eupolicy.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
This Mastodon server is a friendly and respectful discussion space for people working in areas related to EU policy. When you request to create an account, please tell us something about you.

Server stats:

217
active users

#gcve

1 post1 participant0 posts today
Alexandre Dulaunoy<p>The hackathon FIRSTCON25 takes place physically at 37th ANNUAL FIRST CONFERENCE on Sunday 22nd June in Copenhagen.</p><p>GCVE.eu topic has been added to the hackathon.</p><p>🔗 About the hackathon <a href="https://discourse.ossbase.org/c/hackathon-firstcon25/12" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">discourse.ossbase.org/c/hackat</span><span class="invisible">hon-firstcon25/12</span></a><br>🔗 GCVE.eu topic <a href="https://discourse.ossbase.org/t/gcve-eu-processes-standards-bcp-and-tooling/95" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">discourse.ossbase.org/t/gcve-e</span><span class="invisible">u-processes-standards-bcp-and-tooling/95</span></a><br>🔗 Registration <a href="https://pretix.eu/circl/hackathonfirst25/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">pretix.eu/circl/hackathonfirst</span><span class="invisible">25/</span></a></p><p><span class="h-card" translate="no"><a href="https://infosec.exchange/@firstdotorg" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>firstdotorg</span></a></span> <span class="h-card" translate="no"><a href="https://social.circl.lu/@gcve" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>gcve</span></a></span> <span class="h-card" translate="no"><a href="https://infosec.exchange/@ddu" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>ddu</span></a></span> <span class="h-card" translate="no"><a href="https://infosec.exchange/@jtk" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>jtk</span></a></span> <span class="h-card" translate="no"><a href="https://infosec.exchange/@gallypette" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>gallypette</span></a></span> </p><p><a href="https://infosec.exchange/tags/gcve" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>gcve</span></a> <a href="https://infosec.exchange/tags/vulnerability" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>vulnerability</span></a> <a href="https://infosec.exchange/tags/opensource" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>opensource</span></a> <a href="https://infosec.exchange/tags/hackathon" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>hackathon</span></a> <a href="https://infosec.exchange/tags/cve" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cve</span></a> <a href="https://infosec.exchange/tags/firstcon25" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>firstcon25</span></a></p>
gcve.eu<p>Significant progress has been made on the BCP-3 document, as well as on the implementation to enable synchronization and distributed publication of vulnerabilities.</p><p>The 2.10.0 release of vulnerability-lookup.org already includes the GCVE directory, and the next version will support BCP-3 as the reference implementation.</p><p>Thanks to <span class="h-card" translate="no"><a href="https://social.circl.lu/@circl" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>circl</span></a></span> <span class="h-card" translate="no"><a href="https://fosstodon.org/@cedric" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>cedric</span></a></span> <span class="h-card" translate="no"><a href="https://infosec.exchange/@adulau" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>adulau</span></a></span> <span class="h-card" translate="no"><a href="https://misp-community.org/@misp" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>misp</span></a></span> <span class="h-card" translate="no"><a href="https://infosec.exchange/@iglocska" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>iglocska</span></a></span> and many GNA for the contributions and constructive feedback.</p><p><a href="https://social.circl.lu/tags/gcve" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>gcve</span></a> <a href="https://social.circl.lu/tags/vulnerabilitymanagement" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>vulnerabilitymanagement</span></a> <a href="https://social.circl.lu/tags/cve" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cve</span></a> <a href="https://social.circl.lu/tags/gna" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>gna</span></a> <a href="https://social.circl.lu/tags/cna" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cna</span></a></p>
gcve.eu<p><span class="h-card" translate="no"><a href="https://social.circl.lu/@cedric" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>cedric</span></a></span> Thanks for the continuous work on the Python GCVE client for the registry. </p><p>The client is available at the following location: </p><p>🐍 <a href="https://github.com/gcve-eu/gcve" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">github.com/gcve-eu/gcve</span><span class="invisible"></span></a></p><p><a href="https://social.circl.lu/tags/cve" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cve</span></a> <a href="https://social.circl.lu/tags/opensource" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>opensource</span></a> <a href="https://social.circl.lu/tags/gcve" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>gcve</span></a> <a href="https://social.circl.lu/tags/vulnerabilitymanagement" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>vulnerabilitymanagement</span></a> <a href="https://social.circl.lu/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a></p>
gcve.eu<p>GCVE-BCP-02 - Practical Guide to Vulnerability Handling and Disclosure has been published.</p><p>This is a draft open for review.</p><p>🔗 <a href="https://gcve.eu/bcp/gcve-bcp-02/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">gcve.eu/bcp/gcve-bcp-02/</span><span class="invisible"></span></a></p><p><a href="https://social.circl.lu/tags/vulnerabilitymanagement" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>vulnerabilitymanagement</span></a> <a href="https://social.circl.lu/tags/gcve" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>gcve</span></a> <a href="https://social.circl.lu/tags/vulnerabilityhandling" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>vulnerabilityhandling</span></a> <a href="https://social.circl.lu/tags/vulnerability" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>vulnerability</span></a></p>
Cedric<p>The Global CVE (GCVE) allocation system is decentralized approach to vulnerability identification and numbering. The GCVE registry is a key component.</p><p>For this reason the registry is digitally signed using an RSA public key with SHA-512.</p><p>Thanks to the GCVE Python client, updating your local copy of the registry and verifying its integrity is just one command away:</p><p> $ gcve registry --pull</p><p>Learn more: <a href="https://gcve.eu" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">gcve.eu</span><span class="invisible"></span></a></p><p><a href="https://social.circl.lu/tags/Vulnerability" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Vulnerability</span></a> <a href="https://social.circl.lu/tags/CVD" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CVD</span></a> <a href="https://social.circl.lu/tags/CVE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CVE</span></a> <a href="https://social.circl.lu/tags/GCVE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>GCVE</span></a> <a href="https://social.circl.lu/tags/OpenSource" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpenSource</span></a> <a href="https://social.circl.lu/tags/VulnerabilityLookup" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>VulnerabilityLookup</span></a></p>
gcve.eu<p>Vulnerability-lookup already includes the mapping between GCVE and CVE in the software and the online service.</p><p>🔗 <a href="https://vulnerability.circl.lu/vuln/gcve-0-2025-4272" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">vulnerability.circl.lu/vuln/gc</span><span class="invisible">ve-0-2025-4272</span></a></p><p><a href="https://social.circl.lu/tags/cve" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cve</span></a> <a href="https://social.circl.lu/tags/gcve" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>gcve</span></a> <a href="https://social.circl.lu/tags/vulnerabilitymanagement" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>vulnerabilitymanagement</span></a></p>
gcve.eu<p>Seven new GNAs have been registered on GCVE.EU !</p><p>We're glad to see the community grow and are open to new GNA applications </p><p>🔗 JSON <a href="https://gcve.eu/dist/gcve.json" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">gcve.eu/dist/gcve.json</span><span class="invisible"></span></a><br>🔗 Why and How to become a GNA <a href="https://gcve.eu/about/#eligibility-and-process-to-obtain-a-gna-id" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">gcve.eu/about/#eligibility-and</span><span class="invisible">-process-to-obtain-a-gna-id</span></a></p><p><a href="https://social.circl.lu/tags/cve" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cve</span></a> <a href="https://social.circl.lu/tags/gcve" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>gcve</span></a> <a href="https://social.circl.lu/tags/vulnerabilities" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>vulnerabilities</span></a> <a href="https://social.circl.lu/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a></p>
gcve.eu<p>A Python client for the Global CVE Allocation System has been released.</p><p>by <span class="h-card" translate="no"><a href="https://fosstodon.org/@cedric" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>cedric</span></a></span> </p><p><a href="https://social.circl.lu/tags/cve" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cve</span></a> <a href="https://social.circl.lu/tags/gcve" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>gcve</span></a> <a href="https://social.circl.lu/tags/vulnerabilities" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>vulnerabilities</span></a> <a href="https://social.circl.lu/tags/vulnerability" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>vulnerability</span></a> </p><p>🔗 <a href="https://github.com/gcve-eu/gcve" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">github.com/gcve-eu/gcve</span><span class="invisible"></span></a></p>
gcve.eu<p>The first publication of the GCVE-BCP-01 - Signature Verification of the Directory File</p><p>🔗 More information about BCP <a href="https://gcve.eu/bcp/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">gcve.eu/bcp/</span><span class="invisible"></span></a><br>🔗 GCVE-BCP-01 <a href="https://gcve.eu/bcp/gcve-bcp-01/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">gcve.eu/bcp/gcve-bcp-01/</span><span class="invisible"></span></a></p><p><a href="https://social.circl.lu/tags/cve" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cve</span></a> <a href="https://social.circl.lu/tags/vulnerabilities" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>vulnerabilities</span></a> <a href="https://social.circl.lu/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a> <a href="https://social.circl.lu/tags/vulnerability" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>vulnerability</span></a> <a href="https://social.circl.lu/tags/gcve" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>gcve</span></a></p>
gcve.eu<p>The digital signature of the directory file was added in response to requests from various open-source developers and GNAs.</p><p><a href="https://social.circl.lu/tags/cve" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cve</span></a> <a href="https://social.circl.lu/tags/gcve" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>gcve</span></a> <a href="https://social.circl.lu/tags/vulnerabilities" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>vulnerabilities</span></a> <a href="https://social.circl.lu/tags/opensource" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>opensource</span></a> </p><p>🔗 FAQ <a href="https://gcve.eu/faq/#q13-is-the-json-file-distributed-by-gcve-signed-and-how-can-the-signature-be-verified" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">gcve.eu/faq/#q13-is-the-json-f</span><span class="invisible">ile-distributed-by-gcve-signed-and-how-can-the-signature-be-verified</span></a><br>🔗 Directory file <a href="https://gcve.eu/dist/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">gcve.eu/dist/</span><span class="invisible"></span></a></p>
gcve.eu<p>Five GNA register to Global CVE (GCVE) allocation system vuldb.com, Ericsson PSIRT, EACG, SCHUTZWERK and DFN-CERT. </p><p>If you want to join and get a unique identifier <br><a href="https://gcve.eu/about/#eligibility-and-process-to-obtain-a-gna-id" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">gcve.eu/about/#eligibility-and</span><span class="invisible">-process-to-obtain-a-gna-id</span></a></p><p><a href="https://social.circl.lu/tags/cve" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cve</span></a> <a href="https://social.circl.lu/tags/gcve" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>gcve</span></a> <a href="https://social.circl.lu/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a> <a href="https://social.circl.lu/tags/vulnerability" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>vulnerability</span></a></p>
Msd<p><span class="h-card" translate="no"><a href="https://infosec.exchange/@isotopp" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>isotopp</span></a></span> <span class="h-card" translate="no"><a href="https://hachyderm.io/@joschi" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>joschi</span></a></span> </p><p><a href="https://social.tchncs.de/tags/GCVE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>GCVE</span></a> läuft wenigstens - im Gegensatz zu <a href="https://social.tchncs.de/tags/EUVD" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>EUVD</span></a></p><p>siehe <span class="h-card" translate="no"><a href="https://eupolicy.social/@fukami" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>fukami</span></a></span> :-)</p>