Let’s be clear: @Hacker0x01 is using researchers’ work to train their AI and profit from it without consent. That’s not “innovation” — that’s exploitation. Our reports, our research, our time — turned into their product, while we get nothing.
This violates client agreements. Vulnerabilities belong to the companies and the researchers — not HackerOne. Yet they’re monetizing it anyway.
Layoffs, shrinking bounties, and now this? The platform is collapsing, and instead of fixing it, they’re squeezing the community that built it.
Researchers made HackerOne. Programs trusted HackerOne. And now both are being treated like disposable data sources.
If you’re a company, review your contracts immediately. If you’re a researcher, stop feeding them your work.
HackerOne isn’t supporting the community anymore it’s exploiting it. And people are finally waking up.
Many programs have already shifted to self-hosted , such as Salesforce.
#BugBounty
Thread - My own opinion & this is to the Bug Hunters, What @Hacker0x01 is doing re AI, is essentially stealing “our work” “our research” for their own profitability. They are for sure breaking client agreements, wherein a clients data / vulns belong to the client. Not H1!!
Day TWO of FIVE days of celebrating our 2 year ARCANUM-VERSARY! @arcanuminfosec
3rd Giveaway = FOUR seats to our new course by @the_IDORminator "Zero to [BAC] Hero" !
👍 1 Like = 1 Entry!
♻️ 1 Share = 2 Entries!
Winners announced 1/21! Syllabus link below 👇
🔴 (Release) The Arcanum LLM Security Context Project
Today we are releasing a new AI security resource for you all! This project is a comprehensive security reference distilled from 150+ sources to help LLMs generate safer code!
Enjoy! 🫶 Links Below 👇
Day FOUR of FIVE days of celebrating our 2 year ARCANUM-VERSARY! @arcanuminfosec
5th Giveaway = FOUR seats to our ONE OF A KIND course on using AI to scale you as a Red, Blue, or Purple Teamer:
!! Red Blue Purple AI !!
👍 1 Like = 1 Entry!
♻️ 1 Share = 2 Entries!
Winners announced 1/21! Syllabus link below 👇
Day THREE of FIVE days of celebrating our 2 year ARCANUM-VERSARY! @arcanuminfosec
4th Giveaway = FOUR seats to our FLAGSHIP course on modern application assessment and recon:
The Bug Hunter's Methodology!
👍 1 Like = 1 Entry!
♻️ 1 Share = 2 Entries!
Winners announced 1/21! Syllabus link below 👇
To help celebrate @arcanuminfosec Information Security's two-year anniversary, @Jhaddix gave me 5 codes good for any Arcanum course to give away!
Winners will be announced on 1/22.
👍 1 Like = 1 Entry!
♻️ 1 Share = 2 Entries!
Happy Arcanum-versary!
@arcanuminfosec 's 1st giveaway for the week is FOUR seats to our EPIC Advanced Client-Side Hacking course by myself and @xssdoctor !
👍 1 Like = 1 Entry!
♻️ 1 Share = 2 Entries!
Winners announced 1/21!
Syllabus for the course below 👇
🚨 Doing a giveaway for my Blind XSS Masterclass
Most people think they know XSS, until they meet blind XSS, the kind that fires where you’ll never see it.
Same methods that helped me earn $250K+ from real reports. https://t.co/VL5jwf8alx
🎁 Retweet and reply to enter.
@0xPugal Hi, what's the difference with knoxnl? I saw that you were inspired by it but why have another tool? I ask because I already use knoxnl and I think why not try yours.