Quoting Willy Tarreau

Simon Willison's Blog / 4/4/2026

💬 OpinionDeveloper Stack & InfrastructureSignals & Early TrendsIdeas & Deep Analysis

Key Points

  • Linux kernel security reporting on the kernel security list has surged from roughly 10 reports per week to about 5–10 reports per day since the beginning of the year.
  • The spike is attributed largely to “AI slop,” and the volume has forced the project to add more maintainers to handle incoming reports.
  • A new pattern has emerged: duplicate reports where the same bug is identified independently by multiple people using different (possibly AI-assisted) tooling.
  • The development impact includes increased coordination overhead and review workload for maintainers, even as many reports are still described as correct.
  • The quotation suggests an evolving security-reporting ecosystem driven by AI tooling, changing both volume and redundancy of findings.
Sponsored by: WorkOS — Production-ready APIs for auth and access control, so you can ship faster.

3rd April 2026

On the kernel security list we've seen a huge bump of reports. We were between 2 and 3 per week maybe two years ago, then reached probably 10 a week over the last year with the only difference being only AI slop, and now since the beginning of the year we're around 5-10 per day depending on the days (fridays and tuesdays seem the worst). Now most of these reports are correct, to the point that we had to bring in more maintainers to help us.

And we're now seeing on a daily basis something that never happened before: duplicate reports, or the same bug found by two different people using (possibly slightly) different tools.

Willy Tarreau, Lead Software Developer. HAPROXY

Posted 3rd April 2026 at 9:48 pm