
A single researcher using Anthropic's Claude Opus 4.8 found a critical weakness in Zcash's shielded pool within a day. The same tools are now being used in crypto crime at scale, SlowMist reports.
On May 29, independent security researcher Taylor Hornby used Anthropic's Claude Opus 4.8 model to scan Zcash's codebase. Within a day, he identified a flaw in the Orchard shielded pool that had gone undetected since the protocol's launch four years ago.
Zcash engineers deployed an emergency soft fork days later and activated the NU6.2 hard fork on June 3.
The same model class that saved Zcash could have been used to exploit it. In a separate report, blockchain security firm SlowMist documented a surge in AI-driven crypto crime, including automated phishing and smart-contract vulnerability scanning.
The gap between defenders and attackers using AI is shrinking. Hornby's discovery required a custom framework and a single model. The cost of replicating that effort for malicious purposes is dropping fast.
Anthropic restricts access to its most advanced Mythos models to vetted security teams. The company said Mythos-class models can "discover and exploit software vulnerabilities and run portions of agentic cyber operations on their own." After the Zcash fix, Zcash founder Zooko Wilcox said a Mythos audit "did not find any more serious bugs."
A clean audit holds only until the next generation of models ships. ZEC holders saw the token drop 60% in the months after the disclosure, despite the flaw never being exploited.
The NU6.2 hard fork activated on June 3, closing the Orchard vulnerability.
Drafted by a large language model from the source reporting linked above, then screened by automated publishing checks. It is not read by a journalist before publication. Some articles cite our Alpha Score. Verify prices and figures against the original source. Educational coverage, not personalized advice.