Skip to content
June 4, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Watchtower
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Vulnerability Report
Light/Dark Button
  • Home
  • News
  • 25 of the top-ranking hackers worldwide take part in Hack the Air Force 2.0
  • News

25 of the top-ranking hackers worldwide take part in Hack the Air Force 2.0

Do Son December 24, 2017 4 minutes read
Add as a preferred
source on Google

December 23 White hat hackers and the U.S. military network experts co-organized a 9-hour hacker marathon bug bounty – the latest Air Force hacking program H1-212. Twenty-five top hackers from the United States, Canada, the United Kingdom, Sweden, the Netherlands, Belgium and Latvia, together with several military network experts, once again infiltrated the United States Air Force’s key networks to explore various online platforms that could potentially give the U.S. military more than 300 branches Operate a security breach that poses a risk.

By USAF [Public domain], via Wikimedia Commons

HackerOne, a network security platform, is in charge of this event and will pick out 50 of the world’s top 50 participants from the world.

H1-212 Bounty Program Outcome

Contestants discovered two security breaches within the first 30 seconds of the race and 55 security breaches in the following 9 hours, for a total amount of $26,883. One of the high-risk security holes gave two hacker discoverers a direct $ 10,650 bonus – the largest single solo bounty ever issued by the U.S. government. In the weeks following the bounty program, several more participants reported successively related security holes that were not discovered during the H1-212 campaign.

Peter Gold, the chief information security officer of the U.S. Air Force, said in a statement: “This brouhaha has given the U.S. military an eye-opener and the cooperation of the U.S. Air Force and the human resource defense and defense system of partner countries has brought extremely invaluable costs benefit.”

“In the first round of the bounty program, all the tasks are done online and it can take a few hours or even days to get the Air Force’s response, and in H1-212 the response from the staff is even keener, and because of the direct contact with these workers, participants are also more motivated to find clues about the Bug.”

U.S. Air Force First Bug Bounty Program

The Air Force’s first Hack reward program, Hack the Air Force, is scheduled to end in June 2017. At that time, the Department of Defense invited security researchers, military personnel, “The Five Eyes” (the United States, Britain, Canada, Australia and New Zealand) Intelligence Alliance white hat hackers “invaded” the Air Force network.272 white hat hackers found 207 valid bugs in the Air Force network, more than the Defense Ministry and the U.S. Army.

  • The Department of Defense’s Hack the Pentagon program found a total of 138 vulnerabilities.
  • The U.S. Army “Hack the Army” found a total of 118 holes.

US Army Bug Bounty Program Achievements

The so-called Bug Bounty program refers to recruiting “ethical hackers (cybersecurity experts who actually simulate hacking”) or white hat hackers looking for security holes in the computer networks of the relevant organizations. The specific nature of security vulnerabilities is not required and can, therefore, cover a wide range of risks, ranging from low-risk vulnerabilities to high-risk risks that could lead to the overall network being paralyzed and even sensitive information being leaked.

HackerOne Organizer

Alex Rice, chief technology officer of HackerOne, said: “This joint event organized by the U.S. Department of Defense and HackerOne, through the Bug Bounty Challenge and the subsequent Security Vulnerabilities Discovery Program, addresses a total of more than 3,000 Security breach Hackers received more than $ 300,000 in prize money for their contribution, a measure not only exceeding participants’ expectations but also saving millions of dollars in security funding for the U.S. Department of Defense.

To date, HackerOne has been responsible for organizing four rounds of government bug-bounty packages, including Hack the Air Force 2.0 (soon to be launched), another larger bug bounty program.

HackerOne chief executive Martin – McCarthy said in an interview, he believes that white hat network experts, part of the “talent system” has great potential applications. The Bug Bounty program provides a new look for organizations that fail to spot their own vulnerabilities in time. By focusing on software solutions from a potential criminal’s perspective, participants will be able to quickly find the security flaw they are most likely to exploit. In the past, people secretly sought security programs in small groups. Now we are trying to prove that, in order to further enhance the level of security, we must invite the forces from the outside world as reinforcements. ”

Larger Bug bounty program is about to start

The H1-212 incident also opened the curtain on a larger Bug Hack program, Hack the Air Force 2.0.

Hack the Air Force 2.0 will be officially launched on January 1, 2018. Unlike the original Air Force Bug Bounty program, version 2.0 will be open to Citizens of Five Alliance countries – specifically Australia, Canada, New Zealand, the United Kingdom and the United States, plus NATO countries and Sweden. This makes the 2.0 program the most open bug rewards program ever made.

Reference: infosecurity-magazine

Rate this post

Support Our Threat Intelligence

If you find our CVE report and cybersecurity news helpful, consider supporting our work.

Buy Me a Coffee Logo Buy Me a Coffee PayPal
Crypto QR Code
USDT (TRC20):
TN8BdV8cp4T1Cd28gK9qTAnZknzzuwyUtm
USDT (ERC20):
0x3725e1a7d3bc5765499fa6aaafe307fabcd75bce

Share this article:

Facebook Post LinkedIn Telegram

Related posts:

  1. Indian authorities warn investors to cryptocurrencies to Ponzi scheme
  2. What should we do to against Meltdown and Spectre attacks?
  3. Hackers steal $1 million from U.S ATMs by using Jackpotting attack
  4. Research: cybercriminals sell photos of victims on dark web
  5. NSA to set up Artificial Intelligence Security Center
Tags: Hack the Air Force 2.0

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🔴 Live Critical Threats

  • CVE-2026-43986CVSS 9.9
    Tautulli is a Python based monitoring and tracking tool for Plex Media...
  • CVE-2026-35906CVSS 9.6
    An undocumented debug CGI endpoint in T3 Technology CPE models T625Pro v1.0.07,...
  • CVE-2026-8037CVSS 9.6
    OS Command Injection Remote Code Execution Vulnerability in API in Progress ADC...
  • CVE-2019-25741CVSS 9.8
    Mobatek MobaXterm 12.1 contains a structured exception handling (SEH) based buffer overflow...
  • CVE-2019-25738CVSS 9.8
    WordPress Hybrid Composer 1.4.6 contains an unauthenticated settings change vulnerability that allows...
  • CVE-2019-25729CVSS 9.8
    PDF Signer 3.0 contains a server-side template injection vulnerability that allows unauthenticated...
  • CVE-2019-25727CVSS 9.8
    WordPress Plugin ad manager wd 1.0.11 contains an arbitrary file download vulnerability...
  • CVE-2026-4104CVSS 9.8
    Authorization bypass through User-Controlled SQL primary key vulnerability in Akmer Informatics Automation...
  • CVE-2026-10840CVSS 9.6
    A flaw was found in the OpenShift Pipelines operator. The tekton-scheduler-rolebinding ClusterRoleBinding...
  • CVE-2026-41283CVSS 9.9
    OpenStack Mistral through 22.0.0 allows Arbitrary Remote Code Execution when the API...
Powered by CVE WATCHTOWER

Recent Zero-Day Vulnerabilities

  • Android Zero-Day Flaw Exploited in the Wild: June 2026 Patches Released
  • Exploited in the Wild: Critical OWA Spoofing Flaw (CVE-2026-42897) Hits On-Premises Exchange Servers
  • Exploited in the Wild: Maximum CVSS 10 SD-WAN Flaw (CVE-2026-20182) Grants Admin Control
  • Exploited in the Wild: Critical 9.8 CVSS RCE Hits Canon GUARDIANWALL MailSuite
  • Exploit Code Released: Public PoC Dumps for Windows BitLocker Bypass and SYSTEM Elevation Zero-Days
  • Exploited in the Wild: “Dirty Frag” Linux Vulnerability Grants Instant Root Access
Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • Disclaimer
    • Privacy Policy
    • DMCA NOTICE
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    Copyright Daily CyberSecurity © All rights reserved.