PulseAugur
EN
LIVE 23:40:42
中文(ZH) AI批量轰炸苹果bug赏金计划,审核团队已下线

AI floods Apple's bug bounty program, prompting new limits and acknowledgments

Apple has implemented a 30-day cool-down period and submission limits for its bug bounty program due to an influx of AI-generated vulnerability reports. While AI tools like Claude's Mythos Preview have enabled researchers to discover complex exploits, including bypassing Apple's Memory Integrity Enforcement, they have also flooded the system with false positives. This has overwhelmed Apple's security team, mirroring similar issues faced by other tech companies like Google and GitHub, who have also adjusted their vulnerability disclosure policies. Despite these challenges, Apple has begun acknowledging AI tools in its security updates, with recent macOS releases crediting models from Anthropic, OpenAI, and NVIDIA, indicating that AI is accelerating the pace of security patching. AI

IMPACT AI is accelerating vulnerability discovery and patching cycles, but also creating noise and overwhelming security teams.

RANK_REASON Significant industry response to AI's impact on vulnerability disclosure and security patching. [lever_c_demoted from significant: ic=1 ai=1.0]

Read on 量子位 (QbitAI) →

AI-generated summary · Google Gemini · from 1 sources. How we write summaries →

AI floods Apple's bug bounty program, prompting new limits and acknowledgments

COVERAGE [1]

  1. 量子位 (QbitAI) TIER_1 中文(ZH) · 程浅 ·

    AI bombards Apple bug bounty program in batches, review team goes offline