By This Hour AI Desk

Google has reportedly put its Open Source Software Vulnerability Rewards Program on hold after a sharp increase in automated vulnerability reports linked to AI use, a disruption that reaches beyond one company’s security workflow. Bug bounty programs depend on people being able to distinguish a credible report from a mistaken or speculative one. When that first review is swamped, the cost is not merely administrative: engineers and open-source maintainers can lose time that might otherwise go to fixing real flaws.

The pause took effect on October 1, 2026, and Google said it expected to provide an update in the first quarter of 2027. The company attributed the decision to an increase in automated submissions and said that the overwhelming majority were not valid. Participants were directed toward Google’s other bug bounty programs during the suspension, according to the available report.

The account leaves important questions unanswered, including how many reports arrived, how quickly the volume changed, which tools generated them, and whether any valid findings were delayed. Yet the stated rationale identifies a concrete operational problem for security teams: generative systems can make it easier to produce reports at scale, while verification still requires technical judgment and careful reproduction.

A review process built around proof is under strain

In a vulnerability rewards program, a submission ordinarily has to do more than name a possible weakness. It must give maintainers enough information to determine whether the issue exists, understand the affected code or component, assess whether it has security consequences and decide how to address it. A report that cannot be reproduced, rests on an incorrect reading of the software, or invents a relationship between components can consume substantial attention before it is rejected.

That is the pressure Google appears to have described. Its program offered rewards to researchers who found vulnerabilities in the company’s open-source software. The reported surge was in automated submissions rather than necessarily in genuine discoveries. Google’s position, as relayed in the source material, was not that every automated report lacks value. Its narrower claim was that the vast majority of the incoming automated material was invalid, making the existing stream difficult to manage.

The distinction matters. Automation has long been part of software-security work, and automated tools can identify patterns that warrant human investigation. The problem alleged here is volume combined with poor reliability. An automated system can draft a technically plausible-looking description of a defect without establishing that the defect is real. If a submitter sends such output without rigorous testing, the burden shifts to the people maintaining the project.

TechCrunch, citing an account from Tom’s Hardware, said Google engineers and open-source maintainers had been overwhelmed by reports that were either invalid or contained hallucinated claims. In this setting, a hallucinated claim would mean an assertion about code, behavior or a vulnerability that does not hold up when checked. That can be harder to screen than an obviously irrelevant report because it may use appropriate technical language while failing on the underlying facts.

The suspension narrows one route for open-source disclosures

Google’s decision is significant because the affected initiative concerns open-source software. Open-source projects often involve overlapping responsibilities: a company may sponsor, use or maintain code, while contributors and maintainers may be distributed across organizations and locations. A vulnerability report can therefore require coordination as well as technical review. Large quantities of unusable submissions may impose costs on people who do not have a dedicated team available to triage every claim.

A pause does not establish that the underlying software is less secure, nor does it show that researchers have stopped finding legitimate bugs. It does mean that the particular reward channel is not operating as it had been. For researchers, that removes a defined avenue for submitting findings and seeking payment through this program. For maintainers, the halt may offer temporary relief from the reported influx, but it may also alter how genuine reports reach the people responsible for the code.

Google advised participants to consider its other bug bounty programs while the open-source program is paused. The available account does not specify whether those programs use different intake rules, serve different products, or have protections designed for the type of automated traffic that prompted this decision. It also does not say whether a valid issue involving open-source software could be handled through another Google program. Readers should not infer that the alternatives are interchangeable.

The timing is also limited in its precision. Google said it would provide an update in the first quarter of 2027, rather than promising that the program would reopen then. An update could describe new submission requirements, revised triage arrangements, a longer suspension, or a return to normal operations. The report provides no commitment on any of those outcomes.

AI changes the economics of submitting, not the need for verification

The reported pause illustrates a basic asymmetry in security reporting. Producing a large number of possible bug claims can become cheaper when tools assist with reading code, generating explanations or drafting reproduction steps. Checking each claim does not become equally cheap simply because the claim was generated quickly. A reviewer must still test the alleged behavior against the actual software and distinguish a genuine vulnerability from a misunderstanding, a duplicate or an unsupported assertion.

That asymmetry can reshape incentives. A person using automation may be able to submit more reports with less work per report. The receiving program, however, faces the risk that its evaluators spend their time disproving claims rather than investigating the strongest leads. The source material does not identify the submitters, their methods or their motives. It would be unsupported to assume that all automated submissions were intentionally low quality, or that they all came from the same type of tool.

Nor should the episode be read as a finding that AI-assisted security research is inherently unreliable. The source material supports a report of an intake problem at one Google program, not a broad measurement of AI’s performance in vulnerability discovery. Tools can assist researchers, but assistance is not a substitute for validating a report before sending it. The relevant divide is between a claim that has been independently tested and one that only appears persuasive on paper.

For program operators, the reported experience may sharpen attention on how submissions are screened. The available material does not say what changes Google is considering, and it would be premature to prescribe or attribute specific controls to the company. Still, the suspension makes clear that a rewards program’s capacity is not infinite. Its usefulness depends not only on attracting reports, but also on preserving enough reviewer time to evaluate them fairly and promptly.

Key details behind Google’s decision have not been disclosed

Several facts needed to gauge the scale of the disruption are absent from the available reporting. There is no number for the automated reports, no comparison with earlier submission volumes, no account of the number of valid findings mixed into the surge and no indication of whether any reports were accepted before the program stopped taking them. There is also no information about rewards that may have been pending, or about the effects on disclosure timelines for vulnerabilities already under review.

The report does not identify the specific open-source projects most affected. That prevents a more precise assessment of who bore the workload and what types of security claims were involved. It is likewise unclear whether the issue was confined to one submission channel or reflected a broader pattern across Google’s security programs. Google’s invitation to use other bounty programs indicates that those programs remained available, but does not by itself establish their exposure to similar automated traffic.

The reported decision nevertheless places an immediate limit on a program designed to encourage outside scrutiny of open-source code. A rewards program can create a structured relationship between researchers and maintainers: researchers have a route to raise concerns, while the sponsor can prioritize reports under defined procedures. Suspending that system in response to invalid volume shows how poor-quality automation can interfere with a process intended to surface useful security information.

Google’s next public update, expected in the first quarter of 2027, will be consequential chiefly if it clarifies the program’s status and the conditions for renewed participation. Until then, the strongest supported conclusion is a narrow one: Google reportedly paused this particular open-source vulnerability rewards initiative because it said automated submissions had increased substantially and most were not valid.

This report has not been independently corroborated. It is based on a single secondary-source account and the claims available from it; the underlying volume of submissions, the technical characteristics of the disputed reports and Google’s eventual response remain unverified in the material reviewed.

For further context on this subject, see Tesla’s Third-Quarter Vehicle Sales Reportedly Fell From a Year Earlier.

Reporting notes

What is confirmed: Google said it would provide an update in the first quarter of 2027. The available account does not establish the volume or origin of the submissions.

Why this matters: Low-quality automated reports can consume the review capacity needed to assess genuine security vulnerabilities.

What remains unclear: Report totals, affected projects, valid-report delays and the conditions for resuming the program have not been disclosed in the supplied material. This report is based on one source and has not been independently corroborated.

Sources