Overrun with AI slop, cURL scraps bug bounties to ensure "intact mental health"
The onslaught includes LLMs finding bogus vulnerabilities and code that won't compile.
https://arstechnica.com/security/2026/01/overrun-with-ai-slop-curl-scraps-bug-bounties-to-ensure-intact-mental-health/?utm_brand=arstechnica&utm_social-type=owned&utm_source=mastodon&utm_medium=social
Post
@arstechnica that could plausibly be made out to be #fraud?
The owner of the #confabulation machine generating false claims in an effort to obtain money from cURL.
Given knowledge of the owner it doesn't even look hard to prove.
IANAL and this is not legal advice.
@arstechnica in full awareness that it's a very far from optimal alternative, users who want to submit for bug bounties should perhaps have to put up a deposit, refundable upon determination of good faith submission.
@arstechnica matter of time before this happens to the Linux kernel (Linus already approved & is a proponent of AI in the code)