Apple imposes limits on the number of submissions a party can make to its bug bounty program.
The Financial Times confirmed that the company has made adjustments in response to an impressive number of AI-driven discoveries. Although AI can be used to find and identify programming issues, having so many submissions from these sources overwhelmed review teams and potentially drowned out the bugs discovered by human security researchers. Apple said the changes include “a cap and a 30-day cooling-off period for submissions through its internal security portal.” Any users wishing to exceed the cap will need to submit a special request to do so.
Apple isn’t the only company revising its open calls for bug hunters in response to the proliferation of AI tools. Google also overhauled its program earlier this year, emphasizing that hard-to-fix problems bring in more money than small bugs that AI can easily identify.
