Skip to content

Topic

Bug Bounty Programs

Programs letting companies pay independent researchers for responsibly reporting software vulnerabilities, often run via platforms like HackerOne or Bugcrowd.

Current stories

buildConfirmed14 publishers

Google halts product reports to its open-source bug bounty after a flood of invalid AI submissions

Google stopped taking product vulnerability reports for its open-source bug bounty on October 1 after a flood of invalid AI-generated submissions. Any team that takes outside security reports faces the same imbalance, with reports now cheap to write and as costly as ever to check.

Perspective Coverage

15 publishers
Builder
Builder 41%
Operator
Operator 50%
Investor
Investor 9%

Reality

Evidence76
Adoption55
Hype gap+20
Incentives35
Confidence72
securityConfirmed6 publishers

Hacktron chained a Claude-written libheif exploit into OpenAI's internal repositories

The libheif bug was fixed upstream a year earlier without a security label or a CVE, so a Discourse image check that ignored HEIC left it reachable, and forum sign-in tokens carried full API access to the accounts behind them.

Perspective Coverage

6 publishers
Builder
Builder 35%
Operator
Operator 55%
Investor
Investor 10%

Reality

Evidence70
Adoption
Insufficient
Hype gap+20
Incentives55
Confidence66
buildOne report1 publisher

Meta adds a clearer Muse warning for a flaw that could open a user's email-holding VM

Meta is adding a clearer warning to Muse, downloaded about 2.8 million times, after a flaw could have opened a user's cloud VM to an attacker. That VM holds the user's email and files, and the warning is the only response the reports describe.

Publishers:ksl.commalaysia.news.yahoo.com

Reality

Evidence35
Adoption50
Hype gap0
Incentives
Insufficient
Confidence45
buildConfirmed2 publishers

Meta's Muse agent put its own 6.8GB Linux image, SSH key files included, in a user's Google Drive

Meta's Muse agent wrote 6.8GB of its own Linux environment, SSH key files included, to Mouse founder Peter James's Google Drive, he says. James has not tested the keys, yet the export shows anything baked into an agent's image can leave through a storage connector the user linked.

Publishers:t.signalplus.comtokenpost.com

Reality

Evidence35
Adoption
Insufficient
Hype gap+25
Incentives
Insufficient
Confidence40
productConfirmed5 publishers

A forum image upload carried Hacktron's researchers into OpenAI's internal GitHub

The image parsing bug had been fixed upstream about a year earlier, and the decision not to ship that fix belonged to Discourse. OpenAI's forum shared single sign-on with internal systems, so a forum account became GitHub access.

Perspective Coverage

9 publishers
Builder
Builder 35%
Operator
Operator 39%
Investor
Investor 26%

Reality

Evidence70
Adoption63
Hype gap+28
Incentives60
Confidence62
securityConfirmed3 publishers

Weizman's BragJack hijacks five Chromium AI assistants from a single installed extension

Gal Weizman showed that one malicious extension can take over the AI agents in Chrome, Comet, Edge, Neon and Claude in Chrome, with bounties from all five vendors to show for it. Installation is the only precondition.

Publishers:bleepingcomputer.comforever.securitythehackernews.com

Perspective Coverage

3 publishers
Builder
Builder 54%
Operator
Operator 38%
Investor
Investor 8%

Reality

Evidence68
Adoption
Insufficient
Hype gap+30
Incentives62
Confidence64

Earlier coverage

  1. One extension commanded the AI in five Chromium browsers by seizing the page each one trusts

    Security · September 16, 2026 · One report1 publisher

  2. LayerZero's STG conversion window shuts on December 15 at a rate fixed in 2025

    Invest · September 15, 2026 · One report1 publisher

  3. Vercel's $1m sandbox escape challenge turned up two unfixed Linux kernel networking defects

    Security · September 15, 2026 · One report1 publisher

  4. Chrome adds V8's in-process sandbox to its bug bounty before calling it a strong boundary

    Build · September 11, 2026 · One report1 publisher

  5. Meta prices a single-user prompt injection against Muse at $130,000

    Science · September 10, 2026 · Confirmed2 publishers

  6. Google patches a V8 type confusion already being exploited against Chrome users

    Security · September 4, 2026 · Confirmed9 publishers

  7. Apple's report cap blocked a seven-person firm with a patched Mac bug to its name

    Product · September 5, 2026 · One report1 publisher

  8. GitLab ships five security fixes and keeps the details sealed until October

    Build · August 23, 2026 · One report1 publisher