- AI is increasingly becoming a tool for hackers, presenting a new threat to DeFi protocols.
- Experts recommend continuous security monitoring over one-time audits due to evolving attack methods.
- The resurgence of attacks on old and closed protocols highlights vulnerabilities in outdated infrastructure.
- Efforts are needed from the industry and regulators to combat cybercriminal activities effectively.
Emerging Threats in DeFi: AI Shortens the Lifespan of Smart Contract Audits
The rise of artificial intelligence (AI) as an ally for hackers poses significant challenges for decentralized finance (DeFi) protocols. According to experts, AI tools allow hackers to identify code vulnerabilities far more rapidly than ever before. This concerning development emphasizes the need for regular re-evaluation of smart contracts.
The Need for Continuous Security Monitoring
Cybersecurity specialists warn that a one-time audit prior to project launch is insufficient in safeguarding user assets amidst escalating losses from breaches expected by 2026. Ari Redbord, Head of Policy at TRM Labs, advocates for an industry shift towards continuous security monitoring. He argues that attack methods evolve faster than can be accounted for by an audit conducted at project initiation.
Redbord further highlights that audits based on outdated attack scenarios leave protocols susceptible to current threats as malicious actors continually adapt their strategies.
AI’s Role in Exploiting Old Vulnerabilities
Data from CertiK reveals that the crypto industry lost $1.32 billion due to hacks in the first half of 2026 alone. A notable trend is hackers returning to old or even closed protocols. Such attacks are likely facilitated by advanced automated tools capable of detecting hidden vulnerabilities within vast codebases.
A pertinent example involves blockchain Zcash, where Shielded Labs’ security engineer Taylor Hornby uncovered a critical vulnerability using Claude Opus 4.8’s auditing agent from Anthropic. This flaw existed undetected for around four years and could have silently allowed the creation of counterfeit assets within a key private pool network.
Old Projects Under Siege
Hackers increasingly target projects that have ceased operations. For instance, $2.1 million was stolen from Aztec Connect, inactive since March 2023; days later, mySwap’s smart contract was breached with $300,000 extracted despite no new liquidity being accepted for over six months.
On a positive note, white hat hacker 0xflorent recovered over $1.7 million worth of Ethereum locked due to an automatic return mechanism error in the ICO project Hong Coin dating back to 2016.
Redbord stresses that repeated audits are only part of the solution: “Protocols may shut down but someone must still pursue those attempting breaches,” urging both industry and regulators towards proactive measures against cybercriminal groups and money laundering schemes.
The crypto landscape faces unprecedented challenges with AI-enhanced hacking techniques threatening security frameworks across DeFi ecosystems globally—prompting urgent calls for robust defenses through continuous vigilance coupled with collaborative efforts between stakeholders aiming towards greater resilience against these emerging threats.