1inch has released its bug bounty report for the first half of 2026 in partnership with HackenProof, outlining submission and payout data across its security programs. The report covers the period from January to June 2026 and shows that 1inch’s six core bug bounty programs on HackenProof received 1,055 reports from security researchers. Of those submissions, 32 were rewarded. The report also breaks out figures for the 1inch Aqua bug bounty program, which logged 472 reports from 217 researchers. Nine vulnerabilities in that program received rewards, including one high-severity issue, along with several medium- and low-severity findings. According to the report, the issues identified in the Aqua program involved logic inconsistencies, unit mismatches, execution edge cases, and tool-related problems. The disclosed vulnerabilities have already been fixed.
ChainCatcher reported that 1inch and HackenProof have released a bug bounty report for the first half of 2026.
The report shows that from January to June 2026, 1inch’s six core bug bounty programs on HackenProof received 1,055 submissions from security researchers. A total of 32 of those reports were rewarded.
Within that total, the 1inch Aqua bug bounty program received 472 reports from 217 researchers. Nine vulnerabilities in the program received payouts, including one high-severity issue, along with several medium- and low-severity findings.
According to the report, the issues involved logic inconsistencies, unit mismatches, execution edge cases, and tool-related problems. All of them have now been fixed.
This article was originally published by Bit.Fan. For more cryptocurrency news and market insights, visit www.bit.fan. Disclaimer:
The market information, project data, and third-party content displayed on this platform are for industry information sharing only and do not constitute any form of investment advice or return commitment.
Cryptocurrency trading carries high risks. Users should fully assess their risk tolerance and make independent decisions. All profits, losses, and legal responsibilities are borne by the users themselves.