AI uncovers high-severity bug in Ethereum's Nethermind software

A crypto security firm used artificial intelligence to detect a high-severity bug in Nethermind, an Ethereum client used by nearly 40% of validators. The flaw, which could have disrupted network operations, was fixed before exploitation. This development highlights AI's growing role in cybersecurity amid recent concerns over AI-generated code vulnerabilities.

Octane Security, described as an AI-native firm, announced on Wednesday that its AI tool identified a critical vulnerability in Nethermind, software that powers the Ethereum blockchain. Nethermind is utilized by approximately 40% of Ethereum validators, and the bug posed risks to network liveness and availability if exploited.

The vulnerability involved a potential sabotage through a malformed transaction, which could lead to sustained missed slots for Nethermind-based proposers. Affected validators might have faced missed block rewards, inactivity leak penalties, and overall degradation in network performance. However, the bug was never exploited and was promptly patched by Nethermind.

Giovanni Vignone, founder and CEO of Octane Security, stated, "This is one of the highest-stakes demonstrations yet of AI-led vulnerability research." He added that AI has accelerated vulnerability research, enabling bug hypotheses, exploit verification, and reports to occur 10 times faster, reshaping threat models for onchain code.

This finding follows closely after Anthropic's launch of an AI tool last week that scans codebases for vulnerabilities and suggests patches, which impacted cybersecurity stocks. Earlier concerns about AI in crypto included a Moonwell incident where AI-generated code led to a $2.7 million loss, despite passing an audit.

Octane's track record includes a partnership with pseudonymous researcher Guhu during preparations for the Ethereum upgrade Fusaka last year. They submitted 17 issues in an audit contest, with 16 fixed, nine deemed severe, and six unique, earning fourth place and $70,633 in rewards. The Ethereum Foundation also awarded Octane a $50,000 bug bounty for the Nethermind issue.

Vignone emphasized, "If you are not using AI to find and fix flaws continuously, you are competing against the blackhats who are." Seth Hallem, CEO of Certora, noted post-Moonwell that increased investment in design, threat modeling, and monitoring is essential as AI coding proliferates.

Relaterade artiklar

Tense meeting between US Defense Secretary and Anthropic CEO over AI safety policy relaxation and military access.
Bild genererad av AI

Pentagon pressar Anthropic att försvaga AI-säkerhetsåtaganden

Rapporterad av AI Bild genererad av AI

USA:s försvarsminister Pete Hegseth har hotat Anthropic med svåra straff om inte företaget ger militären obegränsad tillgång till sin Claude AI-modell. Ultimatet kom under ett möte med VD Dario Amodei i Washington på tisdagen, samtidigt som Anthropic meddelade att man mildrar sin Responsible Scaling Policy. Förändringarna går från strikta säkerhetströsklar till mer flexibla riskbedömningar mitt i konkurrenstryck.

OpenAI has launched EVMbench, a new framework developed with Paradigm, to evaluate whether artificial intelligence can effectively secure smart contracts on blockchains like Ethereum. The tool assesses AI's ability to identify, exploit, and fix vulnerabilities in these self-executing codes. This initiative aims to set standards for AI in blockchain security amid growing stakes in decentralized finance.

Rapporterad av AI

Hackare utnyttjar alltmer artificiell intelligens för att identifiera och utnyttja säkerhetssårbarheter i en accelererad takt. Enligt en rapport från IBM påskyndar integrationen av AI i cyberattacker processen avsevärt. Denna utveckling belyser de utvecklande hoten inom cybersäkerhet.

OpenClaw, an open-source AI project formerly known as Moltbot and Clawdbot, has surged to over 100,000 GitHub stars in less than a week. This execution engine enables AI agents to perform actions like sending emails and managing calendars on users' behalf within chat interfaces. Its rise highlights potential to simplify crypto usability while raising security concerns.

Rapporterad av AI

The Motley Fool has identified Ethereum as the leading artificial intelligence cryptocurrency to consider buying now. The publication suggests that Ethereum's potential to harness AI could lead to a significant increase in its value.

As AI platforms shift toward ad-based monetization, researchers warn that the technology could shape users' behavior, beliefs, and choices in unseen ways. This marks a turnabout for OpenAI, whose CEO Sam Altman once deemed the mix of ads and AI 'unsettling' but now assures that ads in AI apps can maintain trust.

Rapporterad av AI

In 2025, cyber threats in the Philippines stuck to traditional methods like phishing and ransomware, without new forms emerging. However, artificial intelligence amplified the volume and scale of these attacks, leading to an 'industrialization of cybercrime'. Reports from various cybersecurity firms highlight increases in speed, scale, and frequency of incidents.

 

 

 

Denna webbplats använder cookies

Vi använder cookies för analys för att förbättra vår webbplats. Läs vår integritetspolicy för mer information.
Avböj