Zcash AI‑Detected Flaw Prompts Fast Patch, Highlights Growing Crypto Security Risks
An independent researcher used Anthropic’s Claude Opus 4.8 model to uncover a four‑year‑old vulnerability in Zcash’s Orchard privacy pool. The bug could have allowed unlimited counterfeit ZEC to be created inside the shielded pool. Zcash developers released an emergency upgrade within days, patched the issue, and reported no evidence of exploitation or impact on user privacy. Zcash founder Zooko Wilcox later confirmed that a follow‑up AI‑assisted audit found no remaining serious flaws.
The incident underscores how advanced AI models are lowering the cost and speed of finding deep‑lying cryptographic bugs, altering the economics of crypto security audits. While defenders can use AI to broaden testing, attackers may also leverage the same tools to locate weaknesses faster. The discovery caused a sharp drop in ZEC price after public disclosure, illustrating market sensitivity to security revelations. Parallel crypto news noted the cancellation of tokenized SpaceX IPO campaigns by several exchanges and a U.S. export‑control halt on frontier AI models, reflecting broader regulatory and operational challenges in the sector.