HackerOne Blog The latest from HackerOne Image AI H1 Platform Project Glasswing: What We Learned Running a Frontier Model on Our Own Codebase September 1, 2026 HackerOne ran Anthropic's Mythos 5 model against its own production code. Here's what a critical RCE finding revealed about AI-accelerated security. Read Now All AI CTEM Engineering Cloud Security Code Security Crowdsourced Security Culture & Talent Defense in Depth From the CEO HackerOne News Offensive Security Public Policy Return on Mitigation Security Compliance Security Research Exposure Management Image The Top 5 Most Common Security Issues I Discover When Reviewing Code June 10, 2022 NOTE: The following code examples have been contrived to provide detailed, illustrative representations of real... Read Now Image Exposure Management How to Catch Injection Security Vulnerabilities in Code Review June 9, 2022 Understanding Injection Vulnerabilities Injection vulnerabilities exist when information provided by users of the application is... Read Now Image Severe Confluence Vulnerability is an Active Threat (CVE-2022-26134) June 6, 2022 Background The vulnerability allows unauthenticated remote code execution (RCE). Exploitation occurs by sending an HTTP... Read Now Image Exposure Management How Critical Infrastructure Can be Protected from Threats June 2, 2022 Accessing a major critical infrastructure network is very appealing to cybercriminals, as they can maximize... Read Now Image Exposure Management Ethical Hackers Help Beiersdorf Minimize Risk and Protect Their Attack Surface June 2, 2022 Beiersdorf’s cybersecurity team is always thinking about the best ways to secure their public-facing assets... Read Now Image Security Compliance Exposure Management What Is a Security.txt File and How Can It Help Your Security Program? May 27, 2022 What is a security.txt file and how can it help your program? Read Now Image 5 Ways I Provide Value as a PullRequest Reviewer When I Start Reviewing a New Project May 24, 2022 As shown in Figure 1 below, even early reviews can provide value. Catching Security Vulnerabilities... Read Now Image Offensive Security HackerOne Announces a New Customer Pentest Setup that's More Efficient and Speeds Time to Launch May 20, 2022 This improved experience reduces time to launch, which is vital when your organization is up... Read Now Image Exposure Management Understanding Public and Private Bug Bounties and Vulnerability Disclosure Programs May 18, 2022 How Are Bug Bounty Programs and Vulnerability Disclosure Programs Different? Let’s start with the similarities... Read Now Pagination First page Previous page … Page 61 Page 62 Page 63 Page 64 Page 65 Page 66 Page 67 Page 68 Page 69 … Next page Last page
Image AI H1 Platform Project Glasswing: What We Learned Running a Frontier Model on Our Own Codebase September 1, 2026 HackerOne ran Anthropic's Mythos 5 model against its own production code. Here's what a critical RCE finding revealed about AI-accelerated security. Read Now
Image The Top 5 Most Common Security Issues I Discover When Reviewing Code June 10, 2022 NOTE: The following code examples have been contrived to provide detailed, illustrative representations of real... Read Now
Image Exposure Management How to Catch Injection Security Vulnerabilities in Code Review June 9, 2022 Understanding Injection Vulnerabilities Injection vulnerabilities exist when information provided by users of the application is... Read Now
Image Severe Confluence Vulnerability is an Active Threat (CVE-2022-26134) June 6, 2022 Background The vulnerability allows unauthenticated remote code execution (RCE). Exploitation occurs by sending an HTTP... Read Now
Image Exposure Management How Critical Infrastructure Can be Protected from Threats June 2, 2022 Accessing a major critical infrastructure network is very appealing to cybercriminals, as they can maximize... Read Now
Image Exposure Management Ethical Hackers Help Beiersdorf Minimize Risk and Protect Their Attack Surface June 2, 2022 Beiersdorf’s cybersecurity team is always thinking about the best ways to secure their public-facing assets... Read Now
Image Security Compliance Exposure Management What Is a Security.txt File and How Can It Help Your Security Program? May 27, 2022 What is a security.txt file and how can it help your program? Read Now
Image 5 Ways I Provide Value as a PullRequest Reviewer When I Start Reviewing a New Project May 24, 2022 As shown in Figure 1 below, even early reviews can provide value. Catching Security Vulnerabilities... Read Now
Image Offensive Security HackerOne Announces a New Customer Pentest Setup that's More Efficient and Speeds Time to Launch May 20, 2022 This improved experience reduces time to launch, which is vital when your organization is up... Read Now
Image Exposure Management Understanding Public and Private Bug Bounties and Vulnerability Disclosure Programs May 18, 2022 How Are Bug Bounty Programs and Vulnerability Disclosure Programs Different? Let’s start with the similarities... Read Now