search
Open Source Vulnerability Reward Program
Trends
- 1Google freezes open-source bug bounty amid AI-generated junk reports●Google freezes open-source bug bounty program amid flood of invalid AI slop
Google has suspended part of its Open Source Vulnerability Reward Program after a surge of low-quality, apparently AI-generated bug reports overwhelmed reviewers. From October 1, the program will no longer accept submissions for product vulnerabilities, with Google citing an influx of invalid reports as the reason. Commenters point to the episode as a side effect of automated AI tools mass-filing security bugs in hopes of bounties.