Google froze its open source bug bounty program due to a ‘significant rise’ in AI submissions

This post was originally published on this site.

image

Blaming a “significant rise” in AI submissions, Google has paused its open source bug bounty program until next year.

Last year, TechCrunch reported that cybersecurity experts were warning of that AI slop posed a serious risk to bug bounty programs. Looks like that’s the issue confronting Google’s Open Source Software Vulnerability Rewards Program, where researchers were rewarded for finding vulnerabilities in the company’s open source software.

In posts on X and the program website, Google said the bug bounty program was paused as of October 1, with a promise to provide “an update” in the first quarter of 2027. According to Tom’s Hardware, Google engineers and open source maintainers were overwhelmed by reports that were invalid or contained hallucinations.

“This pause is due to a significant rise in automated submissions, the vast majority of which are not valid,” the company said.

In the meantime, participants are encouraged to consider Google’s other bug bounty programs.

Hot this week

US removes all bombers from RAF Fairford base

A statement says all bombers deployed to RAF Fairford have been "re-deployed to their home stations" in the US.

Humphries wins Grand Prix to end barren spell

Humphries wins Grand Prix to end barren spellByCallum MatthewsBBC...

Humphries wins Grand Prix to end barren spell

World number two Luke Humphries ends a 16-month wait for a PDC major trophy with a stunning 6-4 victory over Gerwyn Price in the World Grand Prix final.

Topics

spot_img

Related Articles

Popular Categories

spot_imgspot_img