MikeTrendsTrends right now

search

OSS bug bounty program

Trends

  1. 1

    Google has suspended its open-source bug bounty program, citing a flood of low-quality vulnerability reports generated with the help of AI tools. The company says the influx of automated, often duplicate or trivial submissions has overwhelmed reviewers, making it hard to identify genuine security issues. The move has sparked debate among security researchers about AI's growing impact on vulnerability disclosure.

  2. 2
    Google ends OSS bug bounty program after AI-generated fake reports▼Discover why the Google OSS VRP is ending. An overwhelming flood of AI-generated fake vulnerability reports forced GooglMmastodonTechnologyAI22 d ago

    Google is shutting down its OSS Vulnerability Reward Program after being overwhelmed by AI-generated fake vulnerability reports. The flood of low-quality, artificial intelligence-written submissions reportedly made it impossible to manage the bug bounty scheme effectively. Security researchers are debating the episode as a sign that AI is now actively undermining the economics of vulnerability research and coordinated disclosure.

  3. 3
    Google Pauses OSS Vulnerability Reward Program Over AI Reports●Google Pauses OSS VRP Vulnerability Search Over AI Reports✉newsTechnologySoftware1 d ago

    Google has paused part of its Open Source Vulnerability Reward Program (OSS VRP), halting vulnerability search activities after a wave of AI-generated reports. The company is said to be dealing with a flood of low-quality or automated findings produced by artificial intelligence tools, prompting a temporary stop while it reassesses how such submissions are handled.