Tired of ads? Enjoy an ad-free experience by signing up.
👩‍🍳 How we use AI at Tech in Asia, thoughtfully and responsibly.
🧔‍♂️ A friendly human may check it before it goes live. More news here

Google pauses open source bug bounty program over AI spam

Google has paused its Open Source Software Vulnerability Rewards Program as of October 1 after a surge in automated submissions, most of which were invalid. The company said it will provide an update in the first quarter of 2027.

In posts on X and the program website, Google said it paused the program because of “a significant rise in automated submissions, the vast majority of which are not valid.”

Google said engineers and open source maintainers were overwhelmed by invalid bug reports and reports containing hallucinations. It encouraged researchers to consider its other bug bounty programs.

The move comes as bug bounty operators respond to low-quality AI submissions.

Bugcrowd, a US-based crowdsourced cybersecurity platform, announced policy changes to address “AI slop” submissions, while a Bitdefender article described Apple’s program as drowning in similar reports.

🔗 Source: TechCrunch

Stay ahead in Asia’s tech landscape

You've reached your 2 free content limit for the month. Sign up for free to read the full story.

🏄 For casual readers / 👶 Free

Basic

US$0

Free forever

Get instant access to this article and more every month

0 premium content

Unlimited news briefs

5

5 articles

Ad-free reading experience

Just US$0 per day

⌛Sign up in 20s. No payment details needed.

📖 For learners / 👍 Starter

Lite

US$4.92/month

Billed annually at US$59/year

Get instant access to this article and more every month

4

4 premium content

Unlimited news briefs & articles

Ad-free reading experience

Just US$0.17 per day

Cancel anytime

Our subscriber community includes professionals from these companies:

Stay updated on the go with our mobile app.

Get latest insights with smoother, more personalized experience through TIA mobile app.