7/24/2025, 3:00:00 PM | TechCrunch | news
AI slop and fake reports are coming for your bug bounty programs
The article discusses the growing problem of AI-generated 'slop' in cybersecurity bug bounty programs, where large language models produce fake vulnerability reports that appear legitimate but are technically invalid. Examples include fake reports submitted to Curl and Open Collective, with companies like HackerOne and Mozilla facing increased spam. Solutions like HackerOne's Hai Triage system, which combines AI and human analysis, are being developed to address the issue.