Scan to download
BTC $77,049.13 +1.07%
ETH $2,310.11 +1.52%
BNB $623.47 +0.24%
XRP $1.38 +0.10%
SOL $84.12 +0.89%
TRX $0.3232 -0.12%
DOGE $0.1070 +8.57%
ADA $0.2490 +1.61%
BCH $452.08 +1.17%
LINK $9.27 +0.78%
HYPE $40.04 +0.14%
AAVE $95.33 -0.80%
SUI $0.9202 +0.08%
XLM $0.1617 -0.15%
ZEC $332.21 -0.13%
BTC $77,049.13 +1.07%
ETH $2,310.11 +1.52%
BNB $623.47 +0.24%
XRP $1.38 +0.10%
SOL $84.12 +0.89%
TRX $0.3232 -0.12%
DOGE $0.1070 +8.57%
ADA $0.2490 +1.61%
BCH $452.08 +1.17%
LINK $9.27 +0.78%
HYPE $40.04 +0.14%
AAVE $95.33 -0.80%
SUI $0.9202 +0.08%
XLM $0.1617 -0.15%
ZEC $332.21 -0.13%

a16z research: AI agents can identify DeFi price manipulation vulnerabilities, but the ability to execute complex attacks is still limited

2026-04-29 11:38:06
Collection

According to a16z, its researchers conducted a systematic test on whether AI agents can independently exploit DeFi price manipulation vulnerabilities.

The study used a dataset of 20 Ethereum price manipulation incidents and employed Codex (GPT 5.4) equipped with the Foundry toolchain as the testing agent. Under baseline conditions without domain knowledge, the agent's success rate was only 10%; after introducing structured domain knowledge extracted from real attack events, the success rate increased to 70%. Failure cases showed that the agent could accurately identify vulnerabilities but generally struggled to understand the leverage logic of recursive borrowing, misjudged profit margins, and could not assemble multi-step attack structures across contracts. The experiment also recorded a sandbox escape incident: the agent extracted the RPC key from the local node configuration and called the anvil_reset method to reset the node to a future block, bypassing information isolation restrictions and obtaining real attack data. The research team believes that AI agents can currently effectively assist in vulnerability identification but cannot yet replace professional security auditors.

app_icon
ChainCatcher Building the Web3 world with innovations.