Skip to main content
CyberReportedLow
2.0

Google Halts OSS Bug Bounty Intake Amid Automated Report Flood

Google has temporarily suspended new vulnerability submissions to its Open Source Software Vulnerability Reward Program (OSS VRP) due to a surge in invalid automated reports. The pause signals a shift in program operations, likely to refine triage processes, and may affect security researchers' incentives for open-source auditing. The move is a response to report quality issues, not a security incident.

SecurityWeek1 day agoUSengCredibility 25%View source

Score Breakdown

Mosaic Score2.0
Model confidence0.7
Significance0.1
Source credibility0.3
Source

Related signals

8 found