Bugcrowd policy changes to address “AI slop” submissions
Blog post from Bugcrowd
Bugcrowd is addressing the issue of "sloptimism," a trend where AI agents and automated tools are used to flood their platform with low-quality, speculative vulnerability reports lacking in validation and context. These practices, driven by both AI-assisted novice researchers and organizations improperly training AI systems, have led to a significant increase in submission volume, straining Bugcrowd's triage teams and degrading the overall quality of findings. To combat this, Bugcrowd is implementing stricter submission policies, including permanent bans for submission farming, suspensions for accounts with repeated invalid reports, and identity verification to ensure accountability. These measures aim to maintain the integrity and quality of vulnerability submissions while encouraging validated and meaningful research, and Bugcrowd is open to feedback from the community to refine these policies further.
| Trend | Post Mentions | Total Month Mentions | Posts | Companies | MoM |
|---|---|---|---|---|---|
| AI Agents | 2 | 7,403 | 1,426 | 278 | +69% |
| LLM | 1 | 7,531 | 1,250 | 268 | +26% |
| Reinforcement learning | 1 | 182 | 75 | 43 | +34% |
Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.