Goalposts

Hacker News has set AI a lot of challenges over the years. Which ones has it met?

2026 Augustiepathos

About whether LLM triage could fix the flood of AI-generated bug reports on HackerOne.

An LLM finds a dubious bug, an LLM turns it into a convincing report, and now the proposed solution is to have an LLM triage it? There are a lot of turtles holding up this approach and the circular logic seems hard to miss.

Automated triage can filter obvious spam, which was already fast and easy for humans to do. The hard part is independently reproducing a plausible finding and assessing its actual impact. If LLMs could already do that reliably, then the slop report problem wouldn't exist in the first place.

An AI reliably reproduces a plausible security bug report on its own and assesses its actual impact.

Has this happened?

Yes 90 (71%)Not sure 27 (21%)No 10 (8%)

Votes cast 1–2 October 2026: 100,590 votes from 9,694 people.