search
bug bounty programs
Trends
- 1Google freezes open-source bug bounty over AI slop reportsβGoogle freezes open-source bug bounty program amid flood of invalid AI slop submissions β product flaw submissions halted until 2027 as maintainers drown in hallucinations
Google has paused new submissions to its open-source bug bounty program until 2027, citing an overwhelming flood of low-quality, AI-generated vulnerability reports. Maintainers are reportedly drowning in thousands of invalid, hallucinated flaw claims, making it impossible to separate genuine security findings from automated noise.
- 2Google suspends open-source bug bounty over AI-generated spamβGoogle freezes open-source bug bounty program amid flood of invalid AI slop
Google has suspended part of its Open Source Vulnerability Reward Program, ending product vulnerability submissions as of October 1, after researchers flooded the program with invalid, AI-generated reports. Google says the volume of low-quality, machine-written bug submissions made genuine reports hard to process. Security researchers say the change reflects a wider problem, with automated AI tools producing large amounts of plausible-looking but useless vulnerability reports across the industry.
- 3Google pauses open source bug bounty amid flood of AI reportsβGoogle pauses open source bug bounty program after rise in AI submissions
Google has temporarily paused its open source bug bounty program, which paid researchers for finding vulnerabilities in open source projects, after a surge in submissions generated by artificial intelligence tools. The company says many AI-written reports are low quality and waste reviewers' time. Security researchers are debating how bounty programs should handle automated submissions and verify genuine human findings.
- 4Google Narrows Open Source Bug Bounty Amid Invalid AI ReportsβGoogle Narrows Open Source Bug Bounty Amid Wave of Invalid Automated Reports
Google is scaling back its open source bug bounty program following a flood of invalid, automated vulnerability reports. The company says low-quality AI-generated submissions have overwhelmed reviewers, prompting it to restrict the types of projects and issues eligible for rewards. Security researchers are debating the move, warning it could discourage legitimate reporting while acknowledging that automated scanning tools are straining bug bounty programs across the industry.
- 5Google pauses bug bounty program over flood of AI-written reportsβGoogle pauses its open-source bug bounty program after a flood of AI slop reports
Google has paused its open-source bug bounty program after being overwhelmed by a wave of low-quality, AI-generated vulnerability reports. The company says the influx of automated, low-effort submissions is drowning out genuine findings and wasting researchers' time, prompting a suspension while it reassesses how the program operates.
- 6Google Pauses Bug Bounty Program, Citing AI LimitationsβGoogle Is Pausing a Lucrative Bounty Hunter Program. The Reason Points to a Weakness With Using AI
Google is pausing a lucrative bug bounty program that rewarded security researchers for finding flaws. Reporting indicates the decision relates to shortcomings in how AI handles vulnerability assessment, raising questions about relying on artificial intelligence for security work. Observers are weighing what the pause means for the broader bug bounty ecosystem and for trust in AI-driven security tooling.
- 7Google Suspends Open-Source Bug Bounty Over AI Vulnerability ReportsβGoogle Suspends Open-Source Bug Bounty Due to AI Vulnerability Reports
Google has suspended its open-source bug bounty program, citing a flood of AI-generated vulnerability reports. The company says automated tools are producing low-quality submissions that overwhelm reviewers, making the program unsustainable in its current form. Security researchers are debating what this means for legitimate disclosure and the growing noise from AI-assisted bug hunting across the industry.
- 8
Google has paused its open source bug bounty program, citing a surge of AI-generated vulnerability reports. The company says the flood of low-quality automated submissions is making it difficult to identify genuine security flaws worth rewarding. The move has drawn attention across the security community, which has been grappling with a wave of automated, often inaccurate bug reports produced with AI tools.
- 9Google pauses open source bug bounty amid flood of AI reportsβGoogle benches open source bug bounty program following βsignificant riseβ in AI submissions
Google has suspended its open source bug bounty program, citing a significant rise in AI-generated vulnerability submissions. The company says low-quality, automated reports have made it harder to identify genuine security issues worth rewarding. Security researchers are debating the change, with many pointing to the growing noise of machine-written bug reports overwhelming bounty programs across the industry.