Security researchers are invited to contribute nominations for the top web hacking techniques of 2025, with a submission window open from January 6-13, 2026. The initiative aims to identify and showcase practical research that includes innovative techniques applicable across various systems. The process will culminate in a publication of the top ten findings on February 3, 2026.
Participants can submit URLs of their nominated research along with a brief comment highlighting its novelty. The community will then vote on the nominations between January 14-21 to create a shortlist of the top fifteen, which will later be narrowed down through a panel vote.
The project has evolved since 2006, providing a structured way to sift through a plethora of security findings that can otherwise become overlooked. Nominations should focus on work that introduces new techniques rather than individual vulnerabilities, ensuring that the selected research remains relevant over time.
Individuals interested in participating can follow @PortSwiggerRes on social media for updates and to engage with discussions in the #research channel on the PortSwigger Disco.