AI uncovers high-severity bug in Ethereum's Nethermind software

A crypto security firm used artificial intelligence to detect a high-severity bug in Nethermind, an Ethereum client used by nearly 40% of validators. The flaw, which could have disrupted network operations, was fixed before exploitation. This development highlights AI's growing role in cybersecurity amid recent concerns over AI-generated code vulnerabilities.

Octane Security, described as an AI-native firm, announced on Wednesday that its AI tool identified a critical vulnerability in Nethermind, software that powers the Ethereum blockchain. Nethermind is utilized by approximately 40% of Ethereum validators, and the bug posed risks to network liveness and availability if exploited.

The vulnerability involved a potential sabotage through a malformed transaction, which could lead to sustained missed slots for Nethermind-based proposers. Affected validators might have faced missed block rewards, inactivity leak penalties, and overall degradation in network performance. However, the bug was never exploited and was promptly patched by Nethermind.

Giovanni Vignone, founder and CEO of Octane Security, stated, "This is one of the highest-stakes demonstrations yet of AI-led vulnerability research." He added that AI has accelerated vulnerability research, enabling bug hypotheses, exploit verification, and reports to occur 10 times faster, reshaping threat models for onchain code.

This finding follows closely after Anthropic's launch of an AI tool last week that scans codebases for vulnerabilities and suggests patches, which impacted cybersecurity stocks. Earlier concerns about AI in crypto included a Moonwell incident where AI-generated code led to a $2.7 million loss, despite passing an audit.

Octane's track record includes a partnership with pseudonymous researcher Guhu during preparations for the Ethereum upgrade Fusaka last year. They submitted 17 issues in an audit contest, with 16 fixed, nine deemed severe, and six unique, earning fourth place and $70,633 in rewards. The Ethereum Foundation also awarded Octane a $50,000 bug bounty for the Nethermind issue.

Vignone emphasized, "If you are not using AI to find and fix flaws continuously, you are competing against the blackhats who are." Seth Hallem, CEO of Certora, noted post-Moonwell that increased investment in design, threat modeling, and monitoring is essential as AI coding proliferates.

Mga Kaugnay na Artikulo

Tense meeting between US Defense Secretary and Anthropic CEO over AI safety policy relaxation and military access.
Larawang ginawa ng AI

Pentagon pressures Anthropic to weaken AI safety commitments

Iniulat ng AI Larawang ginawa ng AI

US Defense Secretary Pete Hegseth has threatened Anthropic with severe penalties unless the company grants the military unrestricted access to its Claude AI model. The ultimatum came during a meeting with CEO Dario Amodei in Washington on Tuesday, coinciding with Anthropic's announcement to relax its Responsible Scaling Policy. The changes shift from strict safety tripwires to more flexible risk assessments amid competitive pressures.

OpenAI has launched EVMbench, a new framework developed with Paradigm, to evaluate whether artificial intelligence can effectively secure smart contracts on blockchains like Ethereum. The tool assesses AI's ability to identify, exploit, and fix vulnerabilities in these self-executing codes. This initiative aims to set standards for AI in blockchain security amid growing stakes in decentralized finance.

Iniulat ng AI

Hackers are increasingly leveraging artificial intelligence to identify and exploit security vulnerabilities at an accelerated pace. According to a report from IBM, the integration of AI into cyber attacks is speeding up the process significantly. This development highlights evolving threats in cybersecurity.

OpenClaw, an open-source AI project formerly known as Moltbot and Clawdbot, has surged to over 100,000 GitHub stars in less than a week. This execution engine enables AI agents to perform actions like sending emails and managing calendars on users' behalf within chat interfaces. Its rise highlights potential to simplify crypto usability while raising security concerns.

Iniulat ng AI

The Motley Fool has identified Ethereum as the leading artificial intelligence cryptocurrency to consider buying now. The publication suggests that Ethereum's potential to harness AI could lead to a significant increase in its value.

As AI platforms shift toward ad-based monetization, researchers warn that the technology could shape users' behavior, beliefs, and choices in unseen ways. This marks a turnabout for OpenAI, whose CEO Sam Altman once deemed the mix of ads and AI 'unsettling' but now assures that ads in AI apps can maintain trust.

Iniulat ng AI

Sa 2025, hindi nagbago ang mga anyo ng cyber threats sa Pilipinas; nanatiling tradisyunal na paraan tulad ng phishing at ransomware. Gayunpaman, ang artificial intelligence ay nagpataas ng dami at laki ng mga atake na ito, na humahantong sa 'industrialization of cybercrime'. Mga ulat mula sa iba't ibang firm ay nagpapakita ng pagtaas sa bilis, sukat, at dami ng mga insidente.

 

 

 

Gumagamit ng cookies ang website na ito

Gumagamit kami ng cookies para sa analytics upang mapabuti ang aming site. Basahin ang aming patakaran sa privacy para sa higit pang impormasyon.
Tanggihan