24

Bitwarden second security audit report

 3 years ago
source link: https://bitwarden.com/blog/post/bitwarden-network-security-assessment-2020/
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.
network-security-assessment-2020.png

We take the security of Bitwarden seriously. In addition to our open source codebase and public bug bounty program , we also understand the need for official security assessments and penetration testing from reputable third parties. In November, 2018, Bitwarden successfully completed a source code audit and cryptographic analysis by security firm Cure53 .

In our commitment to a regular cadence of security audits on various aspects of the Bitwarden platform, we are pleased to announce that Bitwarden has completed a thorough security assessment and penetration test by auditing firm Insight Risk Consulting .

In the interest of providing full disclosure, below you will find the executive summary that was compiled from the team at Insight Risk Consulting along with an internal report containing a summary of each issue, impact analysis, and the actions taken/planned by Bitwarden regarding the identified issues. We are happy to report that no major issues were identified during this audit. One moderate issue has been patched in the latest Bitwarden server update.

We hope that this assessment reiterates our commitment to the security and integrity of the entire Bitwarden platform and helps further strengthen the trust that our users place in Bitwarden every day.

  • Bitwarden Network Security Assessment Report - 2020  —  Download PDF

If you have any questions regarding this security audit feel free tocontact us.


很遗憾的说,推酷将在这个月底关闭。人生海海,几度秋凉,感谢那些有你的时光。


About Joyk


Aggregate valuable and interesting links.
Joyk means Joy of geeK