HackerOne logo

HackerOne

World's largest ethical hacker platform with over one million researchers, offering bug bounties and structured penetration testing to the US DoD and Fortune 500.

Founded
2012
Team Size
201-500
Geography
Global
Last verified: Feb 2026

About

HackerOne is the world's largest ethical hacker-powered security platform, headquartered in San Francisco, California, providing bug bounty, vulnerability disclosure, and penetration testing services to organizations worldwide. Founded in 2012 by security leaders including Merijn Terheggen and former hackers, HackerOne has built a community of over one million registered security researchers and has facilitated the discovery of over 300,000 valid vulnerabilities. Their platform has paid out over $300 million in bounties, making it the most financially impactful crowdsourced security initiative in history.

Beyond traditional bug bounties, HackerOne offers HackerOne Pentest, which pairs curated teams of vetted security professionals with organizations for structured penetration testing engagements delivered through their platform. HackerOne serves an impressive roster of clients including the US Department of Defense, General Motors, Goldman Sachs, Microsoft, and many other Fortune 500 companies and government agencies. Their Hack the Pentagon program, launched in 2016, was the first bug bounty program run by the US federal government.

The company provides real-time dashboards, integration with development tools, and analytics that help organizations track their vulnerability management posture over time.

Methodologies

OWASPPTES

Team Activity

CNBC Disruptor 50
Forbes Cloud 100
Fast Company Most Innovative Companies
Speaker: Black Hat
Speaker: DEF CON
Speaker: RSA Conference

Compare With

Reviews

Be the first to share your experience with HackerOne.

Be the first to review HackerOne
Is this your company? Claim this profile

Related Providers

Rapid7 logo

Rapid7

Creators of Metasploit offering enterprise penetration testing integrated with their comprehensive vulnerability management and security operations platform.

Boston, Massachusetts, United StatesContact for pricing
Web ApplicationNetworkMobile AppCloud+6
SOC 2ISO 27001
Verified Feb 2026
Coalfire logo

Coalfire

Compliance-focused cybersecurity advisory firm and FedRAMP 3PAO specializing in penetration testing that meets stringent regulatory requirements.

Westminster, Colorado, United StatesContact for pricing
Web ApplicationNetworkCloudAPI+4
SOC 2FedRAMP 3PAOPCI QSAISO 27001
Verified Feb 2026
Trustwave logo

Trustwave

Global managed security provider with the elite SpiderLabs penetration testing team and deep PCI DSS compliance expertise.

Chicago, Illinois, United StatesContact for pricing
Web ApplicationNetworkMobile AppCloud+6
PCI QSAISO 27001SOC 2CREST
Verified Feb 2026
Best UK ProviderBest for EnterpriseResearch Leaders
NCC Group logo

NCC Group

Global cybersecurity consultancy with CREST, CHECK, and CBEST accreditation, renowned for deep technical research and comprehensive penetration testing services.

Manchester, United KingdomContact for pricing
Web ApplicationNetworkMobile AppIoT+12
CRESTCHECKCBESTISO 27001+5
Verified Feb 2026