果冻传媒

Skip to main content Skip to navigation

Vulnerability Notifications

Stay informed about significant security vulnerabilities affecting technologies used across the University.

Why

Cyber attacks often take advantage of known software vulnerabilities before organisations have had the opportunity to apply updates or mitigations.

The Vulnerability Notification Service helps protect the University by ensuring that information about significant security vulnerabilities is identified, assessed and shared with the people responsible for managing systems and services. By providing timely notifications, the service supports system owners and technical teams in reducing cyber risk, protecting University data, and maintaining the security and availability of University services.

How

The University's security service continuously monitors a range of trusted threat intelligence and vulnerability information sources. When a significant vulnerability is identified that may affect systems used by the University:

  • The vulnerability is reviewed and validated by the security team.
  • The potential impact to University services is assessed.
  • Relevant vulnerability information, including severity, affected products and recommended actions, is communicated to the appropriate stakeholders.
  • Notifications are tracked to support remediation and risk management activities.
This ensures that those responsible for systems have the information they need to make informed decisions and take appropriate action.

What

The Vulnerability Notification Service provides:

  • Alerts on significant security vulnerabilities that may affect University technologies.
  • Information on affected products and versions.
  • Details of vulnerability severity and risk.
  • Links to vendor advisories and technical guidance.
  • Recommended remediation or mitigation actions where available.
Notifications are published through the University's Vulnerability Notification Teams site.
Access the Vulnerability Notification Teams Site:

Who should use this service?

This service is primarily intended for:

  • System Owners

  • Technical Leads

  • IT Support Teams

  • Service Managers

  • Third-party service owners responsible for University systems

Any member of staff with responsibility for managing technology services may find the information helpful.


Important Note

A vulnerability notification does not necessarily mean that the University is affected by a vulnerability. Notifications are provided to raise awareness and support risk assessment and remediation activities where relevant.

Let us know you agree to cookies