Blaming a “significant rise” in AI submissions, Google has paused its open source bug bounty program until next year.
Google froze its open source bug bounty program due to a ‘significant rise’ in AI submissions
AI slop seems to be overwhelming bug bounty programs.
Anthony Ha
Publisher TechCrunch AI
Oct 4, 2026 at 8:31 PM UTC · 1 phút đọc

Key Signal
October 1 Program pause effective date
Last Updated
3 ngày trước
Last year, TechCrunch reported that cybersecurity experts were warning of that AI slop posed a serious risk to bug bounty programs. Looks like that’s the issue confronting Google’s Open Source Software Vulnerability Rewards Program, where researchers were rewarded for finding vulnerabilities in the company’s open source software.
In posts on X and the program website, Google said the bug bounty program was paused as of October 1, with a promise to provide “an update” in the first quarter of 2027. According to Tom’s Hardware, Google engineers and open source maintainers were overwhelmed by reports that were invalid or contained hallucinations.
“This pause is due to a significant rise in automated submissions, the vast majority of which are not valid,” the company said.
In the meantime, participants are encouraged to consider Google’s other bug bounty programs.
Sourced by
Originally reported by TechCrunch AI
NewsLayer coverage based on externally reported material.
The Daily Brief
The onchain economy, before your day starts.
Curated markets, onchain insights, and key headlines — delivered every weekday morning.
Weekdays · Free · ~5 minute read
0
Applause
Was this article helpful?
Article Intelligence
Topics
Sponsored
AdNewsLayer Premium
Unlock deeper intelligence.
Ad-free reading, exclusive research, and real-time onchain insights.
Go Premium



