Home / Incidents / STUPID-2026-0037
STUPID-2026-00372.5lowMultiple LlmsVerified

AI 'slop' vulnerability reports flooded curl until it killed its bug bounty

2.5/10
Severity
Hallucination
Failure Mode
Reproducible
No
Date
January 31, 2026

Expected Behavior

Only report real, reproducible vulnerabilities in code that actually exists.

What Actually Happened

LLMs produced long, confident, fabricated vulnerability reports — one 'HTTP/3 stream dependency cycle exploit' came complete with GDB sessions and register dumps referencing a function that does not exist in curl. Roughly one in five 2025 submissions was outright AI slop.

Damage Assessment

The confirmed-vulnerability rate fell from above 15% to below 5%. Each bogus report still ate hours from curl's seven-person volunteer security team. Maintainer Daniel Stenberg ended the curl bug bounty entirely at the end of January 2026 to remove the payout incentive.

Full Report

curl's founder Daniel Stenberg shut down the project's long-running HackerOne bug bounty at the end of January 2026 after being overwhelmed by AI-generated 'slop' — long, confident, and often entirely fabricated vulnerability reports produced by LLMs. One especially egregious submission described an 'HTTP/3 stream dependency cycle exploit' complete with GDB sessions and register dumps, all referencing a function that does not exist anywhere in curl. As AI slop climbed to roughly one in five submissions, curl's confirmed-vulnerability rate collapsed from above 15% to below 5%, while each bogus report still consumed hours from a seven-person volunteer team. Stenberg described it as AI 'DDoSing' open source: hallucinated bug reports that cost real maintainer time and ultimately killed the incentive structure of a well-run security program.

Incident Metadata

Agent
Multiple Llms
Failure Mode
Hallucination
Root Cause
Confidence Miscalibration
Task Type
other
Domain
backend
Source
news_report
View Source