triage and remediation, reporters are requested to provide the following information via email:
- Email subject: Product Name - Version - Vulnerability Type
- Email body: PoC, traffic captures, exploit code, or detailed reproduction steps
- Contact information for real-time communication during the verification process
- Vulnerability information is sensitive — encryption with PGP is recommended. Download Public Key
Contact
- Email: security@kinco.cn
- Phone: 400 700 5281
- PGP Fingerprint:
B068EFB9661FF1994A1C7B064AF830B11D0F55F1 - Response: Monday – Friday, 09:00 – 18:00 Beijing Time (UTC+8)
- CVD Policy: Preview CVD Policy
Vulnerability Handling Process
Kinco PSIRT receives vulnerability reports and organizes technical personnel to respond swiftly and effectively. The process is as follows:
Receive & Verify
Upon discovering or receiving a vulnerability report, PSIRT immediately takes action and organizes verification of the vulnerability.
Remediate & Release
After confirming the vulnerability, PSIRT promptly issues temporary mitigations or upgrade patches and version updates, along with necessary technical support.
Disclose
After the vulnerability is confirmed, PSIRT publicly discloses the vulnerability information through appropriate channels.