PSIRT
Service and Support
Service and Support
Our Product Security Incident Response Team (PSIRT) which also called SIMCom's Security Team, manages the security vulnerability information related to our products and services.
We welcome responsible reports from security researchers, customers, partners, and other stakeholders. Every security report we receive is carefully reviewed and handled appropriately to help protect our products, customers, and users.
Reporting a Vulnerability
To report a potential security vulnerability in a SIMCom product, please contact: security@simcom.com
To help our security team investigate the issue efficiently, please include as much of the following information as possible:
• Affected product: Product model(s) and firmware version(s)
• Vulnerability details: Type of vulnerability and potential impact, such as remote code execution or unauthorized access
• Reproduction details: Steps to reproduce the vulnerability and, where available, a Proof of Concept (PoC)
• Contact information: Your preferred contact details if you would like to receive updates on the investigation or be credited for your report
PGP Encryption
To help protect the confidentiality of vulnerability reports, SIMCom supports PGP (Pretty Good Privacy) encryption.
You may encrypt your report using the SIMCom PSIRT public key before sending it to security@simcom.com. Encrypted reports can only be decrypted using the corresponding private key held by the SIMCom Security Team.
Key ID: 0x481DDA1131171D79 User-ID:SIMCom Security Team <security@simcom.com>
Security Advisories
SIMCom periodically publishes Product Security Advisories (PSAs) to customers regarding confirmed product vulnerabilities and available remediation measures.
Security advisories may include the name of the vulnerability reporter. If anonymity is requested, the reporter’s identity will not be publicly disclosed.
Online questions