Crypto Times Logo Black
Google News Follow Banner
  • News
    • Market
    • Bitcoin
    • Ethereum
    • Altcoins
    • Regulations & Policies
    • DeFi News
    • Blockchain News
    • Industry
  • Exclusive
    ExclusiveShow More
    SEC Cancels Crypto Meeting Why Rulemaking Just Hit Another Wall
    SEC Cancels Crypto Meeting: Why Rulemaking Just Hit Another Wall
    Internet Computer (ICP) Tops Blockchain Transactions Chart: Here’s What It's Actually Doing
    Internet Computer (ICP) Tops Blockchain Transactions Chart: Here’s What It’s Actually Doing
    Ethereum’s Staking War Why EIP-8361 Has DeFi Leaders Fighting Back
    Ethereum’s Staking War: Why EIP-8361 Has DeFi Leaders Fighting Back
    Nothing Is 100% Safe in Crypto Bitcoin’s Coldcard Exploit and Growing Security Crisis 
    Nothing Is 100% Safe in Crypto: Bitcoin’s Coldcard Exploit and Growing Security Crisis 
    From BitMEX to Leap Wallet 100+ Crypto Projects Have Shut Down in H1 2026
    From BitMEX to Leap Wallet: 100+ Crypto Projects Have Shut Down in H1 2026
  • Opinion
    OpinionShow More
    The Architecture of Trust Same Routes, New Risks in Global Tokenisation
    The Architecture of Trust: Same Routes, New Risks in Global Tokenisation
    The Architecture of Trust What 4,000 Years of Trade Teach Us About RWA Tokenisation
    The Architecture of Trust: What 4,000 Years of Trade Teach Us About RWA Tokenisation
    One P2P Trade, Months of Limbo Why Innocent Indian Crypto Users Keep Paying the Price
    One P2P Trade, Months of Limbo: Why Innocent Indian Crypto Users Keep Paying the Price
    CLARITY Act The Bill Exists, the Deal Does Not, Trump Has to Wait
    CLARITY Act: The Bill Exists, the Deal Does Not, Trump Has to Wait
    The Execution Gap: Why the Next Breakthrough in Financial AI is Human Behavior
    The Execution Gap: Why the Next Breakthrough in Financial AI is Human Behavior
  • Learn
    • Explained
    • How To
    • Insights
  • Videos
  • More
    • About Us
    • Our Authors
    • Contact Us
    • Editorial Policy
The Crypto TimesThe Crypto Times
  • All News
  • Market
  • Bitcoin
  • Ethereum
  • Altcoins
  • Regulations & Policies
  • Blockchain
  • DeFi
  • Industry
  • Exclusive
  • Opinion
Search
  • News
    • Market
    • Bitcoin
    • Ethereum
    • Altcoins
    • Regulations & Policies
    • Blockchain
    • DeFi
    • Industry
    • Exclusive
    • Opinion
  • Learn
    • Explained
    • How To
    • Insights
  • Quick Links
    • About Us
    • Our Authors
    • Contact Us
    • Editorial Policy
    • AI Policy
    • Sponsored & Advertorial Policy
  • Videos
  • Glossary
Follow US
© 2026 By Crypto Times. All Rights Reserved.
Industry

Hyperbridge Offers $50,000 for Critical Vulnerabilities

The program covers smart contracts, runtime logic, and cross-chain vulnerabilities with payouts based on severity levels.

Written By Sharmistha Suman
Fact Checked by Shubham Soni
Published 2026-05-15·Updated 3 months ago
Make The Crypto Times preferred on GoogleGoogle
Hyperbridge Offers $50,000 for Critical Vulnerabilities

Key Highlights

  • Hyperbridge launched a public bug bounty program on HackenProof.
  • Critical vulnerabilities can earn rewards of up to $50,000.
  • The scope includes cross-chain messaging and smart contract risks.

Hyperbridge, a decentralized cross-chain interoperability protocol developed by Polytope Labs, has officially rolled out a comprehensive bug bounty program on the HackenProof platform today. The initiative invites independent security researchers to investigate its runtime, pallets, and smart contracts, offering rewards up to $50,000 for critical vulnerabilities. 

According to the official announcement, the platform mentioned, “The Hyperbridge bug bounty is now live on HackenProof. Independent security researchers can review the Hyperbridge codebase and submit vulnerability reports through the security platform.” 

The Hyperbridge bug bounty program is now live on HackenProof.

Independent security researchers can review the Hyperbridge codebase and submit vulnerability reports through the security platform
🧵 pic.twitter.com/WjnTe3vBnk

— Hyperbridge (@hyperbridge) May 15, 2026

The announcement came weeks after an exploit in April 2026 in which around $2.5 million was lost. The incident involving the minting of bridged Polkadot (DOT) tokens and subsequent liquidation highlighted risks in cross-chain messaging and proof verification systems.  

The reward system and the scope

Hyperbridge’s reward system is tiered by severity:

  • Low severity findings—$200
  • Medium severity findings—$2,000-$5,000
  • High severity findings—$5,000-$15,000
  • Critical severity findings—Up to $50,000

The scope of the program covers the complete Hyperbridge protocol repository, including issues associated with logic flaws, access control, reentrancy, cross-chain message spoofing, state manipulation, and anything that could compromise message or fund integrity. 

Out-of-scope items consist of theoretical vulnerabilities without proof, compiler version issues, gas optimizations, code style violations, and front-running attacks that do not have broader impact. 

The program requires responsible disclosures exclusively via HackenProof, limiting direct contact with the team or public discussion of findings. Reports are reviewed, classified, acknowledged, and approved after that. Once approved, the reward will be transferred within three days. 

Only the first reporter of a qualifying vulnerability is considered eligible, and submissions must comprise detailed reproduction steps and proof-of-concept code where applicable and stick to strict disclosure rules. AI-generated reports that won’t contain runnable PoCs will not be accepted. 

Post-mortem of the attack 

Following the attack, Hyperbridge published a detailed post-mortem of the exploit yesterday. The report mentioned that an attacker exploited a flaw in the Merkle Mountain Range (MMR) verifier by submitting a forged proof with an out-of-bounds leaf index. 

The verifier wasn’t able to detect leftover leaves after processing peaks, permitting the forged message to be accepted as valid and permitting unauthorized fund drainage from the Token Gateway contract. 

After this, Polytope Labs performed an internal review and ordered Security Research Labs (SR Labs) to perform an independent audit. Both the audits found 14 vulnerabilities across the verification and settlement stack: 1 critical, 3 high, 5 medium, 4 low, and 1 informational.

Aggressive approach following vulnerability 

This bug bounty program represents an aggressive approach after the latest vulnerability. Through sharing its code with the wider security industry, Hyperbridge hopes not only to fix vulnerabilities but also to verify the basic security framework of its Interoperable State Machine Protocol (ISMP).

Success in the program may aid in rebuilding trust in Hyperbridge’s technology stack, driving its implementation in Polkadot and other interconnected chains. Researchers who wish to participate will find more information on the HackenProof page for Hyperbridge Protocol.

Also Read: Tempo Brings Coinbase’s $5B cbBTC to Its Layer 1 via Chainlink CCIP

Disclaimer: The information researched and reported by The Crypto Times is for informational purposes only and is not a substitute for professional financial advice. Investing in crypto assets involves significant risk due to market volatility. Always Do Your Own Research (DYOR) and consult with a qualified Financial Advisor before making any investment decisions.

Follow The Crypto Times on Google News to Stay Updated!      Google News

TAGGED:Polkadot (DOT)
Share This Article
Whatsapp Whatsapp LinkedIn Telegram Copy Link

Latest News

Cboe Files With SEC to List 3x Bitcoin and Ether ETFs
Cboe Files With SEC to List 3x Bitcoin and Ether ETFs
Lido Calls for Deeper Review Before EIP-8363 Advances
Lido Calls for Deeper Review Before EIP-8363 Advances
Nigel Farage Wins UK By-Election Amid Crypto Donation Probe
Nigel Farage Wins UK By-Election Amid Crypto Donation Probe
SEC Cancels Crypto Meeting Why Rulemaking Just Hit Another Wall
SEC Cancels Crypto Meeting: Why Rulemaking Just Hit Another Wall
Galaxy, Compass and Montera Agree to Texas Data Center Rules
Galaxy, Compass and Montera Agree to Texas Data Center Rules

Find Us on Socials

You may also like

Grayscale: ETH and SOL Could Get Scarcer if Proposals Implemented

Grayscale: ETH and SOL Could Get Scarcer if Proposals Implemented

Upbit Operator Dunamu’s Q2 Profit Falls 85% as Trading Slows

Upbit Operator Dunamu’s Q2 Profit Falls 85% as Trading Slows

Coinbase Halts cbETH on Arbitrum, Optimism, Polygon After Aug 17

Coinbase Halts cbETH on Arbitrum, Optimism, Polygon After Aug 17

StablecoinX Holds 31% of ENA Circulating Supply, Reports $34.2M Loss

StablecoinX Holds 31% of ENA Circulating Supply, Reports $34.2M Loss 

The Crypto Times Logo PNG

Providing real-time, accurate Crypto reporting. Your trusted source for Crypto News and Research.

Stay Updated

All News
Exclusive
Opinions
Learn
Videos
Glossary

Company

About Us
Our Authors
Editorial Policy
AI Policy
Advertorial Policy

Get In Touch

Contact Us
Career

Find Us on Socials

X-twitter Linkedin Telegram Youtube Instagram

© 2026 The Crypto Times | A BITROCK TECHNOLOGIES L.L.C. Company.

DMCA.com Protection Status
  • Terms and Conditions
  • Disclaimer
  • Privacy Policy
  • Cookie policy
Do Not Sell or Share My Personal Information