545
We are HackerOne and help hackers to hack products/services (inc. The Pentagon) and make the Internet safer (for fun and profit)! AUA!
Hello Reddit!
We are HackerOne and we’ve rewarded hackers over $9,000,000 for hacking our customers, including the Pentagon. We run the world’s most popular bug bounty platform. Companies, open source projects, even the Department of Defense use our platform to invite hackers to hack their products/services/projects. To say thank you, these companies reward hackers with a bounty. Top hackers on HackerOne are earning six figures with bug bounty programs.
Together we make the internet more secure. Ask as ANYTHING today. We stand for transparency and collaboration.
Here with us:
- martenmickos - Mårten Mickos (CEO)
- jobertabma - Jobert Abma (Co-Founder)
- zamboya - Michiel Prins (Co-Founder)
- allrice - Alex Rice (CTO, Co-Founder)
- tedkramer1 - Ted Kramer (Chief Of Staff)
- sushi_ninja - Adam Bacchus
- lkozz - Lauren Koszarek
- magoo_ - Ryan McGeehan (founding advisor)
- wanderlustmyx - Mary Xu
- reedloden
- jonobacon - Jono Bacon
Feel free to ask us about anything you like, not just about HackerOne, but hacking in general, security, Mr. Robot, how we protect ourselves online, Dutch wooden shoes or windmills, or anything else you like.
Our Proof: https://hackerone.com/blog/ama
Thanks everyone, for the awesome questions. We are calling it a wrap, but will be checking in throughout the day to answer everything we can. You all rock, and we hope to see you hacking on HackerOne. Let us know if you need anything!
jonobacon5 karma
Reed is more than Twitter. Here is more than the earth. He is everything.
jonobacon3 karma
Fair. This also means I am an authority on sandwiches, which is backed up by my Fitbit stats. ;-)
sportsDude3 karma
If I am interested in getting started in doing bug bounties, how would you recommend getting started? (Both in techniques and getting started in doing an actual bounty)
zamboya13 karma
Michiel here. For me personally it has been really helpful to know how to build software first. I learned quickly how easily humans make mistakes or underestimate things when building software. These mistakes have a high likelihood of becoming a vulnerability. Knowing how to write software combined with the curiosity that comes natural to most hackers, you will quickly start finding these mistakes and finding ways to turn these mistakes into an advantage.
To kickstart your bug bounty career, here are a few great resources to get started:
- The e-book Web Hacking 101 written by Pete Yaworski. The book is based on public disclosures of vulnerabilities. No better resource to learn than from real vulnerabilities that were fixed. You can grab a free copy here: https://hackerone.com/blog/Hack-Learn-Earn-with-a-Free-E-Book
- https://hackerone.com/hacktivity - a feed of real vulnerabilities that get publicly disclosed by many different hackers in the community. Learning how other hackers find bugs and how they report them is invaluable.
- The Web Application Hacker’s Handbook: https://www.amazon.com/Web-Application-Hackers-Handbook-Exploiting/dp/1118026470
- A blog on “how to become a successful bug hunter”: https://hackerone.com/blog/what-great-hackers-share
- The 5 things top bug bounty hunters do differently: https://hackerone.com/blog/5-things-top-bug-bounty-hunters-do-differently
- … and last: my favorite, a comic about bug bounties: https://hackerone.com/blog/how-a-bug-bounty-works-comic.
yaworsk7 karma
I can attest that Web Hacking 101 is a great book. Also check out https://hackerone.com/blog/how-to-hunt-for-injection-vulnerabilities, https://www.facebook.com/notes/phwd/facebook-bug-bounties/707217202701640 and for shameless self promotion https://www.torontowebsitedeveloper.com/hacking-resources
yaworsk3 karma
As co-founder of H1, does michiel (or has he ever) require new employees to call him the "modern Sherlock Holmes"?
jonobacon3 karma
I rather like it. Mind you, it kinda sucked when I was at primary school - everyone thought my last name was stupid. Then, the Internet adopted bacon as a mascot and victory has been mine ever since. :-)
entertainmeimbored34 karma
Who is 4chan?
View HistoryShare Link