Google Pauses Open Source Bug Bounty Program Following Influx of AI-Generated Vulnerability Submissions

Google has officially announced a temporary suspension of its Open Source Software Vulnerability Rewards Program (OSS VRP), attributing the drastic measure to an unprecedented surge in automated, invalid, and low-quality vulnerability reports largely generated by artificial intelligence tools. The pause, which took effect on October 1, highlights a rapidly growing systemic crisis across the cybersecurity industry: the weaponization of generative AI to flood security triage teams with digital noise, commonly referred to in the tech community as "AI slop."
The decision marks a significant setback for crowdsourced vulnerability discovery, a cornerstone of modern software security. For years, major technology enterprises have relied on bug bounty programs to harness the collective expertise of global security researchers, offering financial incentives for identifying and responsibly disclosing security flaws before malicious actors can exploit them. However, the proliferation of large language models (LLMs) has fundamentally disrupted this economic and operational model, transforming what was once a collaborative security pipeline into an exhausting vetting challenge for internal engineering teams.
The Anatomy of the Crisis: Automated Submissions and AI Hallucinations
According to statements published by Google on social media platform X and updated documentation on the official Bug Hunters portal, the company was forced to halt the program due to a massive, unsustainable volume of automated submissions. The vast majority of these reports lacked technical validity, often containing hallucinated vulnerabilities, non-existent code paths, or generic boilerplate text generated automatically by individuals attempting to secure quick bounty payouts without conducting genuine security research.
Google engineers, alongside open-source software maintainers who voluntarily or professionally oversee critical foundational repositories, found themselves completely overwhelmed. Triage teams spent an exorbitant number of man-hours manually parsing through thousands of low-quality alerts to separate actual security threats from fabricated or misunderstood compiler warnings and syntax anomalies.
This operational bottleneck not only delayed the remediation of legitimate security issues but also demoralized the engineers tasked with reviewing submissions. Rather than focusing on complex threat modeling, secure architecture design, and genuine zero-day discovery, security professionals were reduced to filtering out automated noise produced indiscriminately by prompt-engineered scripts.
Chronology of the Disruption
The roots of this suspension trace back to a broader industry trend that has been developing over the past several years. Cybersecurity analysts and open-source maintainers began sounding alarm bells regarding the commercial availability of generative AI tools and their application in security research.
Last year, industry reports highlighted that artificial intelligence was beginning to degrade the quality of submissions across multiple bug bounty platforms. Bad actors and opportunistic individuals discovered that they could leverage LLMs to rapidly scan open-source codebases, generate hundreds of speculative vulnerability descriptions, and submit them en masse to various vendor programs.
As the volume of these low-effort submissions scaled exponentially through early and mid-2024, vulnerability coordinators at companies like Google struggled to implement effective rate-limiting or automated filtering mechanisms that did not simultaneously block legitimate researchers. By the third quarter of 2025, the strain on the OSS VRP infrastructure reached a critical threshold.
Recognizing that the incoming submission stream was dominated by invalid AI-generated reports rather than actionable human intelligence, Google leadership made the determination to pull the plug. As of October 1, all product vulnerability submissions for the OSS VRP were officially frozen. In its public notices, the company committed to reassessing the program and providing a comprehensive operational update during the first quarter of 2027, giving the organization ample time to overhaul its submission guidelines, filtering architecture, and validation workflows.
Broader Industry Implications and the Future of Bug Bounties
Google’s decision to suspend its open-source bug bounty program is not an isolated incident, but rather a bellwether for the entire cybersecurity sector. As generative artificial intelligence tools become more accessible, sophisticated, and capable of producing human-sounding technical prose, the economics of crowdsourced security are facing an existential test.
Bug bounty programs historically operated on a high-trust, high-reward paradigm. Platforms acted as intermediaries, or companies managed their own portals, under the assumption that submitters possessed specialized domain knowledge and had invested considerable time and effort into manual code review, fuzzing, or penetration testing. The barrier to entry was defined by human capability.
The integration of AI has effectively lowered that barrier to zero. Individuals with little to no foundational understanding of memory corruption, injection flaws, or cryptographic protocols can now deploy scripts that feed entire repositories into LLMs, prompt them to output vulnerability reports, and blast those reports across dozens of corporate bug bounty channels simultaneously.
This phenomenon threatens to inflict severe collateral damage on the cybersecurity ecosystem in several ways:
- Burnout Among Maintainers: Open-source software is notoriously under-resourced, often maintained by small communities or individual developers working on a voluntary basis. Flooding these maintainers with hundreds of fake or hallucinated security alerts diverts critical attention away from actual software maintenance and feature development, potentially driving key contributors away from open-source projects.
- Erosion of Trust: As platforms implement stricter penalties, rate limits, or automated rejections, genuine security researchers may find themselves caught in the crossfire. If legitimate submissions are incorrectly flagged as AI-generated spam or if the review process grinds to a halt, top-tier researchers may take their findings elsewhere, reducing the overall security posture of major open-source ecosystems.
- Economic Inefficiency: The administrative cost of managing a bug bounty program scales directly with the volume of incoming reports. When a high percentage of those reports are garbage, the cost of human triage skyrockets, rendering the program economically unviable for the host organization until defensive filtering mechanisms can be established.
Corporate Response and Alternative Channels
While the Open Source Software Vulnerability Rewards Program is currently on hiatus, Google has emphasized that its commitment to software security remains steadfast. In its communications, the company directed security researchers and participants to explore its various other specialized bug bounty programs, which may feature different submission requirements, stricter verification gates, or narrower scopes that are less susceptible to mass automated abuse.
Industry observers anticipate that when Google eventually resurrects the OSS VRP in 2027, the program will look radically different from its previous iteration. To survive the era of generative AI, future bug bounty frameworks will likely incorporate advanced machine learning classifiers designed specifically to detect and reject synthetic reports, implement stricter identity verification and reputation systems for submitters, and potentially introduce financial deterrents or deposit requirements for submissions that fail basic validation checks.
Furthermore, the incident underscores the urgent need for collaborative standards across the technology sector regarding how security platforms ingest and triage vulnerability reports. As adversaries and opportunistic actors continue to weaponize automation against defenders, the security community must adapt by building defensive tooling that matches the scale and speed of modern AI generation.
For now, the suspension serves as a stark reminder that while artificial intelligence offers powerful capabilities for defensive code analysis and threat intelligence, it simultaneously introduces profound operational vulnerabilities that require active mitigation. Google’s pause on its open-source bug bounty program closes a chapter on traditional vulnerability rewarding and opens a difficult transitional period where the industry must learn to filter out the digital noise before meaningful security collaboration can resume.







