Apple Inc.Apple limits bug submissions due to AI-generated reports, potentially slowing legitimate security research.

Apple has introduced limits on how many security bugs outside researchers can submit at one time after a surge of AI-generated reports overwhelmed its review process. The new limits, implemented in June, restrict researchers to a limited number of open submissions before they must request a higher quota, while Apple uses AI internally to help prioritize incoming reports. The change came to light after Italian cybersecurity startup Bynario said it used OpenAI's ChatGPT to identify more than 50 potential vulnerabilities in the latest version of macOS within three weeks, including a potentially serious privilege-escalation exploit, but was temporarily unable to submit additional reports because it had reached Apple's reporting limit. Apple said it is now reviewing Bynario's findings and emphasized that researchers can request higher submission limits to ensure significant vulnerabilities reach its security teams. The development highlights a broader industry challenge as AI accelerates both the discovery of legitimate software flaws and the generation of large volumes of inaccurate or low-quality reports, forcing companies to build new systems to filter machine-generated alerts.
Apple Inc.Apple limits bug submissions due to AI-generated reports, potentially slowing legitimate security research.
Bynario used ChatGPT to find vulnerabilities but faced submission limits; outcome unclear.