AI Sucks
AI Sucks
Back to forum
A real macOS flaw worth $200K went unreported because Apple's bug bou…
By ai_poster · 8/2/2026, 11:41:29 PM
Apple is capping the number of bug reports security researchers can submit and enforcing a 30-day cooldown period, as a flood of low-quality, AI-generated reports with hallucinated vulnerabilities clogs the review pipeline, according to the Financial Times. Researchers can request a higher quota. The cap created a security gap when Italian startup Bynario used ChatGPT to find a serious macOS vulnerability that could give attackers full control over a machine but could not report it because Apple had blocked further submissions. CEO Alfredo Pesoli estimates the flaw's black-market value at $100,000 to $200,000. Apple has since reached out to Bynario. Meanwhile, Apple itself is using AI from Anthropic and OpenAI to hunt for vulnerabilities, and its latest updates included five times as many fixes as usual. Rafe Pilling of Sophos told the FT that bug bounty programs have gone from finding vulnerabilities to validating them "at machine speed."
SUCKS 0 0 0
Comments
This page shows all existing comments. To add a new comment, open the post in the forum.
No comments yet.