Vulnerability Disclosure

At g2x.cz, we take the security of our high-performance web hosting and backup systems seriously. We welcome security researchers to disclose vulnerabilities responsibly.

📢 Report a Vulnerability

If you have identified a vulnerability on our servers or within our codebase, please report it immediately. For general customer support, please contact the admin team directly.

📧

Secure Contact

Email Address:
admin@g2x.cz

🔐

PGP Encrypted

PGP Public Key:
Download Key File
FP: 1234 5678 90AB CDEF 1234 5678 90AB CDEF 1234 5678

📝

Web Submission

📋 Disclosure Policy

Target Scope

  • Remote Code Execution (RCE)
  • SQL Injections & Database Flaws
  • Cross-Site Scripting (XSS)
  • Broken Access Control / Privilege Escalation
  • Sensitive Database Data Exposure

Out of Scope

  • Denial of Service (DoS/DDoS)
  • Social Engineering or Phishing
  • Brute force or rate limiting metrics
  • Missing security headers (without POC)
  • Vulnerabilities on third-party integrations

Rules of Engagement

  • Use test accounts under your control.
  • Stop testing if you encounter user directories.
  • Give us reasonable time to fix prior to disclosure.
  • Do not execute active payload scripts on other users.

Timeline

Triage: Reports acknowledged within 24-48 hours.
Resolution: Validated bugs patched within 14 days.
Disclosure: Public release allowed 30 days after patches are live.

🏆 Hall of Fame

2026 Q1

  • @security_researcher1 - Critical RCE
  • @hackerman2 - SQL Injection
  • @bug_hunter3 - CSRF

2025 Q3

  • @ethical_hack - Critical IDOR
  • @vuln_scanner - Server Side Injection
  • @pentest_guru - Remote Scripting

🙏 Special Acknowledgements

Lifetime Contributors

Dr. Jane Smith - For discovering 50+ vulnerabilities and helping secure core systems.

John Doe - For critical infrastructure design reviews.

Community Contributors

  • Alex Chen - API schema reviews
  • Maria Garcia - Automated checking tools
  • Raj Patel - Server security checklists

Academic Partners

  • Stanford Security Lab
  • MIT Cybersecurity Club
  • Cambridge Security Group