Close Menu
Invest Intellect
    Facebook X (Twitter) Instagram
    Invest Intellect
    Facebook X (Twitter) Instagram Pinterest
    • Home
    • Commodities
    • Cryptocurrency
    • Fintech
    • Investments
    • Precious Metal
    • Property
    • Stock Market
    Invest Intellect
    Home»Cryptocurrency»New attack can steal cryptocurrency by planting false memories in AI chatbots
    Cryptocurrency

    New attack can steal cryptocurrency by planting false memories in AI chatbots

    May 13, 20253 Mins Read


    The researchers wrote:

    The implications of this vulnerability are particularly severe given that ElizaOSagents are designed to interact with multiple users simultaneously, relying on shared contextual inputs from all participants. A single successful manipulation by a malicious actor can compromise the integrity of the entire system, creating cascading effects that are both difficult to detect and mitigate. For example, on ElizaOS’s Discord server, various bots are deployed to assist users with debugging issues or engaging in general conversations. A successful context manipulation targeting any one of these bots could disrupt not only individual interactions but also harm the broader community relying on these agents for support
    and engagement.

    This attack exposes a core security flaw: while plugins execute sensitive operations, they depend entirely on the LLM’s interpretation of context. If the context is compromised, even legitimate user inputs can trigger malicious actions. Mitigating this threat requires strong integrity checks on stored context to ensure that only verified, trusted data informs decision-making during plugin execution.

    In an email, ElizaOS creator Shaw Walters said the framework, like all natural-language interfaces, is designed “as a replacement, for all intents and purposes, for lots and lots of buttons on a webpage.” Just as a website developer should never include a button that gives visitors the ability to execute malicious code, so too should administrators implementing ElizaOS-based agents carefully limit what agents can do by creating allow lists that permit an agent’s capabilities as a small set of pre-approved actions.

    Walters continued:

    From the outside it might seem like an agent has access to their own wallet or keys, but what they have is access to a tool they can call which then accesses those, with a bunch of authentication and validation between.

    So for the intents and purposes of the paper, in the current paradigm, the situation is somewhat moot by adding any amount of access control to actions the agents can call, which is something we address and demo in our latest latest version of Eliza—BUT it hints at a much harder to deal with version of the same problem when we start giving the agent more computer control and direct access to the CLI terminal on the machine it’s running on. As we explore agents that can write new tools for themselves, containerization becomes a bit trickier, or we need to break it up into different pieces and only give the public facing agent small pieces of it… since the business case of this stuff still isn’t clear, nobody has gotten terribly far, but the risks are the same as giving someone that is very smart but lacking in judgment the ability to go on the internet. Our approach is to keep everything sandboxed and restricted per user, as we assume our agents can be invited into many different servers and perform tasks for different users with different information. Most agents you download off Github do not have this quality, the secrets are written in plain text in an environment file.

    In response, Atharv Singh Patlan, the lead co-author of the paper, wrote: “Our attack is able to counteract any role based defenses. The memory injection is not that it would randomly call a transfer: it is that whenever a transfer is called, it would end up sending to the attacker’s address. Thus, when the ‘admin’ calls transfer, the money will be sent to the attacker.”



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

    Related Posts

    JEX AI connects cryptocurrency investors to real-world NVIDIA AI GPUs, enabling them to profit through AI computing leases.

    Cryptocurrency

    Are Decentralized Exchanges The Future Of Cryptocurrency Trading?

    Cryptocurrency

    Decoding The Digital Marketplace: A Complete Beginner’s Guide To Cryptocurrency Exchanges

    Cryptocurrency

    Record surge in Norwegians reporting crypto « Euro Weekly News

    Cryptocurrency

    Money 20/20 2025: The Increasing Use of Stablecoins Shows No Sign of Slowing Down

    Cryptocurrency

    Burt co-chairs digital assets discussion at Saudi forum – The Royal Gazette

    Cryptocurrency
    Leave A Reply Cancel Reply

    Top Picks
    Investments

    Here’s Why Wing Lee Property Investments (HKG:864) Has A Meaningful Debt Burden

    Commodities

    des kits pour accélérer l’adoption du gaz naturel comprimé (GNC)

    Commodities

    This mysterious DOE ‘hit list’ has the clean-energy world on edge

    Editors Picks

    A Brant County resident lost $18,500 in a cryptocurrency scam

    June 21, 2025

    How Technology And Advisory Are Shaping Accounting’s Future

    October 16, 2025

    BitQueen fraudster behind £5.1billion con gives police access to £67million in crypto currency after they find digital storage device in her jogging bottoms

    October 16, 2025

    Where Commodities Have A Place In A Growing Investor’s Portfolio

    January 7, 2025
    What's Hot

    Jeff Bezos Investments in 2025: 12 Companies Bezos Is Investing In

    March 2, 2025

    The great crypto crackdown: Police have frozen up to £6MILLION of digital currencies since getting powers to stop criminals funding terrorism and laundering ill-gotten gains

    March 30, 2025

    Trôo continue de mettre en valeur les artistes de la région

    May 13, 2025
    Our Picks

    Two-Alarm Fire at Scrap Metal Debris Site in St. Petersburg

    October 17, 2024

    MSCI and Moody’s to Launch Independent Risk Assessments for Private Credit Investments

    April 21, 2025

    Adam Silver s’exprime sur le projet de future ligue NBA en Europe

    January 24, 2025
    Weekly Top

    This Dividend Stock Down 20% is My Contrarian Buy of the Year

    October 29, 2025

    Trump touts ‘$18 trillion’ of investments in US, blasts Jerome ‘too late’ Powell as ‘incompetent’

    October 29, 2025

    BAB asks banks to sponsor fintech event by little-known UK firm; MDs question credibility

    October 29, 2025
    Editor's Pick

    FinTech Magazine Publishes Editorial Top 100 FinTech Companies 2025

    October 7, 2025

    Best Fintech Stocks Offering Compelling Long-Term Upside

    September 2, 2025

    Loyalty programmes specialist Reward brings in FinTech and data veteran Yekaterina Gusin as CFO — Retail Technology Innovation Hub

    August 13, 2024
    © 2025 Invest Intellect
    • Contact us
    • Privacy Policy
    • Terms and Conditions

    Type above and press Enter to search. Press Esc to cancel.