
What to know : Security engineer Taylor Hornby, who recently used Anthropic’s Opus 4.8 AI model to uncover a critical bug in Zcash, says he will next audit Monero and other privacy-focused cryptocurrencies. The Zcash flaw, hidden in the Orchard privacy pool since May 2022, could have allowed unlimited counterfeit ZEC to be minted undetected and prompted an emergency fix by June 1 after its discovery on May 29. Hornby, hired by nonprofit developer Shielded Labs to find protocol bugs before attackers do, disclosed the vulnerability instead of exploiting it and plans to seek a Zcash coinholder grant to fund further work.
Taylor Hornby, the security engineer who used Anthropic's Opus 4.8 AI model to find a critical bug in Zcash, says privacy coin Monero is among the tokens he intends to audit next.
Asked on X whether he could look for flaws in Monero and other private cryptocurrencies, Hornby replied, "Absolutely! I'll add Monero to my queue of things to audit."
Monero, which trades under the ticker XMR, is among the largest privacy-focused cryptocurrency and hides transaction details by default compared to Zcash, where users can either either transparent or shielded addressed.
Hornby found the Zcash flaw on May 29. The bug, in the blockchain's Orchard privacy pool, had gone undetected since May 2022 and could have let an attacker mint unlimited, undetectable counterfeit ZEC. Shielded Labs, a nonprofit developer on the network, disclosed it on Thursday and pushed through an emergency fix by June 1.
Zcash fell 38% over the following 24 hours amid fallout and concerns about a hacker possibly stealing money from the shielded pool - XXXXX - over the past few years.
Hornby, hired by Shielded Labs in April to find protocol bugs before attackers could, said he reported the flaw rather than exploit it because the Zcash developers were "like family" and he could "not live with that kind of betrayal."
He plans to apply for a Zcash coinholder grant to fund further work.
免责声明:本文章仅代表作者个人观点,不代表本平台的立场和观点。本文章仅供信息分享,不构成对任何人的任何投资建议。用户与作者之间的任何争议,与本平台无关。如网页中刊载的文章或图片涉及侵权,请提供相关的权利证明和身份证明发送邮件到support@aicoin.com,本平台相关工作人员将会进行核查。