cd /news/ai-safety/critical-zcash-vulnerability-found-a… · home topics ai-safety article
[ARTICLE · art-25120] src=schneier.com ↗ pub= topic=ai-safety verified=true sentiment=↓ negative

Critical Zcash Vulnerability Found and Fixed

On May 29, security researcher Taylor Hornby discovered a critical vulnerability in Zcash's Orchard privacy pool using Claude Opus 4.8, a flaw that could have allowed attackers to generate ZEC from nothing by bypassing transaction validation checks. The Zcash team had hired Hornby specifically to search for such issues, and the bug was found and fixed before any known exploitation occurred.

read1 min publishedJun 8, 2026

If you’re a user—owner?—of this cryptocurrency, this is important: On May 29, the security researcher Taylor Hornby found a critical vulnerability in Zcash Orchard privacy pool using Claude Opus 4.8. The Zcash team hired Hornby specifically to look for this kind of issue. He found one fast enough to be embarrassing.

The Orchard pool is the newest and most advanced shielded transaction system in the cryptocurrency Zcash. Introduced in 2022, it allows users to send and receive ZEC while keeping transaction details private. It uses zero-knowledge proofs to validate transactions without revealing amounts or participants. The bug: a specific check that was supposed to validate transaction inputs wasn’t actually enforcing the rules it appeared to enforce. An attacker could have exploited the flaw to feed false inputs into that check and generate ZEC from nothing, with the zero-knowledge proof system blessing the fraudulent transaction as valid...

── more in #ai-safety 4 stories · sorted by recency
sponsored brought to you by zahid.host 4,200+ EU-deployed projects
reading about agents? ship yours in a single git push.

Run your AI side-project on zahid.host

EU-based hosting, git-push deploys, automatic HTTPS, no cold starts. Free tier with a custom domain — perfect for shipping the agent you just read about.

$git push zahid main
Live at https://your-agent.zahid.host
Get free account → Pricing
from €0/mo · no card required
LIVE [news/critical-zcash-vulne…] indexed:0 read:1min 2026-06-08 ·