Hacking

A total of six hackers already become millionaires on HackerOne

HackerOne announced that five more hackers have become millionaires thanks to their contributes to the bug bounty programs managed by the platform.

Bug bounty platform HackerOne announced that four more hackers have become millionaires after participating in the bug bounty programs managed by the platform. In March, HackerOne announced that two of its members have each earned more than $1 million by participating bug bounty programs.

The first white hat hacker that was able to earn over $1 million through HackerOne programs was Santiago Lopez from Argentina. Lopez is a 
19-year-old hacker goes online with the moniker ‘@try_to_hack’ is a member of the HackerOne platform since 2015. The young hacker has already discovered thousands of vulnerabilities through the platform, including flaws in Twitter and Verizon Media services.

“Hacking can open doors to anyone with a laptop and curiosity about how to break things,” said @mlitchfield. “I hope our achievements will encourage other hackers, young and old, to test their skills, become part of our supportive community, rake in some extra $$$’s along the way and make the internet a much safer place for people.”

The second white-hat hacker who made the headlines earning over $1 million is Mark Litchfield, which goes online with the moniker ‘mlitchfield.’ Litchfield discovered hundreds of vulnerabilities in the software from major firms, including Dropbox, Yelp, Venmo, Starbucks, Shopify and Rockstar Games.

Now other hackers entered in the club of the HackerOne’s millionaries, below an excerpt of the announcement published by the company:

“In March 2019, HackerOne announced that Santiago Lopez, known as @try_to_hack, a 19-year-old hacker from Argentina, was the world’s first hacker to earn $1 million with bug bounty programs. Now, Mark Litchfield (@mlitchfield) from the U.K., Nathaniel Wakelam (@nnwakelam) from Australia, Frans Rosen (@fransrosen) from Sweden, Ron Chan (@ngalog) from Hong Kong, and Tommy DeVoss (@dawgyg) from the U.S. joined the $1M hacker ranks by hacking for improved internet security. “

The club is now composed of six researchers that have earned over $1 million in bounties.

HackerOne disclosed this information as part of the 2019 Hacker-Powered Security Report based on 123,000+ unique resolved security flaws and more than 1,400 customer programs. The company said that more than $62 million in bounties were earned by hackers from over 150 countries.

The importance of bug bounty program is confirmed by the fact that six of the ten top banks in North America are working with HackerOne.

“Every five minutes, a hacker reports a vulnerability. Every 60 seconds, a hacker partners with an organization on HackerOne,” continues the announcement. “That’s more than 1,000 interactions per day with hackers and companies or governments working towards a safer internet.”

According to the report, 25 percent of all resolved vulnerabilities were classified as high to critical severity in the past 12 months, this caused an increase in the bounty payments. The company revealed that the average bounty paid for critical vulnerabilities increased 48% over last year’s average across all industries to $3,384; up from $2,281.

This data represents a 71% increase over the 2016 average of $1,977. The most competitive programs today like Google, Microsoft,

In the past year, security researchers that reported vulnerabilities through HackerOne platform earned in total $21 million, representing an increase of $10 million over the previous year.

[adrotate banner=”9″] [adrotate banner=”12″]

Pierluigi Paganini

(SecurityAffairs – HackerOne, bug bounty)

[adrotate banner=”5″]

[adrotate banner=”13″]

Pierluigi Paganini

Pierluigi Paganini is member of the ENISA (European Union Agency for Network and Information Security) Threat Landscape Stakeholder Group and Cyber G7 Group, he is also a Security Evangelist, Security Analyst and Freelance Writer. Editor-in-Chief at "Cyber Defense Magazine", Pierluigi is a cyber security expert with over 20 years experience in the field, he is Certified Ethical Hacker at EC Council in London. The passion for writing and a strong belief that security is founded on sharing and awareness led Pierluigi to find the security blog "Security Affairs" recently named a Top National Security Resource for US. Pierluigi is a member of the "The Hacker News" team and he is a writer for some major publications in the field such as Cyber War Zone, ICTTF, Infosec Island, Infosec Institute, The Hacker News Magazine and for many other Security magazines. Author of the Books "The Deep Dark Web" and “Digital Virtual Currency and Bitcoin”.

Recent Posts

Fintech firm Figure disclosed data breach after employee phishing attack

Fintech firm Figure confirmed a data breach after hackers used social engineering to trick an…

14 hours ago

U.S. CISA adds a flaw in BeyondTrust RS and PRA to its Known Exploited Vulnerabilities catalog

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a flaw in BeyondTrust RS and…

16 hours ago

Suspected Russian hackers deploy CANFAIL malware against Ukraine

A new alleged Russia-linked APT group targeted Ukrainian defense, government, and energy groups, with CANFAIL…

20 hours ago

New threat actor UAT-9921 deploys VoidLink against enterprise sectors

A new threat actor, UAT-9921, uses the modular VoidLink framework to target technology and financial…

1 day ago

Attackers exploit BeyondTrust CVE-2026-1731 within hours of PoC release

Attackers quickly targeted BeyondTrust flaw CVE-2026-1731 after a PoC was released, enabling unauthenticated remote code…

2 days ago

Google: state-backed hackers exploit Gemini AI for cyber recon and attacks

Google says nation-state actors used Gemini AI for reconnaissance and attack support in cyber operations.…

2 days ago

This website uses cookies.