<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Maintainers on Danilo Falcão da Silva</title><link>https://falcao.org/tags/maintainers/</link><description>Recent content in Maintainers on Danilo Falcão da Silva</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Wed, 20 May 2026 10:00:00 -0300</lastBuildDate><atom:link href="https://falcao.org/tags/maintainers/index.xml" rel="self" type="application/rss+xml"/><item><title>AI Bug Reports Are Drowning Open Source — And the Fix Isn't 'Stop Using AI'</title><link>https://falcao.org/posts/ai-bug-reports-open-source/</link><pubDate>Wed, 20 May 2026 10:00:00 -0300</pubDate><guid>https://falcao.org/posts/ai-bug-reports-open-source/</guid><description>&lt;p>On May 18, 2026, Linus Torvalds said the Linux kernel security mailing
list had become &lt;strong>&amp;ldquo;almost entirely unmanageable&amp;rdquo;&lt;/strong> because of duplicate
AI-generated bug reports. Two months earlier, longtime stable
maintainer &lt;strong>Willy Tarreau&lt;/strong> had already shared the numbers: a list
that received two to three reports per week in 2024 was getting
&lt;strong>five to ten reports per day&lt;/strong> by March 2026. In January, &lt;strong>Daniel
Stenberg shut down the curl bug bounty&lt;/strong> after the valid-report rate
on HackerOne dropped from above 15% to below 5%, with twenty
submissions in 21 days — seven of them in one 16-hour window — and
zero real vulnerabilities among them.&lt;/p></description></item></channel></rss>