Skip to content
News

Duke recognizes responsible disclosure

Researchers sometimes discover security vulnerabilities with university systems and networks, and Duke recognizes the value of identifying and remediating these issues, in accordance with the university’s responsible disclosure policy found here: Responsible Disclosure Policy and Guidance.

We'd like to recognize Huy Kha for their efforts in uncovering Cross-Site Scripting (XSS) vulnerabilities within four Duke University websites, alerting the IT Security Office of the issue and working with Duke IT security staff to remediate it. Efforts such as these ensure a more secure environment for all our users.

Huy Kha is a student and security researcher who can be contacted here:

Email:  huykha10@gmail.com twitter: @huykha10

To report a security issue, please contact the us at security@duke.edu.