search
Google open source bug bounty program
Trends
- 1Google freezes open-source bug bounty amid flood of AI-generated junk reports●Google freezes open-source bug bounty program amid flood of invalid AI slop
Google has suspended part of its open-source vulnerability reward program, ending product vulnerability submissions as of October 1, after being inundated with invalid reports generated with AI tools. The company says the surge of low-quality, machine-written submissions is overwhelming reviewers, prompting the freeze on that category while other bounty tracks continue.
- 2Google Pauses Open-Source Bug Bounty Program▼Google Pauses Open-Source Bug Bounty Program Amid AI Slop
Google has paused its bug bounty program covering open-source projects, citing a flood of low-quality, AI-generated vulnerability reports that are overwhelming the review process. Security researchers say the influx of generic, machine-written submissions is making it harder to find genuine flaws, and the move has sparked debate about how AI-generated content is straining vulnerability disclosure programs.