{"id":78409,"date":"2026-09-20T05:46:15","date_gmt":"2026-09-20T05:46:15","guid":{"rendered":"https:\/\/crowdfundjunction.com\/blog\/ai-is-rereading-cryptos-old-code-and-finding-what-humans-missed\/"},"modified":"2026-09-20T05:46:15","modified_gmt":"2026-09-20T05:46:15","slug":"ai-is-rereading-cryptos-old-code-and-finding-what-humans-missed","status":"publish","type":"post","link":"https:\/\/crowdfundjunction.com\/blog\/ai-is-rereading-cryptos-old-code-and-finding-what-humans-missed\/","title":{"rendered":"AI Is Rereading Crypto\u2019s Old Code, and Finding What Humans Missed"},"content":{"rendered":"<p><b>(Originally posted on : Bitcoin News )<\/b><br \/>\n<\/p>\n<div>\n<div class=\"@container mb-[25px] rounded-sm overflow-clip py-0.5 pr-0.5 pl-2.5 bg-success-100\">\n<div class=\"flex flex-col gap-m overflow-clip rounded-[6px] !bg-success-10 p-3 @[420px]:p-m\">\n<h2 class=\"m-0 flex items-center gap-s text-[19px] !text-[#1c1c1c] md:text-[20px]\"><svg xmlns=\"http:\/\/www.w3.org\/2000\/svg\" width=\"16\" height=\"10\" viewbox=\"0 0 16 10\" fill=\"none\" class=\"shrink-0 text-success-100\" aria-hidden=\"true\"><path d=\"M1 1.5h14\" stroke=\"currentColor\" stroke-width=\"2.5\" stroke-linecap=\"round\"\/><path d=\"M1 8.5h10\" stroke=\"currentColor\" stroke-width=\"2.5\" stroke-linecap=\"round\"\/><\/svg><span>Key Takeaways<\/span><\/h2>\n<ul class=\"m-0 flex list-none flex-col gap-m pl-0\">\n<li class=\"m-0 flex items-start gap-s !text-[#434248]\"><span class=\"mt-2 size-2 shrink-0 rounded-full bg-success-100\" aria-hidden=\"true\"\/><span class=\"text-body\">Zcash had a 4-year-old flaw hiding in its code until Claude Opus 4.8 helped a researcher finally uncover it.<\/span><\/li>\n<li class=\"m-0 flex items-start gap-s !text-[#434248]\"><span class=\"mt-2 size-2 shrink-0 rounded-full bg-success-100\" aria-hidden=\"true\"\/><span class=\"text-body\">Coldcard\u2019s 2021 firmware flaw preceded more than $100 million in estimated bitcoin thefts across thousands of addresses.<\/span><\/li>\n<li class=\"m-0 flex items-start gap-s !text-[#434248]\"><span class=\"mt-2 size-2 shrink-0 rounded-full bg-success-100\" aria-hidden=\"true\"\/><span class=\"text-body\">Chainalysis says malicious onchain dead-drop activity jumped 440%, showing how quickly AI-assisted threats are picking up steam.<\/span><\/li>\n<\/ul>\n<\/div>\n<\/div>\n<p>Things are certainly changing fast. An encrypted German Army transmission from July 1941 survived 85 years before an AI-assisted effort <a href=\"https:\/\/x.com\/carterleffen\/status\/2100405732935868840\" target=\"_blank\" rel=\"noopener noreferrer\">finally cracked it this month<\/a>. The message was almost comically ordinary, essentially someone in Rosenow asking which way to march, but AI agents helped search archives, write code, simulate Enigma, and test possibilities until the old problem gave way. Crypto has spent 2026 discovering what happens when that ability to look again gets pointed at software containing actual money.<\/p>\n<h2>AI Goes Hunting Through Old Code<\/h2>\n<p>Zcash provided one of the cleanest examples in May. Researcher Taylor Hornby, working for Shielded Labs, used Claude Opus 4.8 in a custom audit agent and uncovered a flaw in the Orchard shielded-pool circuit dating to 2022. In testing, the vulnerability could create unlimited counterfeit ZEC without detection. No theft was established, and developers patched it within days, but a potentially catastrophic bug had survived roughly four years before AI-assisted review found it. Later, the Zcash <a href=\"https:\/\/news.bitcoin.com\/anthropics-secret-ai-model-mythos-audits-entire-zcash-protocol-finds-no-new-bugs-37856\/\">team claimed to leverage Mythos<\/a> to parse and audit the code and found no new bugs.<\/p>\n<p>Coldcard was considerably messier. Beginning July 30, attackers <a href=\"https:\/\/news.bitcoin.com\/featured\/the-coldcard-exploit-explained-who-lost-bitcoin-and-whos-at-risk\/\">swept bitcoin from wallets affected by a firmware<\/a> weakness traced to 2021 that left some recovery seeds far less random than intended. Later estimates reached roughly 1,600 to more than 1,800 BTC and over $100 million across thousands of addresses. Coinkite, Coldcard\u2019s manufacturer, said it had to assume somebody used AI to inspect its public firmware, <a href=\"https:\/\/news.bitcoin.com\/featured\/was-ai-responsible-for-finding-the-coldcard-security-flaw\/\">while many observers expressed high confidence<\/a> unrestricted models were involved. The attribution isn\u2019t settled, but the vulnerability itself had been sitting there for five years.<\/p>\n<h2>Sometimes the Machine Gets Tricked<\/h2>\n<p>Bankr <a href=\"https:\/\/www.agentwormhole.com\/cases\/bankr-grok\" target=\"_blank\" rel=\"noopener noreferrer\">flipped the equation around too<\/a>, because the AI became part of the attack surface. On May 4, an attacker posted Morse-code text that Grok decoded into an instruction Bankr accepted, triggering the transfer of roughly 3 billion DRB worth around $150,000 to $200,000. Roughly two weeks later, the same general trust-layer problem hit 14 user wallets, with reported losses ranging from about $150,000 to $440,000. The attacker didn\u2019t crack cryptography. The machines trusted each other too much.<\/p>\n<p>AI also appears to be making difficult smart-contract code cheaper to dissect. Chainalysis linked roughly <a href=\"https:\/\/www.chainalysis.com\/blog\/attackers-exploiting-unverified-smart-contracts\/\" target=\"_blank\" rel=\"noopener noreferrer\">$36.7 million in thefts<\/a> to attacks against protocols with unverified contracts, where attackers first had to decompile the deployed bytecode. Ekubo and Trusted Volumes accounted for roughly $7 million of that cluster during the six-month period, although Chainalysis\u2019 AI connection is a method claim rather than proof that a named model created each exploit.<\/p>\n<p>Then there were the fake \u201cClaude-built\u201d arbitrage bots. Nine similar YouTube tutorials directed viewers to copy code into a bogus Remix-style compiler that secretly substituted a drainer. TRM counted 224 victims, 234 contracts, and roughly $517,000 lost. In this case, AI wasn\u2019t the weapon at all. It was the bait.<\/p>\n<h2>The 440% Number Changes the Story<\/h2>\n<p>None of this means every giant crypto hack in 2026 was AI-driven. Some exploits have no established AI connection, despite many suspecting involvement, along with numerous other DeFi attacks this year. That\u2019s an important dividing line. A number of 2026 incidents have documented AI involvement, others carry credible suspicions, and plenty still come down to old-fashioned bugs, keys, permissions, and broken systems.<\/p>\n<p>Chainalysis\u2019 <a href=\"https:\/\/www.chainalysis.com\/blog\/etherhiding-blockchain-dead-drops\/\" target=\"_blank\" rel=\"noopener noreferrer\">blockchain dead-drop data<\/a>, however, suggests the broader economics are changing. Malicious onchain writes carrying malware instructions and command-and-control information climbed from roughly 2.06 per day to 11.1, a 440% increase. Powerful open-weight AI models can lower the expertise needed to build this infrastructure, while state-linked actors associated with North Korea and Iran accounted for roughly two-thirds of newly observed activity each quarter by the second quarter of 2026.<\/p>\n<p>The Enigma lesson isn\u2019t that AI can suddenly crack Bitcoin\u2019s cryptography. It\u2019s that machines make it cheaper to look again. Zcash found an old mistake before an attacker did, <a href=\"https:\/\/news.bitcoin.com\/crypto-news\/dragonflys-haseeb-qureshi-says-2-ai-audit-could-have-caught-coldcard-flaw\/\">while the Coldcard fiasco<\/a> shows what the opposite can look like. Crypto has years of public code waiting to be reread, and nobody knows how many Rosenows are still hiding inside it.<\/p>\n<\/p><\/div>\n<p><a href=\"https:\/\/news.bitcoin.com\/featured\/ai-is-rereading-cryptos-old-code-and-finding-what-humans-missed\/\">Source link <\/a><br \/>\n<br \/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>(Originally posted on : Bitcoin News ) Key Takeaways Zcash had a 4-year-old flaw hiding in its code until Claude Opus 4.8 helped a researcher finally uncover it. Coldcard\u2019s 2021 firmware flaw preceded more than $100 million in estimated bitcoin thefts across thousands of addresses. Chainalysis says malicious onchain dead-drop activity jumped 440%, showing how [&hellip;]<\/p>\n","protected":false},"author":19,"featured_media":78410,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"om_disable_all_campaigns":false,"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0},"categories":[32],"tags":[],"_links":{"self":[{"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/posts\/78409"}],"collection":[{"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/users\/19"}],"replies":[{"embeddable":true,"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/comments?post=78409"}],"version-history":[{"count":0,"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/posts\/78409\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/media\/78410"}],"wp:attachment":[{"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/media?parent=78409"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/categories?post=78409"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/tags?post=78409"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}