BTC $64,717.08 +0.47%
ETH $1,921.16 +0.46%
BNB $588.34 +3.25%
XRP $1.08 -0.05%
SOL $74.14 +0.39%
TRX $0.3282 +0.42%
DOGE $0.0700 -0.62%
ADA $0.1639 +0.21%
BCH $210.83 -0.52%
LINK $8.44 +0.62%
HYPE $53.15 -3.12%
AAVE $98.21 +0.57%
SUI $0.6929 +0.66%
XLM $0.1726 -0.76%
ZEC $476.40 +3.54%
BTC $64,717.08 +0.47%
ETH $1,921.16 +0.46%
BNB $588.34 +3.25%
XRP $1.08 -0.05%
SOL $74.14 +0.39%
TRX $0.3282 +0.42%
DOGE $0.0700 -0.62%
ADA $0.1639 +0.21%
BCH $210.83 -0.52%
LINK $8.44 +0.62%
HYPE $53.15 -3.12%
AAVE $98.21 +0.57%
SUI $0.6929 +0.66%
XLM $0.1726 -0.76%
ZEC $476.40 +3.54%

security

All
Article
Flash

Claude discovered vulnerabilities in the encryption algorithm, posing a theoretical threat to post-quantum security

Anthropic announced that the Claude Mythos Preview model has made breakthroughs in cryptographic research, discovering improved attack methods against the post-quantum digital signature candidate HAWK. HAWK is a post-quantum signature candidate solicited by NIST to combat quantum computer attacks, which has already passed two rounds of expert review. However, Claude reduced the effective key strength of HAWK-256 from 2^64 to 2^38 in just 60 hours, significantly lowering the theoretical cost of cracking. HAWK has not yet been deployed in practice, and this attack currently does not affect any production systems.Claude also discovered an improved attack against 7-round AES, achieving a speed increase of 200 to 800 times. During the research process, Claude independently completed literature reviews, mathematical reasoning, and experimental validation with limited guidance from cryptographers. The HAWK attack took about 60 hours and had an API cost of approximately $100,000; the AES attack was completed independently by Claude, which generated about 1 billion tokens before proposing core innovative ideas. Anthropic researchers then spent hundreds of hours validating the results. Anthropic stated that AI models can now help identify significant flaws in cryptographic algorithms, and the cryptography community may face bottlenecks similar to those in the software vulnerability field—AI-generated research results far exceed human verification capabilities. Anthropic has collaborated with academic institutions to launch the CryptanalysisBench benchmark and coordinated disclosures with NIST authors and government partners. The research team has achieved preliminary results on algorithms such as LEA and Serpent-128. Anthropic warns that as AI capabilities improve, actual attacks against deployed systems may be discovered in the future, necessitating the establishment of response mechanisms in advance.

OKX, in collaboration with Elliptic, SlowMist, and OttoSec, released the Web3 Security and Risk Control Report for the first half of 2026

According to official news, OKX, in collaboration with Elliptic, SlowMist, and OttoSec, has released the "Web3 Security and Risk Control Report for the First Half of 2026." The report points out that the focus of Web3 attacks is gradually shifting from smart contract code to more complex scenarios such as signature processes, user devices, operational infrastructure, and AI Agents.Data shows that in the first half of 2026, the OKX risk control system intercepted over 5.7 million high-risk transactions, including approximately 2.41 million transactions related to hacking and theft, about 1.48 million transactions related to phishing, and around 990,000 transactions related to fraud. The OKX Web3 on-chain intelligence label library currently has over 1 billion labels, covering more than 420 chains, and has integrated capabilities such as address screening, transaction monitoring, and sanction address control into infrastructures like DEX and Exchange OS.In addition, in terms of user protection, OKX has intercepted over 7 million visits to risky websites, completed over 200,000 device risk assessments, identified over 60,000 high-risk apps, and intercepted or alerted on over 4 million high-risk signature operations. The report also introduces the "risk control pre-positioning" design in scenarios such as Exchange OS, Outcomes, RWA, and Agentic Wallet.

BlackRock, Strategy, and others jointly established the Bitcoin Security Alliance, committing to provide $15 million in funding for core developers and quantum resistance research over the next three years

Nine financial institutions and Bitcoin companies announced the joint establishment of the Bitcoin Security Alliance, with founding members including Anchorage Digital, ARK Invest, BlackRock, Block, Blockstream, Coinbase, Fidelity, Galaxy, and Strategy, covering the entire chain of institutions such as custody, trading, infrastructure, payments, and asset management.The alliance commits to providing a total of $15 million in funding over the next three years to support developers and researchers in the field of Bitcoin security, including long-term work to prepare Bitcoin for the future era of quantum computing. Each member independently decides which developers, researchers, or organizations to direct their funding towards. The daily operations of the alliance are coordinated on a voluntary basis by Brink Executive Director Mike Schmidt, with Brink being a nonprofit organization that funds Bitcoin open-source developers.The alliance clearly states that it does not formulate or direct Bitcoin protocols, does not express opinions on specific protocol changes, and does not represent Bitcoin or its developers—Bitcoin development continues to be carried out by a globally decentralized community of contributors. Its positioning is to emulate the model of industry organizations that have long supported open-source software, providing resources and attention to developers without controlling the underlying work.Strategy CEO Phong Le stated, "As long-term holders, ensuring the security of Bitcoin for generations is our greatest incentive"; BlackRock's Global Head of Digital Assets Robert Mitchnick pointed out that the work of Bitcoin core developers is "extremely important," and this commitment will provide "significant additional funding" for Bitcoin's long-term security needs. The alliance will also serve as a reliable source of information for investors, the public, and the media in the field of Bitcoin security, with plans to publish and continuously update materials related to Bitcoin security in the coming months.

CertiK: The losses from wrench attacks have surged nearly 12 times, making operational security the new core of prevention

Web3 security company CertiK released the "2026 First Half Wrench Attack Report." The report shows that in the first half of 2026, a total of 52 publicly verified wrench attack incidents were recorded globally, an increase of 33.3% year-on-year; related losses amounted to approximately $124 million, an increase of about 11.8 times compared to the same period last year.The report points out that attackers are shifting from exploiting technical vulnerabilities to targeting asset holders and their real-world relationship networks, with home invasion incidents rising from 1 in the first half of 2025 to 20, accounting for 41% of the total incidents during the same period. Europe has become a high-frequency attack region, with 33 incidents occurring in France, accounting for 63.5% of global cases.CertiK states that as real-world risks become a significant challenge for digital asset security, businesses and high-value individuals need to establish a more comprehensive protection system. CertiK has launched operational security services to help identify risks related to the exposure of information such as identity, home, residence, and travel trajectory; at the same time, through CertiK Security Workspace, it correlates off-chain intelligence, on-chain transactions, and AML risk signals to support institutions in tracking and analyzing cybercrime activities.In addition, CertiK is strengthening cooperation with international law enforcement agencies such as Interpol and Europol to provide technical support for cross-border attack investigations and security policy research.
app_icon
ChainCatcher Building the Web3 world with innovations.