zwro's recent activity

  1. Comment on Curl will end its bug bounty program by the end of January due to excessive AI generated reports in ~comp

    zwro
    Link
    It seems to me that the author sees personal ridicule as a necessary evil. Not only is it not, it targets exactly those who are less deserving of being a target. Purely profit driven bounty...

    It seems to me that the author sees personal ridicule as a necessary evil. Not only is it not, it targets exactly those who are less deserving of being a target. Purely profit driven bounty hunters using AI because it's cheap and delegate verification to maintainers are those who care less for reputation. Personal shaming only affects those who care and could learn from the mistake. It's not an effective or positive pedagogical tool.

    Personally, I see the end of most bounties as a silver lining, being generally against the practice, but I don't think AI makes proper incentive systems impossible. We just have to be smart in how we deal with it.