
Jonathan Brossard revived Bugtraq at DEF CON 34. The 1993 mailing list, a primary reference for a third of catalogued vulnerabilities, is live again on SecurityFocus.com with no paywall.
Alpha Score of 60 reflects moderate overall profile with strong momentum, weak value, weak quality, moderate sentiment.
LAS VEGAS – Security researcher Jonathan Brossard, known in the community as endrazine, announced the revival of Bugtraq, the original full-disclosure mailing list, at DEF CON 34 on Thursday. The list is now active at SecurityFocus.com, a site that has served as a primary technical reference for roughly a third of all catalogued vulnerabilities in the NVD/CVE database.
Bugtraq was founded in 1993 and for decades was the main channel for vulnerability disclosure, security advisories, and original research. The list went dark for a period. Brossard said he and a team of volunteers restored the platform, which operates without a paywall, gated access, or commercial agenda.
“At the end of the day, Bugtraq is what its users make of it,” Brossard said. “We are providing the platform. The community decides what it becomes.”
The revival addresses a growing frustration among security researchers: ephemeral social media posts, paywalls, and dead links that make reliable vulnerability information hard to find. Bugtraq’s archives were preserved by Solar Designer, a well-known figure in the security community. Brossard thanked past moderators, “legendary and anonymous alike,” for their daily work running the list over the years.
The list is moderated and open to all security researchers. Organizers are seeking volunteers with experience moderating full-disclosure mailing lists to help steer the community.
Drafted by a large language model from the source reporting linked above, then screened by automated publishing checks. It is not read by a journalist before publication. Some articles cite our Alpha Score. Verify prices and figures against the original source. Educational coverage, not personalized advice.