
Curl ends bug-bounty program as AI-generated noise overwhelms maintainers
Open-source tool curl is scrapping its vulnerability-bounty program after a surge of low-quality, AI-generated submissions, with founder Daniel Stenberg saying the team needs to protect their mental health; the move, effective at the end of the month, aims to stop the AI “slop” from flooding reports and distracting from real issues, though critics fear it reduces essential security disclosures.