Two diametrically opposite reads on AI × security this week
The fear-forward one: AI-priced offense visibly outran DeFi defense in April, with measured research behind it 🧵/1
@patfscott Yes on AI bullet
Hack capability scales with each new model and more compute, while defender economics stay flat
Pashu compiled it well https://t.co/9F0WRpTuey
DeFi's April hack count keeps rising: 15+ exploits, ~$1B+ gone, and AI is the quiet suspect behind most of them
This is the first month where AI-priced offense visibly outran DeFi defense, and the research showing why isn't speculation - it's measured and replicable 🧵 /1
Multi-agent LLM harnesses are a real lever for vuln discovery. AI agents wired to fuzzers, static analysis, debuggers with with runtime signals steering rewrites
Liu et al. article proved this on local programs. DeFi version is Echidna, Slither, Foundry
https://t.co/bkDkVKUp08
DeFi's April hack count keeps rising: 15+ exploits, ~$1B+ gone, and AI is the quiet suspect behind most of them
This is the first month where AI-priced offense visibly outran DeFi defense, and the research showing why isn't speculation - it's measured and replicable 🧵 /1
New paper on Post-Quantum Crypto from Coinbase, @danboneh, @drakefjustin, @sreeramkannan, @LindellYehuda, @dahlia_malkhi covers migration for major chains
Ethereum’s path is fairly well-understood by now, so the interesting read was seeing how Bitcoin, Solana, and the rest are planning to handle it
https://t.co/e5QvKR5D9A
A minimum DVN threshold inside one provider is redundancy, not shared security. Multiple DVNs under one organization still share the same team, same codebase and ops. The the M-of-N rule should sit a layer up, across independent providers.
@omarsar0 Totally agree with “The recommendation is clear. Omit LLM-generated context files entirely”. Use programming language’s “syntactic sugar” for expressiveness and runnable test cases for documenting business and interactions
@pakhandrin Чем лучше-то? Как быть с «мелочами» что их TUI до сих пор не поддерживает, например, курсор ввода. Перенос строки можно вставить только через экранирование \. Vim шорткаты не поддерживаются. Доколе будем UNIX/POSIX переизобретать?
@Dimillian Hey man. While going through your repo, I noticed this comment on one of the pull requests. Just curious — was this feedback given by you personally (a human who ran the code manually), or the job was done by an AI agent? https://t.co/AB16w81Rhd
Cc @AlexSmirnov
@mironov_ru Серёнь, ну ты же депутат и глава «оппозиционной» фракции. Ты зачем на заседания-то ходишь, чисто пожрать? Выскажись, против проголосуй. У тебя целая фракция кнопкодавов там кормится. Хули ты во вражеской соцсети ноешь-то? Или кувалда повисла?
@alam4freedom@KlonD90@KlonD90 Если ищешь опыт и контриб в опенсорс, то есть идея вот этот проект попробовать воскресить https://t.co/oy35NV3tWv и адаптировать его под ERC-7683 формат обмена intent-сообщениями