Switch language한국어
Back to the list

Nextcloud ends bug bounty program due to too many low-quality reports

TL;DR AI

Key summary

2 min read
  1. Nextcloud is ending cash rewards in its HackerOne bug bounty program.

  2. The company says it has been flooded with generic, low-quality, and often AI-generated security reports.

  3. Valid vulnerability disclosures will still be accepted, but no rewards will be paid for new submissions after April 22.

  4. The move highlights how AI-generated low-signal reports can overwhelm vulnerability disclosure programs.

Read the original