logo

Capital One Launches Public Bug Bounty Program with HackerOne

ID: ecb46911-022c-5521-a291-906544702f52

STIX ID: report--ecb46911-022c-5521-a291-906544702f52

Feed Name: HackerOne Blog

Date Published: 2024-11-27

Date Updated: 2026-06-12

...
...

Capital One announced the launch of a public bug bounty program on HackerOne, expanding its prior private program to invite external researchers to test core external-facing applications (e.g., *.capitalone.com, *.capitaloneshopping.com, browser extensions, and related mobile apps). The announcement outlines in-scope assets, explicitly lists out-of-scope testing (physical testing, social engineering, phishing, DoS, and third-party assets), and describes the triage, validation, and remediation workflow handled in partnership with HackerOne.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.