HackerOne

The world's largest ethical hacker community turned enterprise security platform, now setting the standard for AI red teaming at scale.

Private AI Red Teaming & Security Testing 📍 San Francisco, CA Est. 2012 👥 400+
www.hackerone.com ↗

HackerOne was founded in 2012 by Dutch security researchers Michiel Prins and Jobert Abma alongside Alex Rice and Merijn Terheggen, after Prins and Abma famously found vulnerabilities in 100 top tech companies — including Google, Facebook, and Apple — in a single research project. The company pioneered the bug bounty and coordinated vulnerability disclosure market, connecting enterprises with a global community of vetted security researchers to surface real-world vulnerabilities before attackers do. Today HackerOne operates the world's largest ethical hacker community and positions itself as a global leader in Continuous Threat Exposure Management (CTEM), serving clients including Goldman Sachs, General Motors, Coinbase, Anthropic, and the U.S. Department of Defense.

HackerOne has raised $161 million in total funding across five rounds, achieving a $841 million Series E valuation in January 2022. The company launched its AI co-pilot Hai in February 2024 — a GenAI assistant embedded in the platform to accelerate vulnerability triage and program management — which saw 500% adoption growth by December 2024. In January 2026, HackerOne introduced Agentic PTaaS (Penetration Testing as a Service), combining autonomous AI agents with human-validated testing to deliver continuous expert-verified pentesting at enterprise scale. The company also established the Good Faith AI Research Safe Harbor framework in January 2026 to provide legal protections for researchers testing AI systems.

HackerOne's core technical differentiation lies in combining a vetted researcher community — over 1 million registered hackers — with AI-powered automation in a single platform. Its AI red teaming service deploys both human researchers (750+ AI-focused specialists) and adversarial AI agents to test prompts, retrieval pipelines, and agentic workflows against threats like jailbreaks, prompt injection, and cross-tenant data leakage. The platform has tested over 1,700 AI assets and validated findings through its Hai co-pilot, which classifies and prioritizes vulnerabilities in real time. HackerOne paid $81 million in researcher rewards in fiscal year 2025 — a record — and total all-time bounties paid have surpassed $300 million.

Why This Company Matters

HackerOne sits at the intersection of two accelerating trends: the professionalization of bug bounties and the explosive demand for AI security testing. Its hacker-powered model gives it an asset no automated tool can replicate — a constantly evolving pool of adversarial human creativity. As AI systems proliferate across enterprise stacks, HackerOne's early move into AI red teaming (with clients like Anthropic, Adobe, and Snap) positions it to own the emerging category of AI vulnerability research. The 540% year-over-year surge in validated prompt injection reports on its platform through 2025 is not just a product metric — it is a leading indicator of an AI security crisis that enterprise buyers are only beginning to price in. HackerOne's CTEM pivot, combined with its January 2026 agentic pentesting launch, signals an intent to move from episodic testing engagements to continuous, embedded security operations — a much stickier and larger revenue opportunity than one-time bug bounties.

Mar 2026
Launched Agentic Prompt Injection Testing amid 540% YoY surge in validated prompt injection reports on platform
Jan 2026
Introduced Agentic PTaaS (Penetration Testing as a Service) combining autonomous AI agents with human validation for continuous enterprise pentesting
Jan 2026
Established Good Faith AI Research Safe Harbor, a new industry framework for legal authorization of AI security research
Mar 2025
Reported record fiscal year: $77.2 million in researcher rewards paid; added Fiserv, Prudential, Netflix, Anthropic, and Lowe's as new customers
Dec 2024
Expanded Hai AI co-pilot with Program Insights feature; reported 500% surge in Hai adoption since February 2024 launch
Feb 2024
Launched Hai GenAI co-pilot in beta and formalized AI Red Teaming service; Anthropic, Adobe, and Snap among first clients
Bug Bounty Platform
Crowdsourced vulnerability discovery connecting enterprises with 1M+ ethical hackers for continuous security research and rewards
AI Red Teaming
Adversarial testing of AI systems by 750+ vetted AI-focused researchers combined with autonomous agents to find jailbreaks, prompt injection, and model-level flaws
Agentic PTaaS
Continuous AI-augmented penetration testing as a managed service, combining autonomous agents with expert human validation for enterprise-scale coverage
Hai (AI Co-pilot)
GenAI assistant embedded in the HackerOne Platform to accelerate vulnerability triage, program insights, and remediation decision-making

HackerOne competes in a fragmented market that spans bug bounty platforms (Bugcrowd), managed security testing (Synack), and emerging AI red teaming specialists. Its scale advantage — the largest researcher community by volume — creates a flywheel that smaller competitors cannot easily replicate. The shift toward CTEM and agentic pentesting puts HackerOne in direct competition with automated security validation players like Pentera, but HackerOne's hybrid human-plus-AI model occupies a distinct niche: validated, creative, human-led testing at platform scale. The company's $841 million Series E valuation from 2022 has not been refreshed, and with no public funding since then, questions around a future IPO path or strategic acquisition linger. However, its deep enterprise relationships — including the U.S. Department of Defense and the UK Ministry of Defence — and its early-mover position in AI red teaming give it durable competitive differentiation in a category expected to grow rapidly through 2026 and beyond.

📊 Funding History & Investment Rounds
👤 Executive Team & Key Hires
🎯 Competitive Positioning Matrix
📡 Signal Tracking — M&A, Product, Partnerships
📈 Quarterly Revenue & Growth Metrics
🔗 Supply Chain & Integration Mapping

Full Intelligence Profile

Access complete funding data, executive profiles, competitive positioning matrix, signal tracking, and strategic analysis.

Request Full Access →
Category Peers — AI Red Teaming & Security Testing

24 other companies in this category

Explore the Full Database

206 companies across 10 categories — the most comprehensive AI security company tracker.

Browse All Companies →