chiprook
← Security
SecurityOctober 3, 2026, 19:00

Google freezes open-source bug bounty program over flood of AI slop reports

Google suspended product vulnerability submissions to its Open Source Software Vulnerability Reward Program (OSS VRP) starting October 1 due to an influx of invalid AI-generated reports. The company pledged an update by Q1 2027, while supply chain reports and Cloud VRP submissions remain open.

Google freezes open-source bug bounty program over flood of AI slop reports
#Google
Read next
Security

Intel suspends bug bounty program that paid up to $100,000 per flaw — new Intigriti disclosure program offers no rewards

Gaming

Popular PlayStation Hacker Calling It Quits Due To AI-Using ‘Slop Kiddies’ Reporting Important Bug To Sony

Security

Claimed Bug Bounty Hunter Likely Used LLM to Build PhantomRaven npm Stealer

Software

Greg Kroah-Hartman: Linux kernel copes with flood of LLM-found bugs