HackerFeeds

CyberSecurity News

Google Pauses OSS Product Bug Bounty Rewards After Surge in Invalid Automated Reports

The Hacker News
· October 6, 2026

AI summary

Google has halted its bug bounty program for open-source software products, effective October 1, due to a surge in invalid automated reports. As a result, researchers can no longer submit vulnerability reports for projects like Go, Angular, and Protocol Buffers in exchange for a reward. However, reports related to supply chain compromises are still being accepted. Additionally, any reports filed prior to October 1 will still be processed. This change affects the submission of security flaws in the code of these open-source projects. The pause does not impact the handling of previously submitted reports.

Read the full article at The Hacker Newsthehackernews.com/2026/10/google-pauses-oss-product-bug-bounty.html

This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.