Bigfoot Biomedical · Vulnerability Disclosure

Bigfoot Biomedical Vulnerability Disclosure

Vulnerability disclosure

Bigfoot Biomedical publishes a vulnerability disclosure policy for reporting security issues. A dedicated security contact is published.

CompanyHealthDigital HealthMedical DevicesDiabetesInsulin ManagementContinuous Glucose MonitoringConnected DevicesAcquired
Program:

Disclosure Policy

Policy
Policy

Security Contact

Contact
https://www.bigfootbiomedical.com/contact.html
Contact
mailto:Support@BigfootBiomedical.com

Source

Vulnerability Disclosure

bigfoot-biomedical-vulnerability-disclosure.yml Raw ↑
generated: '2026-08-07'
method: searched
probe: true
source: https://www.bigfootbiomedical.com/security.html
summary: >-
  Bigfoot Biomedical publishes a Security and Privacy page and a Cybersecurity Whitepaper
  that together describe a coordinated vulnerability disclosure posture, invite the security
  research community to report suspected vulnerabilities, and carry a dated security
  bulletin for the Apache log4j CVEs. The page links to a "Coordinated Vulnerability
  Disclosure Policy" — but that link is DEAD (404): it still points at the pre-Abbott
  HubSpot URL /coordinated-vulnerability-disclosure, which the current Abbott-hosted AEM
  site does not serve. There is no security.txt, no bug-bounty program, and no dedicated
  security@ address; reporting routes through the general contact form and the customer
  support mailbox.
policy:
- https://www.bigfootbiomedical.com/security.html
- https://www.bigfootbiomedical.com/help/security_whitepaper.html
contact:
- https://www.bigfootbiomedical.com/contact.html
- mailto:Support@BigfootBiomedical.com
bug_bounty: null
security_txt: null
broken_links:
- url: https://www.bigfootbiomedical.com/coordinated-vulnerability-disclosure
  label: Coordinated Vulnerability Disclosure Policy
  status: 404
  note: >-
    Linked from /security.html as the canonical CVD policy. Returns the AEM 404 page. Also
    404 at /coordinated-vulnerability-disclosure.html, /help/…, /security/… variants. The
    disclosure policy this provider points researchers at is no longer published anywhere.
advisories:
- subject: Apache log4j remote code execution
  published: '2021-12-10'
  cves:
  - CVE-2021-44228
  - CVE-2021-45046
  - CVE-2021-4104
  - CVE-2021-45105
  - CVE-2021-44832
  statement: >-
    "Bigfoot Biomedical has responded to the remote code execution vulnerability associated
    with Apache log4j software in accordance with our documented plans and processes. No
    exploits to our customers' privacy or security have been detected."
evidence:
- source: https://www.bigfootbiomedical.com/security.html
  http_status: 200
  kind: security-policy-page
  keywords:
  - report a suspected vulnerability
  - Coordinated Vulnerability Disclosure Policy
  - security community
  - vulnerability assessments
- source: https://www.bigfootbiomedical.com/help/security_whitepaper.html
  http_status: 200
  kind: security-whitepaper
  keywords:
  - penetration testing by outside organizations
  - threat and risk monitoring
  - cybersecurity-embedded design
- source: https://www.bigfootbiomedical.com/coordinated-vulnerability-disclosure
  http_status: 404
  kind: dead-policy-link
- source: https://www.bigfootbiomedical.com/.well-known/security.txt
  http_status: 403
  kind: security-txt-absent
x-evidence:
  fetched: '2026-08-07'