Work at LY Corporation? Claim it to respond to reviews as the verified owner.
Found a vulnerability?
If you would rather not deal with the vendor yourself, a BugRater analyst will submit it upstream on your behalf, with your explicit permission, and tell you what came back.
Ask BugRater to submit itPrivate. The report body is encrypted at rest; BugRater holds the key, so the analyst working it can read it. Every read is logged.
HackerOne’s own figures for this program, read from its public page, not reported by researchers and not part of the BugRater grade. Captured 23 Sep 2026.
What it pays, by severity
$382,512 paid to researchers in total. Lifetime figure as HackerOne prints it: evidence this program has paid, not a promise about any one report.
Intake & responsiveness · last 90 days
Response targets it sets itself
A target the program declared, not a measurement of it being met.
Getting in the door
Over 33 days (18 snapshots): no change on the figures worth watching.
See how this programme’s report load compares to others →
Reviews
0 publishedNo reviews yet.
Who this program credits
397 creditedResearchers HackerOne shows on this program’s public thanks list, best position first. “Recognised” is how many of a hunter’s submissions the program accepted; the ratio is their signal here, not our judgement of them.
| # | Researcher | Reputation | Recognised / submitted |
|---|---|---|---|
| 1 | aki__0421 | 599 | 22 / 29 76% |
| 2 | astelynk | 555 | 23 / 29 79% |
| 3 | jacksparrow9999 | 409 | 17 / 20 85% |
| 4 | tosun | 306 | 23 / 32 72% |
| 5 | q0jt | 288 | 14 / 41 34% |
| 6 | j0eii | 254 | 15 / 23 65% |
| 7 | kazan71p | 245 | 10 / 12 83% |
| 8 | m0chan | 241 | 13 / 17 76% |
| 8 | oofx | 241 | 13 / 21 62% |
| 10 | ngalog | 237 | 11 / 24 46% |
| 11 | godiego | 235 | 10 / 14 71% |
| 12 | nyantw | 224 | 12 / 12 100% |
| 13 | imnotr3al | 200 | 10 / 13 77% |
| 14 | derision | 181 | 10 / 17 59% |
| 15 | akichia | 180 | 10 / 14 71% |
| 16 | mineo | 157 | 6 / 9 67% |
| 17 | xehle | 155 | 10 / 11 91% |
| 18 | todayisnew | 153 | 9 / 28 32% |
| 19 | comwrg | 127 | 5 / 5 100% |
| 20 | vaxo94 | 122 | 6 / 10 60% |
| 21 | faarari100 | 118 | 6 / 22 27% |
| 22 | ali | 117 | 6 / 11 55% |
| 23 | jameelalhaneny | 110 | 5 / 7 71% |
| 23 | ras-it | 110 | 5 / 6 83% |
| 23 | khleymu_da | 58 | 5 / 5 100% |
Showing the top 25 of 397 credited on HackerOne.
Facts published by HackerOne on the program's own page, not reported by researchers, and not part of the BugRater grade. Last checked 24 Sep 2026.
LINE Security Bug Bounty Program
Scope
37 assets| Asset | Type | Eligibility | Max severity |
|---|---|---|---|
| *.line-apps.com | WILDCARD | ✓ bounty | Critical |
| *.line.biz | WILDCARD | ✓ bounty | Critical |
| *.line.naver.jp | WILDCARD | ✓ bounty | Critical |
| *.linecorp.com | WILDCARD | ✓ bounty | Critical |
| 443904275 | APPLE STORE APP ID | ✓ bounty | Critical |
Show all 37 assets
| Asset | Type | Eligibility | Max severity |
|---|---|---|---|
| 539883307 | APPLE STORE APP ID | ✓ bounty | Critical |
| 9wzdncrfj2g6 | WINDOWS APP STORE APP ID | ✓ bounty | Critical |
| Chrome Extension | OTHER | ✓ bounty | Critical |
| com.linecorp.linelite | GOOGLE PLAY APP ID | ✓ bounty | Critical |
| http://recruit.linepluscorp.com | URL | ✓ bounty | Critical |
| jp.naver.line.android | GOOGLE PLAY APP ID | ✓ bounty | Critical |
| LINE Messenger - Chat | OTHER | ✓ bounty | Critical |
| LINE Messenger - Keep | OTHER | ✓ bounty | Critical |
| LINE Messenger - News | OTHER | ✓ bounty | Critical |
| LINE Messenger - OpenChat | OTHER | ✓ bounty | Critical |
| LINE Messenger - VoIP | OTHER | ✓ bounty | Critical |
| LINE Messenger - VOOM | OTHER | ✓ bounty | Critical |
| live.line.me | URL | ✓ bounty | Critical |
| music.line.me | URL | ✓ bounty | Critical |
| news.line.me | URL | ✓ bounty | Critical |
| Platform System | OTHER | ✓ bounty | Critical |
| store.line.me | URL | ✓ bounty | Critical |
| Windows Executable | DOWNLOADABLE EXECUTABLES | ✓ bounty | Critical |
| *.line.me | URL | submit only | Critical |
| *nvapis.line.me | OTHER | out | None |
| DEMAE-CAN | OTHER | out | None |
| https://entry.line.me/ | URL | out | None |
| LINE BANK | OTHER | out | None |
| LINE FINANCIAL | OTHER | out | None |
| LINE Pay | OTHER | out | None |
| LINE TAXI | OTHER | out | None |
| LINEMAN | OTHER | out | None |
| livedoor | OTHER | out | None |
| Other Assets | OTHER | submit only | Critical |
| prod-fido-fido2-server.line-apps.com | URL | out | None |
| Vulnerabilities affecting LINE users (e.g. it is possible to obtain private information of others) | OTHER | out | None |
| Yahoo Japan | OTHER | out | None |
HackerOne lists 38 scope entries; its public listing groups many assets under one label, so identical entries are shown once.