search
Google Bug Bounty program
Trends
- 1Google freezes open-source bug bounty over AI slop reports●Google freezes open-source bug bounty program amid flood of invalid AI slop submissions — product flaw submissions halted until 2027 as maintainers drown in hallucinations
Google has paused new submissions to its open-source bug bounty program until 2027, citing an overwhelming flood of low-quality, AI-generated vulnerability reports. Maintainers are reportedly drowning in thousands of invalid, hallucinated flaw claims, making it impossible to separate genuine security findings from automated noise.
- 2Google suspends open-source bug bounty over AI-generated spam●Google freezes open-source bug bounty program amid flood of invalid AI slop
Google has suspended part of its Open Source Vulnerability Reward Program, ending product vulnerability submissions as of October 1, after researchers flooded the program with invalid, AI-generated reports. Google says the volume of low-quality, machine-written bug submissions made genuine reports hard to process. Security researchers say the change reflects a wider problem, with automated AI tools producing large amounts of plausible-looking but useless vulnerability reports across the industry.
- 3Google pauses open source bug bounty amid AI-generated reports●Google pauses open source bug bounty program after rise in AI submissions
Google has suspended its open source bug bounty program following a surge in AI-generated submissions. The company says automated tools are flooding the program with low-quality vulnerability reports, overwhelming reviewers and making it harder to identify genuine security issues. The move has sparked debate among security researchers about the impact of AI on bug bounty ecosystems.
- 4Google Narrows Open Source Bug Bounty Amid Invalid AI Reports●Google Narrows Open Source Bug Bounty Amid Wave of Invalid Automated Reports
Google is scaling back its open source bug bounty program following a flood of invalid, automated vulnerability reports. The company says low-quality AI-generated submissions have overwhelmed reviewers, prompting it to restrict the types of projects and issues eligible for rewards. Security researchers are debating the move, warning it could discourage legitimate reporting while acknowledging that automated scanning tools are straining bug bounty programs across the industry.
- 5Google pauses open-source bug bounty amid AI report flood●Google pauses its open-source bug bounty program after a flood of AI slop reports
Google has paused its open-source bug bounty program after receiving a flood of low-quality, AI-generated vulnerability reports. The influx of automated or copy-paste submissions has overwhelmed reviewers and made the program impractical to run. The move highlights a growing problem for bug bounty platforms as generative AI makes it cheap to mass-produce plausible-looking but useless security reports, drowning out legitimate findings from real researchers.
- 6Google Pauses Bug Bounty Program, Citing AI Limitations●Google Is Pausing a Lucrative Bounty Hunter Program. The Reason Points to a Weakness With Using AI
Google is pausing a lucrative bug bounty program that rewarded security researchers for finding flaws. Reporting indicates the decision relates to shortcomings in how AI handles vulnerability assessment, raising questions about relying on artificial intelligence for security work. Observers are weighing what the pause means for the broader bug bounty ecosystem and for trust in AI-driven security tooling.
- 7Google pauses open source bug bounty amid flood of AI reports●Google benches open source bug bounty program following ‘significant rise’ in AI submissions
Google has suspended its open source bug bounty program, citing a significant rise in AI-generated vulnerability submissions. The company says low-quality, automated reports have made it harder to identify genuine security issues worth rewarding. Security researchers are debating the change, with many pointing to the growing noise of machine-written bug reports overwhelming bounty programs across the industry.
- 8Google Suspends Open-Source Bug Bounty Over AI Vulnerability Reports▼Google Suspends Open-Source Bug Bounty Due to AI Vulnerability Reports
Google has suspended its open-source bug bounty program, citing a flood of AI-generated vulnerability reports. The company says automated tools are producing low-quality submissions that overwhelm reviewers, making the program unsustainable in its current form. Security researchers are debating what this means for legitimate disclosure and the growing noise from AI-assisted bug hunting across the industry.
- 9
Google has paused its open source bug bounty program, citing a surge of AI-generated vulnerability reports. The company says the flood of low-quality automated submissions is making it difficult to identify genuine security flaws worth rewarding. The move has drawn attention across the security community, which has been grappling with a wave of automated, often inaccurate bug reports produced with AI tools.