Vulnerability disclosure

How to reach out

Should you find a security issue with a Rhino device, please reach out to security@rhinomobility.com for a prompt reply. The Rhino team appreciates and encourages responsible disclosure, and associated fixes released in updates will be credited accordingly.

What to submit

When reaching out, please provide:

  • Name and (optionally) organisation
  • Rhino model
  • Android version & Software build number
  • A detailed description
  • A demonstrable proof of concept, if available
  • Any additional feedback, as desired

Should the issue fall to a partner component, such as printer, scanner, or other integrated component, we welcome your report all the same.

Should you wish to provide videos, images, files, or other useful collateral, it is preferred to share these securely to avoid attachments being stripped in transit or intercepted. Please zip, encrypt, and password protect the contents you wish to share. We will at your request provide a OneDrive drop folder link to securely transfer data, or optionally you may use a preferred service for us to download from, securely.

CVE naming

The Rhino team are not yet registered as a CNA. This is currently in progress.

Download as PDF Report Content Print