Critical Zcash Vulnerability Found and Fixed

2026-06-08T19:23:43Z33ff5612df428341c693f85c0ef647755b6fde6271ec3785be04f60440ed4d6d
Melissa-HathawayTaylor-Hornbyaccount-takeoverai-enabled-vuln-discoveryai-wormanthropicbitlockerchatbot-abusecryptocurrencyinflation-bugllmmalwaremeta-aimicrosoftmythosorchardpatchproject-glasswingresponsible-disclosurevulnerabilityvulnerability-disclosurezcashzero-knowledge-proofs

What happened

Bruce Schneier summarizes multiple high-impact security stories: a critical vulnerability in Zcash’s Orchard shielded pool (discovered by Taylor Hornby) allowed attackers to feed malformed inputs that could be accepted by the zero-knowledge proof system, potentially minting ZEC from nothing — the flaw has been found and fixed. Other notable items: Anthropic’s Project Glasswing/Mythos is surfacing a large number of (mostly unpatched) software vulnerabilities; researchers prototyped an AI-powered worm that carries an LLM; attackers abused Meta’s AI support chatbot to perform Instagram account-tw

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
schneier_blog
Record identifier
33ff5612df428341c693f85c0ef647755b6fde6271ec3785be04f60440ed4d6d
Enrichment time
2026-06-08T19:23:43Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Critical Zcash Vulnerability Found and Fixed · Baitaphish