Report Potential Security Vulnerabilities
To report a potential security vulnerability in a TURCK product, please send us an email to the TURCK Product Security Incident Response Team (PSIRT) at psirt@turck.com
Reports can be submitted in German or English.
Information on encrypted communication:
- PGP Public Key: Download here
- Fingerprint: FC172F921F440FF1027C2564B3A9AC53F92C2EEC
- When contacting us for the first time, please include your public key so that we can communicate using end-to-end encryption.
Please provide us with the following information:
In addition to the device type, any other details—if available—will help us classify your report quickly and accurately: The more complete the information, the faster we can assess the vulnerability and develop an appropriate countermeasure—and the sooner you’ll benefit from a solution that ensures the secure operation of your system.
- Affected Devices (Model + Part Number)
- Serial number or unique ID
- Firmware/Software Version
- Type of security vulnerability (e.g., “denial-of-service”)
- Information on how the vulnerability can be exploited
- Known Effects of the Security Vulnerability
- Information on the public awareness of the security vulnerability (e.g., whether it has already been made public, or whether disclosure is planned or a timeline has been established)
- Optional: Name, organization, and contact information
Please coordinate the disclosure of information about the security vulnerability with us so that we can provide operators of the affected products with mitigating or corrective measures (e.g., an update) in a timely manner.
If you have any questions about resolved or existing security vulnerabilities, please feel free to contact the PSIRT at psirt@turck.com.