Connect with us

Crypto World

Moonwell’s AI-coded oracle glitch misprices cbETH at $1, drains $1.78M

Published

on

Crypto VC Funding Reaches $244M as Mesh Leads

Moonwell’s lending pools racked up about $1.78M in bad debt after a cbETH oracle mispriced the token at nearly $1 instead of around $2.2k, enabling bots and liquidators to drain collateral within hours of a misconfigured Chainlink-based update reportedly using AI-generated logic.

Summary

  • Misconfigured cbETH oracle set price near $1 vs roughly $2.2k, triggering a ~99% valuation gap that broke Moonwell’s collateral math.
  • Liquidators repaid around $1 per position to seize over 1,096 cbETH, leaving Moonwell with roughly $1.78M in protocol-level bad debt.
  • Faulty formula and scaling logic were reportedly co-authored by AI model Claude Opus 4.6, spotlighting new DeFi risk around AI-written oracle and pricing code.

Decentralized finance lending protocol Moonwell suffered a $1.78 million exploit due to a pricing oracle bug that misvalued Coinbase-wrapped ETH (cbETH), according to reports from the platform.

Advertisement

The vulnerability originated in oracle calculation logic reportedly generated by the AI model Claude Opus 4.6, which introduced an incorrect scaling factor in the asset price feed, according to the protocol’s disclosure. Attackers borrowed against severely underpriced collateral, extracting funds before the error was detected and corrected.

The cbETH mispricing effectively collapsed the collateral requirement for borrowing within affected pools. Because lending systems rely on accurate collateral ratios, the incorrect price allowed attackers to extract assets with minimal backing value, according to the protocol’s technical analysis.

Price oracles represent critical security components in DeFi lending systems. Incorrect asset valuation can enable under-collateralized borrowing or liquidation failures. Many major DeFi exploits have historically involved oracle manipulation or pricing errors rather than core protocol flaws, according to industry security reports.

The Moonwell incident differs from traditional oracle exploits in that the faulty logic appears linked to automated AI code generation rather than malicious oracle data feeds, according to the protocol’s preliminary investigation.

The exploit highlights risks associated with AI-assisted smart-contract development in financial applications. Language models can accelerate coding workflows, but financial protocols require precise numerical correctness, unit handling and edge-case validation, according to blockchain security experts.

Advertisement

In DeFi systems, small arithmetic or scaling mistakes can translate into systemic vulnerabilities affecting collateral valuation and solvency. The incident raises questions about whether AI-generated contract components may require stricter auditing standards than manually written code, according to security researchers.

AI-assisted development is increasingly used across Web3 engineering workflows, from contract templates to integration logic. Security models and audit frameworks have not yet fully adapted to AI-generated contract code, according to industry observers.

The broader implications center on how automated code generation errors in financial logic represent a new category of DeFi risk. Oracle math, scaling factors and unit conversions remain high-precision domains where automation failures can propagate into protocol-level vulnerabilities, according to technical analysis of the incident.

As AI-assisted smart-contract development expands, audit methodologies will likely need to evolve toward verifying not only code correctness but generation provenance and numerical invariants, according to blockchain security firms.

Advertisement

Source link

Advertisement
Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Crypto World

Bitcoin Range-Bound Under Pressure as Analysts Eye $55,000

Published

on

Bitcoin Range-Bound Under Pressure as Analysts Eye $55,000


The longer Bitcoin remains rangebound, the more likely it is to fall further as the bear market deepens. 

Bitcoin is “range-bound under pressure,” having broken below the “True Market Mean,” slipping into a “defensive range toward the Realized Price,” of around $55,000, reported Glassnode on Wednesday. The on-chain analytics provider remained bearish, noting that demand across spot and derivative markets was weak.

“Spot flows and ETF demand remain weak, accumulation is fragile, and options positioning shows panic hedging fading, but not renewed bullish conviction.”

Glassnode noted that historically, deeper bear market phases have found their lower structural boundary around the Realized Price. This is a measure of the average acquisition cost of all circulating coins, which now stands near $54,900.

Advertisement

This level is almost 18% lower than current prices and would put the fall from peak to 56.4%, which is much shallower than the last two bear markets.

Market in Controlled Consolidation

The analysts also noted that the Accumulation Trend Score sits near 0.43, well short of the 1.0 level that would signal serious large-entity buying.

Spot Cumulative Volume Delta (CVD), which tracks the difference between market buy orders and market sell orders over time, has turned firmly negative across major exchanges such as Binance and Coinbase, meaning sellers are in control.

Glassnode concluded that the market is “transitioning from reactive liquidation to controlled consolidation.”

Advertisement

“For a durable recovery to emerge, renewed spot demand, sustained accumulation, and improving liquidity conditions will be required.”

You may also like:

Bitcoin network activity has also collapsed, according to Santiment, which reported on Wednesday that there have been large declines in new and unique addresses as Bitcoin’s utility declined in 2025.

Advertisement

“A justification for crypto beginning to see a true long-term relief rally will be when metrics like active addresses and network growth begin to rise.”

“BTC is still strengthening its bear trend,” observed analyst Willy Woo, who said that volatility is a key metric to detect trends. Bitcoin entered its bear market when volatility spiked upwards quickly, he said, before adding:

“Volatility then continues to climb, meaning the bear trend is strengthening. Then volatility finds a peak in the mid to late phase bear market… that’s when the bear trend starts to weaken.”

BTC Price Outlook

Bitcoin continues to weaken, dropping below $66,000 briefly in late trading on Wednesday. It came just shy of $67,000 during the Thursday morning Asian trading session, but had not reclaimed it at the time of writing.

The asset has been trading sideways for the past two weeks, and the path of least resistance appears to be downwards.

SPECIAL OFFER (Exclusive)

SECRET PARTNERSHIP BONUS for CryptoPotato readers: Use this link to register and unlock $1,500 in exclusive BingX Exchange rewards (limited time offer).

Advertisement

Source link

Continue Reading

Crypto World

Ethereum Foundation Outlines Main Priorities For 2026

Published

on

Ethereum, Vitalik Buterin

The Ethereum Foundation has announced it is targeting faster transactions, smarter wallets, better cross-chain interoperability, and quantum-resistant security as its “protocol priorities” in 2026.

In a statement published on Wednesday, the Ethereum Foundation outlined several goals, including continuing to scale the gas limit — the maximum amount of computational work a block can handle — “toward and beyond” 100 million, a major topic of discussion among the Ethereum community in 2025. 

Ethereum, Vitalik Buterin
Source: Ethereum Foundation

Some members of the Ethereum community anticipate that the gas limit will increase significantly this year. In November, Ethereum educator Anthony Sassano said that the goal of significantly increasing Ethereum’s gas limit to 180 million in 2026 is a baseline, not a best-case scenario. 

“Post-quantum readiness” is a focus for Ethereum

The foundation highlighted the Glamsterdam network upgrade, scheduled for the first half of 2026, as a major priority. It also emphasized “post-quantum readiness” as a priority in its trillion-dollar security initiative.

On Jan. 24, Ethereum researcher Justin Drake said in an X post that the foundation had “formed a new Post-Quantum (PQ) team.” 

Advertisement

“Today marks an inflection in the Ethereum Foundation’s long-term quantum strategy,” Drake said.

The Ethereum Foundation said it will also focus on improving user experience in 2026, with an emphasis on enhancing smart wallets through native account abstraction and enabling smoother interactions between blockchains via interoperability.