Coldcard 制造商 Coinkite:AI 代码审查未能发现安全漏洞,警示比特币硬件和软件行业

Coldcard 制造商 Coinkite:AI 代码审查未能发现安全漏洞,警示比特币硬件和软件行业

2026-08-05 13:44

ChainThink 消息,Coldcard 制造商 Coinkite 表示,黑客发现的漏洞对所有开发比特币硬件和软件的公司都是一个警示,不仅限于其自身。

Coinkite 称,其在漏洞被利用前几周曾对关键代码库进行 AI 辅助审查,但未能发现该问题。

事发后,公司又使用 Kimi K3、Claude Fable 和 Codex 5.6 等前沿模型测试代码,结果同样没有识别出该漏洞。

Coinkite 提醒,如果团队依赖 AI 审查安全关键代码,应专门针对构建和子模块边界进行测试。

该公司认为,这类问题可能出现在两个独立软件组件的交互处,而不是审查对象通常聚焦的父代码或加密逻辑中。

Disclaimer: Contains third-party opinions, does not constitute financial advice

Recommended Reading

NVIDIA attracts $85 billion in investor demand during massive bond issuance

06-16
NVIDIA attracts $85 billion in investor demand during massive bond issuance

Ethereum surges over 10% in 24 hours, currently priced at $1,841.31

06-16
Ethereum surges over 10% in 24 hours, currently priced at $1,841.31

Amazon announces a multi-billion dollar investment in Missouri to build a data center campus, expected to create over 400 long-term positions

06-16
Amazon announces a multi-billion dollar investment in Missouri to build a data center campus, expected to create over 400 long-term positions

Binance Platform's SpaceX Perpetual Contract Trading Volume Surpasses $9 Billion, Capturing Over 60% Market Share

06-16
Binance Platform's SpaceX Perpetual Contract Trading Volume Surpasses $9 Billion, Capturing Over 60% Market Share

Binance platform XLM/USDT short-term spike down to $0.17, now recovered to $0.225

06-16
Binance platform XLM/USDT short-term spike down to $0.17, now recovered to $0.225

Trump: The Strait of Hormuz has been fully reopened as of Friday, and all agreements have been signed

06-16
Trump: The Strait of Hormuz has been fully reopened as of Friday, and all agreements have been signed

SlowMist: Aztec Connect Contract Hacked for $2.19 Million Due to ZK-Rollup L1/L2 State Boundary Vulnerability

06-15
SlowMist: Aztec Connect Contract Hacked for $2.19 Million Due to ZK-Rollup L1/L2 State Boundary Vulnerability