AI uncovers high-severity bug in Ethereum's Nethermind software

A crypto security firm used artificial intelligence to detect a high-severity bug in Nethermind, an Ethereum client used by nearly 40% of validators. The flaw, which could have disrupted network operations, was fixed before exploitation. This development highlights AI's growing role in cybersecurity amid recent concerns over AI-generated code vulnerabilities.

Octane Security, described as an AI-native firm, announced on Wednesday that its AI tool identified a critical vulnerability in Nethermind, software that powers the Ethereum blockchain. Nethermind is utilized by approximately 40% of Ethereum validators, and the bug posed risks to network liveness and availability if exploited.

The vulnerability involved a potential sabotage through a malformed transaction, which could lead to sustained missed slots for Nethermind-based proposers. Affected validators might have faced missed block rewards, inactivity leak penalties, and overall degradation in network performance. However, the bug was never exploited and was promptly patched by Nethermind.

Giovanni Vignone, founder and CEO of Octane Security, stated, "This is one of the highest-stakes demonstrations yet of AI-led vulnerability research." He added that AI has accelerated vulnerability research, enabling bug hypotheses, exploit verification, and reports to occur 10 times faster, reshaping threat models for onchain code.

This finding follows closely after Anthropic's launch of an AI tool last week that scans codebases for vulnerabilities and suggests patches, which impacted cybersecurity stocks. Earlier concerns about AI in crypto included a Moonwell incident where AI-generated code led to a $2.7 million loss, despite passing an audit.

Octane's track record includes a partnership with pseudonymous researcher Guhu during preparations for the Ethereum upgrade Fusaka last year. They submitted 17 issues in an audit contest, with 16 fixed, nine deemed severe, and six unique, earning fourth place and $70,633 in rewards. The Ethereum Foundation also awarded Octane a $50,000 bug bounty for the Nethermind issue.

Vignone emphasized, "If you are not using AI to find and fix flaws continuously, you are competing against the blackhats who are." Seth Hallem, CEO of Certora, noted post-Moonwell that increased investment in design, threat modeling, and monitoring is essential as AI coding proliferates.

Artikel Terkait

Tense meeting between US Defense Secretary and Anthropic CEO over AI safety policy relaxation and military access.
Gambar dihasilkan oleh AI

Pentagon menekan Anthropic untuk melemahkan komitmen keselamatan AI

Dilaporkan oleh AI Gambar dihasilkan oleh AI

Menteri Pertahanan AS Pete Hegseth telah mengancam Anthropic dengan sanksi berat kecuali perusahaan itu memberikan akses tak terbatas kepada militer untuk model AI Claude-nya. Ultimatum itu disampaikan selama pertemuan dengan CEO Dario Amodei di Washington pada Selasa, bertepatan dengan pengumuman Anthropic untuk melonggarkan Responsible Scaling Policy-nya. Perubahan tersebut beralih dari pemicu keselamatan ketat ke penilaian risiko yang lebih fleksibel di tengah tekanan kompetitif.

OpenAI has launched EVMbench, a new framework developed with Paradigm, to evaluate whether artificial intelligence can effectively secure smart contracts on blockchains like Ethereum. The tool assesses AI's ability to identify, exploit, and fix vulnerabilities in these self-executing codes. This initiative aims to set standards for AI in blockchain security amid growing stakes in decentralized finance.

Dilaporkan oleh AI

Peretas semakin memanfaatkan kecerdasan buatan untuk mengidentifikasi dan mengeksploitasi kerentanan keamanan dengan kecepatan yang lebih tinggi. Menurut laporan dari IBM, integrasi AI ke dalam serangan siber mempercepat proses secara signifikan. Perkembangan ini menyoroti ancaman yang berkembang di bidang keamanan siber.

OpenClaw, an open-source AI project formerly known as Moltbot and Clawdbot, has surged to over 100,000 GitHub stars in less than a week. This execution engine enables AI agents to perform actions like sending emails and managing calendars on users' behalf within chat interfaces. Its rise highlights potential to simplify crypto usability while raising security concerns.

Dilaporkan oleh AI

The Motley Fool has identified Ethereum as the leading artificial intelligence cryptocurrency to consider buying now. The publication suggests that Ethereum's potential to harness AI could lead to a significant increase in its value.

As AI platforms shift toward ad-based monetization, researchers warn that the technology could shape users' behavior, beliefs, and choices in unseen ways. This marks a turnabout for OpenAI, whose CEO Sam Altman once deemed the mix of ads and AI 'unsettling' but now assures that ads in AI apps can maintain trust.

Dilaporkan oleh AI

In 2025, cyber threats in the Philippines stuck to traditional methods like phishing and ransomware, without new forms emerging. However, artificial intelligence amplified the volume and scale of these attacks, leading to an 'industrialization of cybercrime'. Reports from various cybersecurity firms highlight increases in speed, scale, and frequency of incidents.

 

 

 

Situs web ini menggunakan cookie

Kami menggunakan cookie untuk analisis guna meningkatkan situs kami. Baca kebijakan privasi kami untuk informasi lebih lanjut.
Tolak