Key facts
- Bitcoin Red Team, a volunteer security group, conducted an AI-assisted review of Bitcoin projects.
- The audit identified 4,962 potential security issues across 390 open-source repositories.
A volunteer group called Bitcoin Red Team, using AI and human review, has identified 4,962 potential security issues across 390 open-source Bitcoin projects in less than 30 hours. Of these, 720 are considered high- or critical-level.
The extensive discovery of potential vulnerabilities highlights significant security risks within the Bitcoin ecosystem, potentially impacting user funds and the overall stability of the network, especially following recent high-profile hacks.
A volunteer security initiative known as Bitcoin Red Team has reported discovering nearly 5,000 potential security vulnerabilities during a rapid, AI-assisted audit of the Bitcoin ecosystem. The group, comprising 16 volunteers including Bitcoin developer Calle and AnchorWatch CEO Rob Hamilton, utilized AI tools alongside human review to scan open-source Bitcoin-related repositories.
In the first 29.8 hours of its operation, the team identified 4,962 potential issues across 390 projects. According to Calle, as many as 720 of these findings are classified as high- or critical-level vulnerabilities. The group has been able to reproduce 21.4% of the identified issues so far. Calle noted the current environment is chaotic, with many people facing numerous security concerns.
This security review campaign follows closely on the heels of a significant hack of the Coldcard hardware wallet, which resulted in the theft of over $100 million in Bitcoin.