HackerOne Introduces the New Hacker Milestone Rewards Program

HackerOne Community Team
Image
Hacker Milestone Program Logo

Big news for the HackerOne community! We’re thrilled to announce the launch of the Hacker Milestone Rewards Program, a fresh, achievement-based system designed to reward researchers for valid vulnerabilities. This program replaces our former reputation-only model and brings a more inclusive, results-driven approach to recognizing researcher contributions. We’re proud to partner with PortSwigger and PentesterLab in bringing this program to life.

Researchers will earn milestone points based on the severity of each valid report. Whether you're the first to report or not, your work is valued. We are now including duplicate reports. The first five duplicates submitted for a vulnerability will be eligible to receive points as well.

New Points System

Here’s how the milestone levels break down:

Level

Points Required

1

10

2

20

3

50

4

100

5

200

6

300

7

400

8

500

9

1000

10

2000

Points Structure

Earn milestone points for each valid finding:

  • Low Severity: 3 points
  • Medium Severity: 15 points
  • High Severity: 25 points
  • Critical Severity: 50 points
  • Duplicate Severity: 2 points

Exclusive Rewards

We’ve teamed up with PortSwigger to offer Burp Suite licenses in 1- and 3-month increments as rewards. 

PortSwigger is best known for creating Burp Suite, a leading toolkit used by security professionals to test and secure web applications. Burp Suite enables ethical hackers to identify vulnerabilities such as SQL injection, XSS, and authentication flaws through powerful features like intercepting proxies, scanners, and intruder tools.

HackerOne is proud to continue our long standing partnership with such an amazing tool for this milestone program. 

We’ve also partnered with PentesterLab, a leading training platform offering practical labs and exercises that help hackers build and sharpen their web security skills—making it the perfect complement to the milestone program rewards.

Hackers can also look forward to:

  • PentesterLab licenses
  • Custom HackerOne Profile Badges
  • HackerOne branded swag – including exclusive hats, t-shirts, and more.

Program Launched Now

The Hacker Milestone Rewards Program kicks off September 10th, 2025 and all hackers will start with zero points. The first season of the program will span 16 months, with future seasons running annually.

Hackers will receive reward notifications via their wearehackerone.com email addresses, so keep an eye on your inbox and get ready to claim your swag.

This is more than just a new rewards system. It’s a celebration of every valid contribution, recognizing the hard work and impact of our global hacker community. Start hacking, start earning. Your milestones await.

Learn more about the HackerOne Community and get involved