Security · 1h ago
GitHub slashes bug bounty payouts, blames AI report flood
GitHub is cutting public bug bounty rewards, citing an overwhelming volume of AI-generated security reports that have buried its team. The platform will also restrict first-time researchers and reserve top payouts for a curated group of proven hunters. The changes aim to reduce noise but risk alienating the broader security community.
Meridian48 take
GitHub's move signals a growing tension between leveraging AI for security research and managing the flood of low-quality automated reports it produces.
Read the full reporting
GitHub slashes public bug bounty payouts as AI report flood buries its security team →
The Register
bug-bountyai-generated-reports