Hack The Box: Cybersecurity Training
Popular Topics
  • JOIN NOW
ALL Red Teaming Blue Teaming Cyber Teams Education CISO Diaries Customer Stories Write-Ups CVE Explained News Career Stories Humans of HTB Attack Anatomy Artificial Intelligence

News

4 min read

Hack The Box & HackerOne teaming up to educate new bug bounty hunters

Hack The Box Academy in partnership with the HackerOne team, introduces the Bug Bounty Hunter job-path!

Dimitris avatar

Dimitris,
May 16
2022

Hack The Box Article

It is a great moment for all hackers around: Hack The Box and HackerOne

Loading Preview...

 are teaming up to provide a new, innovative Bug Bounty Hunter education!

We take bug bounty education seriously as it is one of the ways in which we create a better and safer cyber world while providing a stable source of income to hackers all around the globe. Over the last year, the payout for a critical vulnerability increased to $3,650 and the average amount paid per vulnerability is $979. This is for sure a great time to become a hunter: find vulnerabilities, report them, get a reward!

As two communities that are gathering hundreds of thousands of cybersecurity enthusiasts and enabling people in making their passion an actual occupation, we now decided to work together, utilizing HTB’s education expertise and HackerOne’s bug bounty platform to provide the best in class bug bounty learning path that seamlessly connects graduates to real-world bug bounty opportunities.

That is how the HTB Academy Bug Bounty Hunter job-role path

Loading Preview...

 saw its creation!

The intention is to combine Hack The Box training with the HackerOne treasure map by creating an exciting HTB Academy job-role path focusing on bug bounty methodologies and web application hacking. 

About The Path

Firstly announced during HackerOne’s HacktivityCon 2021, the Bug Bounty Hunter job-role path is designed for individuals who want to enter this world with little to no prior experience. The path covers core web application security assessment and bug bounty hunting concepts and provides a deep understanding of the attack tactics used during bug bounty. Armed with the necessary theoretical background, multiple practical exercises, and a proven bug bounty hunting methodology, students will go through all bug bounty hunting stages, from reconnaissance and bug identification to exploitation, documentation, and communication to vendors/programs. 

Bug Bounty Hunter Path Modules by HackerOne and Hack The Box
 

The entire job-role path consists of 20 different modules in scalable difficulty and logical order to enable a great learning experience: each module is accompanied by practical lab exercises and skills assessment exercises.

All the modules are entirely created by the HTB Academy team, led by the Training Director Dimitrios Bougioukas and the Head of Training Development Ben Rollin (aka mrb3n), with the outstanding support of subject matter experts as Zeyad AlMadani, Shaksam Jaiswal, Miroslav Stampar, Sandro Zaccarini, and Valentin Dobrykov.

Web Applications Fundamentals

  • Web Requests

  • Introduction to Web Applications

  • Using Web Proxies

Reconnaissance

  • Information Gathering

  • Attacking Web Applications with Ffuf

  • JavaScript Deobfuscation

Input Validation Security Testing

  • Cross-Site Scripting (XSS)

  • SQL Injection Fundamentals

  • SQLMap Essentials

  • Command Injection

Authentication, Authorization & Session Security Testing

  • Login Brute Forcing

  • Broken Authentication

  • Other Web Attacks

  • File Inclusion / Directory Traversal

Common Web & Internal Application Testing

  • Hacking WordPress

Bug Bounty Hunting

  • Bug Bounty Hunting Methodology

  • File Upload Attacks

  • Session Security

  • Web Attacks

  • Server-Side Attacks

Upon completing the job-role path, students will have become proficient in the most common bug bounty hunting and attack techniques against web applications and be in the position of professionally reporting bugs and start gaining income from it.

Your progress will also be shown on both platforms. Bug bounty graduates will receive an exclusive custom badge on their HackerOne profiles too!

We are very excited to provide such content to both communities and anyone else willing to learn more about bug bounty out there. It is a unique opportunity to access high-quality education content powered by two great teams as Hack The Box and HackerOne while gaining access to the first-ever bug bounty certification in the market.

Bug Bounty Hunter Certification

Oh, wait… Did we say certification? Well, yes! 

Users completing the Bug Bounty Hunter job-role path will be able to purchase a voucher for the upcoming “HTB Certified Bug Bounty Hunter” exam (valid for two attempts). 

Are you ready to hunt them all? Let’s put your skills on paper!

GET STARTED 

Happy Learning!

Hack The Box Team

GET A DEMO FREE TRIAL

Contents

  • About The Path
    • Web Applications Fundamentals
    • Reconnaissance
    • Input Validation Security Testing
    • Authentication, Authorization & Session Security Testing
    • Common Web & Internal Application Testing
    • Bug Bounty Hunting

Latest News

Hack the Box Blog

Humans of HTB

9 min read

Humans of HTB #12: Tassos's journey into engineering

duckarcher avatar duckarcher, May 30, 2025

Hack the Box Blog

News

5 min read

Building a threat-ready cyber workforce: Hack The Box 2025 Buyers Guide

b3rt0ll0 avatar b3rt0ll0, May 28, 2025

Hack the Box Blog

Customer Stories

3 min read

Ynov Campus students put their skills to the test in a thrilling CTF experience powered by Hack The Box

Noni avatar Noni, May 26, 2025

Hack The Blog

The latest news and updates, direct from Hack The Box

Read More
Hack The Box: Cybersecurity Training

The #1 platform to build attack-ready
teams and organizations.

Get a demo

Forrester wave leader Forrester wave leader
ISO 27001 ISO 27701 ISO 9001
G2 rating Capterra rating

Products
Teams
Courses & Certifications Cyber Ranges Enterprise Attack Simulations Cloud Infrastructure Simulations Capture The Flag Tabletop Exercises Talent Sourcing
Individuals
Courses & Certifications Hacking Labs Defensive Labs Red Team Labs Capture The Flag Job Board
Solutions
Job Roles
Red Teams Blue Teams Purple Teams
Industries
Government Higher Education Finance Professional Services
Use Cases
Technical Onboarding Team Benchmarking Candidate Assessment Threat Management Code Vulnerability Crisis Simulation Governance & Compliance
Resources
Community Blog Industry Reports Webinars AMAs Learn with HTB Customer Stories Cheat Sheets Compliance Sheets Glossary Guides & Templates Parrot OS Help Center
Programs
Channel & Resellers Ambassador Program Affiliate Program SME Program
Company
About us Careers Brand Guidelines Certificate Validation Trust Center Product Updates Status
Contact Us
Press Support Enterprise Sales
Partners
Become a Partner Register a Deal
Store
HTB Swag Buy Gift Cards
Products
Teams
Courses & Certifications Cyber Ranges Enterprise Attack Simulations Cloud Infrastructure Simulations Capture The Flag Tabletop Exercises Talent Sourcing

Individuals

Courses & Certifications Hacking Labs Defensive Labs Red Team Labs Capture The Flag Job Board
Solutions
Job Roles
Red Teams Blue Teams Purple Teams

Industries

Government Higher Education Finance Professional Services

Use Cases

Technical Onboarding Team Benchmarking Candidate Assessment Threat Management Code Vulnerability Crisis Simulation Governance & Compliance
Resources
Community Blog Industry Reports Webinars AMAs Learn with HTB Customer Stories Cheat Sheets Compliance Sheets Glossary Guides & Templates Parrot OS Help Center

Programs

Channel & Resellers Ambassador Program Affiliate Program SME Program
Company
About us Careers Brand Guidelines Certificate Validation Trust Center Product Updates Status

Contact Us

Press Support Enterprise Sales

Partners

Become a Partner Register a Deal

Store

HTB Swag Buy Gift Cards
Cookie Settings
Privacy Policy
User Agreement
© 2025 Hack The Box