Thursday, January 23, 2025

Hello World!

Khash Sajadi
Hello World!

Today we let Fortworx out in the world and I am very excited about that!

What is Fortworx?

Fortworx is Vulnerability Disclosure Program as a Service. A mouthful, right? VDPaaS is not much better either. So let me explain what it is and how it is going to benefit you.

If you run any service only, be it ecommerce or other types of SaaS, you have security vulnerabilities. This is just part of the game. Would you rather know about these vulnerabilities or not?

That was a rhetorical question, of course you do! Fortworx let's anyone who finds a vulnerability on your site to report it to you. We call this Vulnerability Disclosure Program as a Service.

Why do I need Fortworx?

Many SaaS businesses run some sort of Vulnerability Disclosure Program (VDP). Most of the time it an email like `security@example.com` or perhaps a web form on their website.

These email boxes or web forms lets Security Researchers (mostly known as Independent Security Researchers or ISRs or white hat hackers), report their findings to you in a safe and resposible way.

Fortworx helps improve this process in several important ways:

Automatic Processing of Reports with AI

Using AI to analyze, categorize, prioritize and triage security reports. This is even more important when it comes to emailed reports. Using Fortworx AI, unstructured walls of text, turn into structured reports you can assign to your team, categorize and generate reports on.

Incentive Reporting

Incentivize reporting. By making it easier to report a vulnerability via a simple email, you are more likely to get reports about potential issues. The use of AI protects you about the downside of flood of irrelevant reports.

Enforce Policies and Remain Compliant

Enforce VDP policies. Many cyber security standards and even some cyber insurance policies require you to have a documented and verifiable process in place for inbound vulnerability reports. Fortworx helps you remain compliant with these requirements by adding traceability and auditability.

How does it work?

Setting up Fortworx for your site is super easy: Signup and forward your security vulnerability disclosure email address to it. That's it!

Where can I signup?

Great question! Head to fortworx.com and join our waiting list. We are adding new users to the system every day.

We started Fortworx as a solution to use ourselves at our previous companies and today we are sharing this with everyone else. Our mission is to make internet more secure.

I can't wait to see you try the service and would love to hear your thoughts and feedback.

To a more secure internet,

Khash