Protocol

26 malicious LLM routers stole credentials. DeFi has no defense for this.

9 min · I går
episode 26 malicious LLM routers stole credentials. DeFi has no defense for this. cover

Description

An AI agent with access to a live crypto wallet had its memory wiped in a crash, misread a random post on X as a transfer request, and autonomously sent a stranger up to four hundred fifty thousand dollars on-chain with zero human approval. Over one hundred thirty-seven million dollars has been drained from at least fifteen DeFi platforms since January through AI agent exploits, not smart contract bugs—attackers are poisoning the routers, plugins, and memory files that sit between the AI and the blockchain, and no major protocol has disclosed how they're securing that layer. The guy who co-founded OpenZeppelin, the firm that audited Aave and Uniswap, just told friends and family to exit all of DeFi because defenders have to protect every line of code while attackers only need one hole.

Comments

0

Be the first to comment

Sign up now and become a member of the Protocol community!

Get Started

2 months for 19 kr.

Then 99 kr. / month · Cancel anytime.

  • Podcasts kun på Podimo
  • 20 lydbogstimer pr. måned
  • Gratis podcasts

All episodes

49 episodes

episode 26 malicious LLM routers stole credentials. DeFi has no defense for this. artwork

26 malicious LLM routers stole credentials. DeFi has no defense for this.

An AI agent with access to a live crypto wallet had its memory wiped in a crash, misread a random post on X as a transfer request, and autonomously sent a stranger up to four hundred fifty thousand dollars on-chain with zero human approval. Over one hundred thirty-seven million dollars has been drained from at least fifteen DeFi platforms since January through AI agent exploits, not smart contract bugs—attackers are poisoning the routers, plugins, and memory files that sit between the AI and the blockchain, and no major protocol has disclosed how they're securing that layer. The guy who co-founded OpenZeppelin, the firm that audited Aave and Uniswap, just told friends and family to exit all of DeFi because defenders have to protect every line of code while attackers only need one hole.

Yesterday9 min
episode Winklevoss bought $100M of his own stock at 14 dollars. It's trading at 6. artwork

Winklevoss bought $100M of his own stock at 14 dollars. It's trading at 6.

The Winklevoss twins just invested $100 million in their own public company at $14 a share when the stock was trading at $4.92, paid entirely in bitcoin instead of cash, then quietly rewrote the rules to make it easier to sell those shares back later. Gemini lost $109 million last quarter while spending $144 million to make $50 million in revenue, but the stock still jumped 15% after hours because everyone called it a vote of confidence. Meanwhile nobody's talking about how the same-day registration rights amendment lowered the threshold for the founders to eventually dump those shares into the public market, or how Gemini's balance sheet now holds volatile bitcoin instead of the cash it's been burning through.

15. maj 20269 min