AI is flooding Apple with fake bug reports, and real $200K macOS exploit got lost in the noise
Serving tech enthusiasts for over 25 years.
TechSpot means tech analysis and advice you can trust.
Winners & losers: Generative AI has become a double-edged sword for security teams. The same technology that helps uncover and fix vulnerabilities faster than ever also makes it trivially easy to flood inboxes with dubious bug reports. That tension recently pushed Apple to change its bug bounty program in a way that ended up delaying disclosure of a genuinely serious exploit.
Security researchers at Bynario recently told the Financial Times that Apple's new bug bounty policy held up its efforts to report dozens of vulnerabilities. Among them was a privilege escalation exploit worth up to $200,000 on the black market.
Apple confirmed to the FT that it has since contacted Bynario, and that it capped how many reports a researcher can have open at once in response to a flood of AI-generated claims....
Copyright of this story solely belongs to techspot.com. To see the full text click HERE