Back to all news
Security

Google Pauses OSS Product Bug Bounty Rewards After Surge in Invalid Automated Reports

The Hacker News·October 6, 2026·1 min read
Google Pauses OSS Product Bug Bounty Rewards After Surge in Invalid Automated Reports

Google has paused its bug bounty program for open-source software, effective October 1, meaning researchers can no longer submit vulnerability reports for projects like Go, Angular, and Protocol Buffers for rewards. Supply chain compromise reports are still accepted, and reports filed before October 1 remain under review. The move follows a surge in invalid automated submissions.

Read at The Hacker News
Daily crypto arcade

Read the news, then play it.

Chainshorts turns crypto headlines into a daily game. Catch up in 60 words, then jump into daily lucky draws for a shot at the pot.

Open ChainshortsGet it on the Solana dApp Store