Cyber Security

01

Product Security Incident Response Team (PSIRT)

Inter-M operates a dedicated Product Security Incident Response Team (PSIRT) responsible for the cyber security of its products.
The PSIRT continuously monitors and responds to cybersecurity issues affecting our network broadcasting and audio products.

02

Coordinated Vulnerability Reporting Channel

All users of Inter-M's products can report any suspected vulnerabilities or security concerns to our security team via the contact point below.

Inter-M's Cyber Security Reporting E-mail: psirt@inter-m.com


Vulnerability Submission Guidelines:

Target product model name and firmware/software version

Detailed technical description and reproduction steps (PoC / system logs)

Active Exploitation Status: Please indicate whether the vulnerability is known to be actively exploited or associated with a severe security incident. Such cases will be assessed and handled in accordance with applicable CRA Article 14 reporting requirements and the applicable statutory deadlines.

03

Response SLA & Vulnerability Handling Process

We acknowledge all incoming reports within 2 business days and provide an initial assessment and response plan within 10 business days. In accordance with Coordinated Vulnerability Disclosure (CVD) practices, remediations and security advisories will be published on this page within 90 calendar days or on a mutually agreed disclosure timeline.

EU CRA Article 14 Expedited Notification: In accordance with Regulation (EU) 2024/2847 (CRA) Article 14, if an actively exploited vulnerability or severe security incident is identified, Inter-M immediately initiates emergency notification to designated European CSIRTs/ENISA within statutory timelines (24h early warning / 72h notification) and provides corrective/mitigation measures to affected users without undue delay.

04

Cyber Security Support Period Policy

Inter-M guarantees cyber security support, including vulnerability patches and maintenance updates, throughout the defined official support period for each product, established in consideration of expected product lifecycles and operational requirements.

Vulnerability Reports

2026-09-21 Firmware Downloads IP-Speaker Firmware, v3.4.6.0-cv2 Download
2024-10-25 Vulnerability Reports Sample Document of vulnerability report Download