Google pauses open source bug bounty program following surge in AI-generated submissions

Google has temporarily suspended its open source bug bounty program, citing an overwhelming influx of low-quality submissions generated by artificial intelligence. The company noted that the sheer volume of AI-generated reports has made it difficult for security teams to identify and address legitimate vulnerabilities effectively. This move highlights a growing trend where automated tools are being used to flood bug bounty platforms, potentially diluting the efficacy of crowdsourced security efforts. Google stated that the pause is necessary to refine their intake processes and ensure that their security researchers can focus on high-impact, genuine threats. The company has not provided a specific timeline for when the program will resume, but the incident underscores the broader challenges that major tech platforms face as generative AI tools become more accessible for mass-producing security reports, often referred to as 'AI slop'.
This is a summary. Read the full article at the original source:
TechCrunchRelated stories
A new research project from Northeastern University, titled 'Automatic Transmission,' explores the growing concern regarding data privacy in modern ve…
Bitdefender has introduced AI Guardian, a new macOS security tool designed to protect autonomous software agents from malicious manipulation. As AI ag…
Syncing a smartphone to a rental car's infotainment system for navigation or music may seem convenient, but it poses significant privacy risks. When u…


