A disturbing trend is emerging in the world of cybersecurity as artificial intelligence submissions have skyrocketed amid a recent freeze on Google's bug bounty program. The move, which began last month, effectively shut down thousands of potential bug hunters and researchers from accessing popular platforms like HackerOne and Bugcrowd. This sudden halt has left many feeling frustrated and uncertain about how to find the resources they need to help protect online systems.
Google, a leader in AI research and development, had been offering a substantial bug bounty program that rewarded individuals for discovering vulnerabilities in its products and services. The program was seen as a key way to encourage researchers and developers to identify potential security flaws before malicious actors could exploit them. However, with the freeze, many of these submissions have ceased, leaving Google's team scrambling to find new ways to engage with bug hunters.
As a result, some experts are warning that AI slop – or unverified, low-quality bug reports from AI systems – is on the rise. This can be detrimental to both researchers and organizations relying on these submissions to identify potential security issues. With many top tech companies offering their own bug bounty programs, it's becoming increasingly difficult for researchers and developers to find the resources they need.