Funding/M&A

French Bug Bounty Platform YesWeHack Raises $28 Million

YesWeHack has raised more than $52 million to date to build and market a crowdsourced vulnerability reporting platform.

YesWeHack has raised more than $52 million to date to build and market a crowdsourced vulnerability reporting platform.

French bug bounty and vulnerability disclosure policy company YesWeHack has raised €26 million (~$28 million) in a Series C funding round that brings the total raised by the company to over $52 million.

The investment round was led by Wendel, with additional financial capital from Adelie, Bpifrance, Eiffel Investment Group, Open CNP, and Seventure Partners.

Founded in 2015 with headquarters in Paris, France, YesWeHack has built a crowdsourced platform that coordinates the communication between vulnerability researchers and affected vendors.

The company said its platform has connected tens of thousands of independent researchers with organizations worldwide, including those in private, public, and governmental sectors, offering in-house triage, support, and customizable pricing.

YesWeHack claims to have over 500 customers, including global organizations, telecommunication companies, and public institutions in Canada, France, Singapore, and Spain.

The company will use the funds to invest in AI, to launch new solutions, and to expand its international growth.

Advertisement. Scroll to continue reading.

“Thanks to this investment, YesWeHack will deliver even higher levels of customer satisfaction and continue developing innovative solutions in one of the most dynamic segments of cybersecurity. We would like to thank our investors, both longstanding and new, and are honored by their trust,” YesWeHack co-founder and CEO Guillaume Vassault-Houlière said.

Related: AirMDR Raises $5 Million for AI-Powered Managed Detection and Response

Related: Hypr Raises $30 Million for Passwordless Authentication

Related: Averlon Emerges From Stealth Mode With $8 Million in Funding

Related: Miggo Security Gets $7.5 Million Seed Funding to Build ADR Technology

Related Content

Vulnerabilities

The biggest single reward paid out by Microsoft between July 1, 2025, and June 30, 2026, was $200,000.

Artificial Intelligence

Anthropic's Mythos is accelerating vulnerability discovery to machine speed, forcing the bug bounty industry and offensive security teams to adapt to a future where...

Vulnerabilities

Researchers found more than 80 high-impact cloud and AI vulnerabilities during the event, which had a $5 million prize pool.

Artificial Intelligence

Through the new program, OpenAI will reward reports covering design or implementation issues leading to material harm.

Vulnerabilities

Google paid over $3.7 million for Chrome vulnerabilities, and more than $3.5 million for cloud security defects.

Vulnerabilities

All critical vulnerabilities in Microsoft, third-party, and open source code are eligible for rewards if they impact Microsoft services.

Vulnerabilities

The total amount of money given to bug bounty hunters by the social media giant has reached $25 million.

Vulnerabilities

Researchers submitted 107 bug reports during the bugSWAT hacking event at the ESCAL8 conference in New Mexico.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version