y0news
AnalyticsDigestsSourcesTopicsRSSAICrypto

#security-vulnerability News & Analysis

46 articles tagged with #security-vulnerability. AI-curated summaries with sentiment analysis and key takeaways from 50+ sources.

46 articles
DeFiBearishCoinDesk · Jun 247/10
💎

SecondFi loses $2.4 million in Cardano wallet exploit

SecondFi experienced a $2.4 million loss after three separate attacks exploited vulnerabilities in its wallet generation software on Cardano. The team managed to secure an additional 129 million ADA before attackers could access these funds, partially mitigating what could have been a significantly larger breach.

SecondFi loses $2.4 million in Cardano wallet exploit
$ADA
CryptoBearishCrypto Briefing · Jun 237/10
⛓️

SecondFi wallet vulnerability drains $2.4M in Cardano assets from 178 users

SecondFi wallet experienced a security breach that drained $2.4M in Cardano assets from 178 users, exposing critical vulnerabilities in wallet infrastructure and potentially damaging confidence in the Cardano ecosystem if remediation efforts prove inadequate.

SecondFi wallet vulnerability drains $2.4M in Cardano assets from 178 users
$ADA
AIBearisharXiv – CS AI · Jun 237/10
🧠

MIRAGE: Stealthy Visual Prompt Injection for Vulnerability Detection in Web Agents

Researchers have identified a sophisticated vulnerability in multimodal AI web agents through MIRAGE, a visual prompt injection attack that exploits trusted web platforms by embedding hidden adversarial instructions within legitimate ad slots or widgets. The attack demonstrates how constrained attackers can manipulate MLLM-based automation tools like SeeAct and OpenClaw without detection, raising critical security concerns for AI-powered browser automation systems.

DeFiBearishBlockonomi · Jun 227/10
💎

Taiko Bridge Exploited for $1.7 Million as Proof Validation Bug Exposes Layer-2 Network

Taiko's layer-2 bridge was exploited for $1.7 million through a proof validation vulnerability, forcing the team to halt operations and request user withdrawals. The incident highlights critical security risks in layer-2 scaling solutions and raises questions about validation mechanisms in cross-chain bridges.

CryptoBearishProtos · Jun 197/10
⛓️

70% of Litecoin nodes still haven’t patched a double-spending bug

Litecoin developers released patches for a double-spending vulnerability discovered in March-April 2026, but approximately 70% of non-mining nodes have failed to adopt the update. This widespread failure to patch represents a significant security risk for the network's integrity and user confidence.

70% of Litecoin nodes still haven’t patched a double-spending bug
$LTC
AIBearisharXiv – CS AI · Jun 197/10
🧠

When Lower Privileges Suffice: Investigating Over-Privileged Tool Selection in LLM Agents

Researchers have identified a critical safety vulnerability in LLM agents: they frequently select tools with excessive privileges when lower-privilege alternatives would suffice. The study introduces ToolPrivBench to measure this behavior and proposes privilege-aware post-training as a defense mechanism to ensure agents escalate permissions only when necessary.

CryptoBearishCrypto Briefing · Jun 117/10
⛓️

Zcash’s Orchard pool sees 1% withdrawal as counterfeiting bug shakes investor confidence

Zcash's Orchard shielded pool experienced a 1% withdrawal spike following discovery of a counterfeiting vulnerability that could allow malicious actors to create unlimited ZEC tokens undetected. The security flaw has significantly damaged investor confidence in the privacy-focused cryptocurrency, raising questions about the robustness of its protocol security measures.

Zcash’s Orchard pool sees 1% withdrawal as counterfeiting bug shakes investor confidence
DeFiBearishChainalysis Blog · Jun 97/10
💎

The Hidden Code Problem: How Unverified Smart Contracts Are Becoming a Preferred Target for Attackers

A Chainalysis report reveals that at least $36.7 million has been stolen from cryptocurrency protocols with unverified smart contracts over the last six months. Unverified smart contracts—whose source code is not publicly visible on blockchain explorers—have become a primary target for attackers exploiting hidden vulnerabilities that escape community scrutiny.

CryptoNeutralNewsBTC · Jun 97/10
⛓️

Zcash Crashed 50% On A Four-Year-Old Secret — The Recovery Has Quietly Begun

Zcash discovered and patched a critical four-year-old vulnerability in its Orchard shielded pool that could have theoretically enabled unlimited undetectable counterfeiting, triggering a 50% price crash from $624 to $309 before a swift two-phase emergency network upgrade restored confidence. The fix was completed without confirmed exploitation, though the privacy properties that make Zcash valuable also prevent definitive verification that the flaw was never exploited.

Zcash Crashed 50% On A Four-Year-Old Secret — The Recovery Has Quietly Begun
$BTC$ETH🏢 Anthropic🧠 Claude🧠 Opus
AIBearisharXiv – CS AI · Jun 97/10
🧠

Model Poisoning Against Federated Model Adaptation with Chain of Bit-Flips

Researchers demonstrate a novel backdoor attack against Federated Learning systems by exploiting hardware faults (bit-flips) to poison model parameters during training. The attack achieves 94% success rate on ResNet-18 with minimal fault injections, expanding the threat surface of distributed ML systems beyond software-based attacks.

CryptoBullishcrypto.news · Jun 97/10
⛓️

Zcash price jumps as Ironwood plan targets counterfeit token concerns

Zcash's price has recovered approximately 50% from recent lows following the announcement of the Ironwood network upgrade proposal, designed to address a vulnerability that could have enabled counterfeit token creation. The development demonstrates how security-focused protocol improvements can restore market confidence in affected cryptocurrencies.

Zcash price jumps as Ironwood plan targets counterfeit token concerns
CryptoNeutralcrypto.news · Jun 87/10
⛓️

Zcash founder outlines two-step response to critical Orchard vulnerability

Zcash founder Josh Swihart unveiled a two-step emergency response to a critical vulnerability in the Orchard protocol that could have enabled unlimited ZEC counterfeiting. The token has recovered over 41% from its post-disclosure low, suggesting market confidence in the remediation plan.

Zcash founder outlines two-step response to critical Orchard vulnerability
CryptoBearishcrypto.news · Jun 87/10
⛓️

Syscoin bridge paused after 5B SYS unauthorized output

Syscoin has paused its bridge following the discovery of a validation flaw that generated approximately 5 billion unauthorized SYS tokens. The newly created tokens are being tracked across UTXO addresses as the network addresses the security vulnerability.

Syscoin bridge paused after 5B SYS unauthorized output
CryptoBearishcrypto.news · Jun 67/10
⛓️

Dragonfly holds ZEC as Orchard bug debate raises new questions

Zcash faces renewed scrutiny following a patched vulnerability in its Orchard privacy pool, with Dragonfly Capital maintaining its ZEC position despite debate over whether users and investors face undisclosed risks. The incident raises questions about the adequacy of bug disclosure and the market's assessment of hidden protocol vulnerabilities.

Dragonfly holds ZEC as Orchard bug debate raises new questions
CryptoBearishDecrypt · Jun 57/10
⛓️

Zcash Bug Crisis Shows Privacy Cuts Both Ways, Experts Say

A critical bug in Zcash that allowed undetectable counterfeiting has exposed fundamental tensions in privacy-focused cryptocurrency design. Experts highlight that enhanced privacy features, while protecting user anonymity, can obscure fraudulent activity and create systemic vulnerabilities that affect network integrity and user trust.

Zcash Bug Crisis Shows Privacy Cuts Both Ways, Experts Say
CryptoBearishBankless · Jun 57/10
⛓️

Rotten Apples in the Orchard

Zcash developers discovered and patched a critical vulnerability in its privacy pool that could have allowed attackers to create counterfeit ZEC tokens. The team has no evidence that the bug was exploited before the fix, but cannot definitively rule out that fake coins were already minted.

Rotten Apples in the Orchard
CryptoBearishDecrypt · Jun 57/10
⛓️

Morning Minute: Massive ZCash Exploit Found by Claude, Extent Unknown

ZCash's security audit uncovered a critical protocol vulnerability that existed undetected for four years after the team hired a researcher to identify exploits. The discovery raises questions about the effectiveness of previous security reviews and the potential exposure of the privacy-focused cryptocurrency.

Morning Minute: Massive ZCash Exploit Found by Claude, Extent Unknown
🧠 Claude
CryptoBearishcrypto.news · Jun 57/10
⛓️

Why Zcash crashed even after the bug was fixed

A critical vulnerability in Zcash's Orchard privacy pool discovered in May 2026 could have enabled unlimited counterfeiting of ZEC tokens while remaining undetectable. Despite developers patching the flaw, the market still punished ZEC with a sharp decline, raising questions about investor confidence in the privacy-focused blockchain's security protocols and development practices.

Why Zcash crashed even after the bug was fixed
CryptoBearishCoinDesk · Jun 57/10
⛓️

Arthur Hayes dumps zcash holdings after Orchard Pool vulnerability revealed

Arthur Hayes, founder of BitMEX, has divested his Zcash holdings following the discovery of a vulnerability in the Orchard Pool privacy feature. Hayes stated he would reconsider his position if evidence emerges proving the exploit is no longer viable, highlighting ongoing concerns about the privacy coin's security infrastructure.

Arthur Hayes dumps zcash holdings after Orchard Pool vulnerability revealed
CryptoBearishBlockonomi · Jun 57/10
⛓️

Zcash Founder Warns Orchard Bug Could Have Created Undetectable Counterfeit ZEC

A critical security vulnerability in Zcash's Orchard privacy circuit was discovered on May 29, 2026, that could have enabled unlimited counterfeit ZEC generation without cryptographic detection. The flaw, found using AI analysis, allowed false elliptic curve multiplication inputs to pass verification, and due to Orchard's privacy design, there is no way to determine if the bug was exploited before patching.

🏢 Anthropic🧠 Opus
CryptoBearishBitcoinist · Jun 57/10
⛓️

Zcash Bug Could Have Minted Unlimited ZEC Undetected

A critical vulnerability in Zcash's Orchard shielded pool could have enabled attackers to mint unlimited ZEC without detection. The flaw was discovered May 29 and patched by June 2 through an emergency response, raising questions about the security of privacy-focused cryptocurrency infrastructure.

Zcash Bug Could Have Minted Unlimited ZEC Undetected
CryptoBearishBlockonomi · Jun 57/10
⛓️

Zcash (ZEC) Plunges 30% Following Disclosure of Critical Four-Year Orchard Pool Vulnerability

Zcash (ZEC) experienced a 30% price crash following the disclosure of a critical four-year vulnerability in its Orchard privacy pool that could have allowed attackers to create unlimited counterfeit tokens undetected. The bug's extended existence without discovery raises serious concerns about the security of Zcash's privacy mechanisms and the effectiveness of its development oversight.

CryptoBullishNewsBTC · Jun 47/10
⛓️

Zcash Fixes Critical Orchard Vulnerability As ZEC Holds $600 Support

Zcash successfully patched a critical vulnerability in its Orchard shielded pool that could have enabled double-spending, deploying an emergency network upgrade on June 2-3 after researcher Taylor Hornby discovered the soundness flaw. Despite temporary network confusion from explorer outages during the upgrade, ZEC maintained support around $600 and rallied approximately 20% over two days, outperforming the broader market.

Zcash Fixes Critical Orchard Vulnerability As ZEC Holds $600 Support
$ETH$SOL
Page 1 of 2Next →