Bug bounty programs are lousy with slop. AI slop. Daniel Stenberg, lead developer and founder of cURL, the popular, open source internet file transfer protocol, faced so many AI-generated submissions to cURL’s bug bounty program that he had to shut it down.
Stenberg explains the closure this way to The New Stack: “It is our attempt to remove the incentives for submitting made-up lies. The submission quality has plummeted; not only are lots of the submissions plain slop, but the ones that aren’t obviously AI also seem to a high degree be worse (possibly because they, too, are AI but just hidden better). We need to do something to prevent us from drowning.” Read our full interview with Stenberg here.
As AI-generated content increases, it’s not just ghastly images of people with seven fingers or illegible writing on signs. The slop also extends to fraudulent bug bounty attempts via generative AI.
Unlike a lot of the posts you’ll read on LinkedIn, we promise our LinkedIn content isn’t the result of a ChatGPT prompt. So, join us on LinkedIn for human-made daily insights. And find us on YouTube for video versions of our podcast episodes.
Speaking of podcast episodes, we’re still accepting podcast guest submissions for 2026. If you’d like to appear on a TNS podcast and reach a wide range of developers, engineers, and technologists, don’t hesitate to get in touch via our Podcast Guest Form.
— Nick Lucchesi, editor-in-chief, TNS