Report a Security Vulnerability

Use this service to report a security vulnerability, misconfiguration, or potential weakness you have discovered in a Dartmouth-owned or Dartmouth-operated system, application, website, or network.

The Dartmouth Office of Information Security welcomes reports from students, faculty, staff, and external security researchers. Your report helps us identify and fix issues before they can be exploited.

When you submit, please describe what you found and how you found it, and include any supporting evidence that helps us understand and reproduce the issue. The more detail you can provide, the faster we can validate and remediate.

We ask that you report in good faith: access only the minimum necessary to identify the issue, avoid intentionally disrupting or damaging any system, and do not access, modify, or download data that is not yours. Reports submitted in good faith are handled confidentially, and you may request updates or choose to remain anonymous.

If you believe you have discovered an active compromise or an incident already in progress (rather than a vulnerability), please contact the Office of Information Security directly rather than using this form at information.security@dartmouth.edu