Overview
A white hat (or a white-hat hacker, a whitehat) is an ethical security hacker. Under the owner's consent, white-hat hackers deliberately hack software or system with the aim of identifying any vulnerabilities or security issues it has, helping to reinforce it from black hat hackers.
The white hat is contrasted with the black hat, a malicious hacker; this definitional dichotomy comes from Western films, where heroic and antagonistic cowboys might traditionally wear a white and a black hat, respectively. There is a third kind of hacker known as a grey hat who hacks with good intentions but at times without permission or proper consent.
White-hat hackers may also work in teams called "sneakers", hacker clubs, red teams, or tiger teams.
8 sources for this section
- 1White hat (computer security) — Wikipedia, revision 1375555659
- 2"What is white hat? - a definition from Whatis.com". Searchsecurity.techtarget.com. Archived from the original on 2011-02-01. Retrieved 2012-06-06.
- 3Okpa, John Thompson; Ugwuoke, Christopher Uchechukwu; Ajah, Benjamin Okorie; Eshioste, Emmanuel; Igbe, Joseph Egidi; Ajor, Ogar James; Okoi, Ofem, Nnana; Eteng, Mary Juachi; Nnamani, Rebecca Ginikanwa (2022-09-05). "Cyberspace, Black-Hat Hacking and Economic Sustainability of Corporate Organizations in Cross-River State, Nigeria". SAGE Open. 12 (3)
- 4Filiol, Eric; Mercaldo, Francesco; Santone, Antonella (2021). "A Method for Automatic Penetration Testing and Mitigation: A Red Hat Approach". Procedia Computer Science. 192: 2039–2046. doi:10.1016/j.procs.2021.08.210. S2CID 244321685.
- 5Wilhelm, Thomas; Andress, Jason (2010). Ninja Hacking: Unconventional Penetration Testing Tactics and Techniques. Elsevier. pp. 26–7. ISBN 978-1-59749-589-9.
- 6"What is the difference between black, white, and grey hackers". Norton.com. Norton Security. Archived from the original on 15 January 2018. Retrieved 2 October 2018.
- 7"What is a White Hat?". Secpoint.com. 2012-03-20. Archived from the original on 2019-05-02. Retrieved 2012-06-06.
- 8Palmer, C.C. (2001). "Ethical Hacking" (PDF). IBM Systems Journal. 40 (3): 769. doi:10.1147/sj.403.0769. Archived (PDF) from the original on 2019-05-02. Retrieved 2014-07-19.
History of term
The modern contrast between white hat and black hat derives from the convention in Western films in which heroic characters were associated with white hats and villains with black hats. By the mid-1960s, white hat was being used more generally in American English to mean a person perceived as one of the "good guys" or as being on the side of right.
The computing sense developed from this wider moral contrast. The Oxford English Dictionary records white hat in computing slang from 1990, defining it as a person who engages in computer hacking for benign or altruistic purposes, especially to test security systems and prevent illegal acts. The related expression white-hat hacker was in use by the late 1990s, and by the early 2000s was being used for security testers contracted to probe networks and systems for weaknesses.
3 sources for this section
- 1White hat (computer security) — Wikipedia, revision 1375555659
- 5Wilhelm, Thomas; Andress, Jason (2010). Ninja Hacking: Unconventional Penetration Testing Tactics and Techniques. Elsevier. pp. 26–7. ISBN 978-1-59749-589-9.
- 9"white hat, n. meanings, etymology and more | Oxford English Dictionary". www.oed.com. Archived from the original on 2024-06-06. Retrieved 2026-05-31.
Employment
Interviews of staff in the UK in 2011 suggest that ethical hackers working for companies have skills around social engineering, mobile tech, and social networking.
In professional employment, the work of white-hat hackers substantially overlaps with penetration testing and ethical security testing with the ethical hacker most closely covering the role of a penetration tester, simulating the attacks used by malicious hackers in order to understand how systems can be defended.
White-hat roles may be filled by in-house staff or by third-party specialists contracted to test an organisation's security. In this setting, the distinction from malicious hacking is not primarily technical method, but authorisation, scope and professional discipline: white hats use attacker-like techniques within agreed legal and ethical boundaries.
The penetration testing or ethical security testing industry had become organised around professional organisations, recognised qualifications and structured development routes, while also stressing that practitioners must not exceed the boundaries agreed with the client.
Tools
A wide variety of security assessment tools are available to assist with penetration testing, including free-of-charge, free software, and commercial software.
1 source for this section
China
In July 2021, the Chinese government moved from a system of voluntary reporting to one of legally mandating that all white hat hackers first report any vulnerabilities to the government before taking any further steps to address the vulnerability or make it known to the public. Commentators described the change as creating a "dual purpose" in which white hat activity also serves the country's intelligence agencies.
The source notesEvidence & further reading11 sources
- White hat (computer security) — Wikipedia, revision 1375555659 Wikipedia contributors · Reference source · accessed 2026-09-22
- "What is white hat? - a definition from Whatis.com". Searchsecurity.techtarget.com. Archived from the original on 2011-02-01. Retrieved 2012-06-06. searchsecurity.techtarget.com · Reference source · link imported 2026-09-22
- Okpa, John Thompson; Ugwuoke, Christopher Uchechukwu; Ajah, Benjamin Okorie; Eshioste, Emmanuel; Igbe, Joseph Egidi; Ajor, Ogar James; Okoi, Ofem, Nnana; Eteng, Mary Juachi; Nnamani, Rebecca Ginikanwa (2022-09-05). "Cyberspace, Black-Hat Hacking and Economic Sustainability of Corporate Organizations in Cross-River State, Nigeria". SAGE Open. 12 (3) api.semanticscholar.org · Reference source · link imported 2026-09-22
- Filiol, Eric; Mercaldo, Francesco; Santone, Antonella (2021). "A Method for Automatic Penetration Testing and Mitigation: A Red Hat Approach". Procedia Computer Science. 192: 2039–2046. doi:10.1016/j.procs.2021.08.210. S2CID 244321685. api.semanticscholar.org · Reference source · link imported 2026-09-22
- Wilhelm, Thomas; Andress, Jason (2010). Ninja Hacking: Unconventional Penetration Testing Tactics and Techniques. Elsevier. pp. 26–7. ISBN 978-1-59749-589-9. books.google.com · Reference source · link imported 2026-09-22
- "What is the difference between black, white, and grey hackers". Norton.com. Norton Security. Archived from the original on 15 January 2018. Retrieved 2 October 2018. us.norton.com · Reference source · link imported 2026-09-22