Enhancing Open-Source Security & Education with AI and Gamification — OWASP BLT GSoC 2025 Highlights



This content originally appeared on DEV Community and was authored by Donnie Brown

This year’s Google Summer of Code (GSoC) saw some amazing projects aimed at advancing open-source security, education, and contributor engagement through innovative uses of AI, blockchain, and gamification within the OWASP Bug Logging Tool (BLT).

Here’s a quick overview of the impactful contributions from the OWASP BLT 2025 cohort:

AI-Powered GitHub Assistant for Maintainers

Sahil Dhillon developed an AI-powered GitHub assistant designed to help maintainers efficiently review code, detect security vulnerabilities, and prioritize issues. Leveraging large language models (LLMs) combined with rule-based scanning, this smart system integrates seamlessly as a GitHub bot and a task management dashboard, boosting maintainers’ productivity and code quality.
🔗 Explore Sahil’s GitHub PR

Blockchain-Backed, AI-Scored Gamification System

Krrish Sehgal extended OWASP BLT by introducing a gamified reward system backed by blockchain and powered by AI scoring. This system incentivizes and recognizes security contributions such as bug triaging, fixing, and community support — driving engagement and better security outcomes through gamification.
🔗 Read Krrish’s GSoC 2025 Report

Interactive Browser-Based Security Labs

Lucky Negi created immersive, browser-based interactive security labs integrated within OWASP BLT. These labs enable hands-on vulnerability triage and secure coding practice through guided, gamified exercises, providing an engaging and practical learning experience for developers of all skill levels.
🔗 Dive into Lucky’s GSoC 2025 Journey

Enhanced Organization Dashboard for Vulnerability Management

Rinkit Adhana redesigned the OWASP BLT organization dashboard, adding advanced filtering, real-time analytics, and role-based collaboration tools. These enhancements streamline vulnerability tracking and team workflows, making it easier for organizations to manage security issues collaboratively and efficiently.
🔗 Check out Rinkit’s GSoC 2025 Report

Conclusion

Together, these projects have significantly boosted the usability, security, and educational value of the OWASP BLT ecosystem. From AI-driven automation to blockchain rewards and interactive learning, the future of open-source security tooling looks brighter and more engaging than ever.

Are you excited about the intersection of AI, gamification, and open-source security? Let me know which project caught your eye or if you want to explore similar opportunities!


This content originally appeared on DEV Community and was authored by Donnie Brown