Apple limits vulnerability reports amid wave of AI-generated submissions

8/2/2026, 08:42 AMБогдан Семичев

Apple has introduced limits on the number of vulnerability reports that researchers can submit through its security programme. The change follows a surge in reports generated with the help of artificial intelligence tools. The company expects the restrictions to reduce low-quality submissions and preserve resources for investigating genuine security threats.

Once a researcher reaches the available quota, additional reports will be restricted for 30 days. The temporary limit is designed to prevent large volumes of repetitive or poorly supported claims from overwhelming the specialists responsible for reviewing security issues.

Generative AI services have made it easier to produce detailed technical documents in a matter of seconds. However, some submissions may appear convincing even when their authors have not properly tested the alleged flaw or confirmed that it can be reproduced in an Apple product.

Security teams must examine every report, verify the described behaviour and assess its potential impact on users. Even an inaccurate submission can consume valuable time during the initial review process, leaving fewer resources for critical vulnerabilities that require immediate investigation and remediation.

Apple will still allow established security researchers to request an extension of their reporting allowance. Specialists with a history of submitting reliable and well-documented findings may therefore continue sharing a larger number of discoveries without being affected by the standard restriction.

The policy demonstrates how generative AI is changing the operation of vulnerability disclosure and bug bounty programmes. Artificial intelligence can support legitimate research, but automated reports submitted without sufficient verification may reduce the efficiency of the entire system. By filtering this type of spam, Apple aims to improve the quality of incoming reports and help its security team focus on credible risks.

Popular news