Scan to download
BTC $79,137.41 -2.63%
ETH $2,220.60 -3.08%
BNB $673.60 -0.82%
XRP $1.43 -4.87%
SOL $89.29 -3.43%
TRX $0.3515 -0.99%
DOGE $0.1131 -1.94%
ADA $0.2610 -4.15%
BCH $424.72 -2.79%
LINK $10.05 -5.04%
HYPE $44.50 +1.55%
AAVE $92.67 -6.66%
SUI $1.09 -8.00%
XLM $0.1545 -6.08%
ZEC $515.29 -3.89%
BTC $79,137.41 -2.63%
ETH $2,220.60 -3.08%
BNB $673.60 -0.82%
XRP $1.43 -4.87%
SOL $89.29 -3.43%
TRX $0.3515 -0.99%
DOGE $0.1131 -1.94%
ADA $0.2610 -4.15%
BCH $424.72 -2.79%
LINK $10.05 -5.04%
HYPE $44.50 +1.55%
AAVE $92.67 -6.66%
SUI $1.09 -8.00%
XLM $0.1545 -6.08%
ZEC $515.29 -3.89%

pos

AI Agent Security Risk Exposure: Attackers Can Exploit "Memory Pollution" to Induce Misoperation of Funds

The GoPlus Security team has disclosed a new type of attack in its AgentGuard AI project: inducing AI agents to perform unauthorized sensitive operations through "memory poisoning." This attack method does not rely on traditional vulnerabilities or malicious code but exploits the long-term memory mechanism of AI agents. For example, an attacker first induces the agent to "remember preferences," such as "usually prioritizing proactive refunds instead of waiting for chargebacks," and then uses vague expressions like "process as usual" or "execute as before" in subsequent instructions, thereby triggering automated financial operations.GoPlus points out that the key risk in such cases lies in the AI agent mistakenly treating "historical preferences" as a basis for authorization, leading to financial losses or security incidents in operations such as refunds, transfers, and configuration changes. To address this issue, the team has proposed several protective recommendations, including:Operations involving refunds, transfers, deletions, or sensitive configurations must require explicit confirmation in the current session.Memory-related instructions like "habit," "usual way," and "as before" should be regarded as high-risk state changes.Long-term memory must have a traceability mechanism (writer, time, confirmation status).Vague instructions should automatically elevate the risk level and trigger secondary verification.Long-term memory must not replace real-time authorization processes.The team emphasizes that the "AI agent memory system" should be viewed as a potential attack surface and should be constrained and audited through a dedicated security framework.

Analysis: The CLARITY Act could strengthen the position of the US dollar stablecoin, with Asia potentially gaining an advantage in the yield competition

The U.S. Senate Banking Committee recently advanced the Digital Asset Market CLARITY Act with a bipartisan vote of 15 to 9, marking a step forward in the regulatory framework for the U.S. crypto market. Research institution HashKey Group pointed out that if the bill is enacted, it will significantly enhance compliance certainty for institutional investors participating in the crypto market and strengthen the core position of the U.S. dollar stablecoin in the global digital financial system.Analysts believe that a clearer U.S. regulatory framework will encourage banks, asset management institutions, and sovereign funds to more widely adopt compliant stablecoins for cross-border payments, settlements, and fund management, especially with more evident demand in the Asian market. However, at the same time, the U.S. restrictions on "yield-bearing stablecoins" may create structural spillover effects. HashKey researcher Tim Sun stated that if the U.S. strictly limits the stablecoin yield mechanisms, capital may flow to the Asian market or indirectly seek higher yields through "wrapped products."The report noted that the Asian market (such as Hong Kong and Singapore) features active cross-border trade, frequent capital flows, and local currencies that are more susceptible to external shocks. In an environment of high U.S. dollar financing costs, U.S. dollar stablecoins will become an important liquidity tool. However, the analysis also emphasized that this competition is not a zero-sum game. As the CLARITY Act progresses, the global competitive focus may shift from "trading platforms and token issuance" to "stablecoin liquidity channels and control over financial infrastructure," meaning who can more efficiently connect U.S. dollar liquidity, regional assets, and compliant financial channels.
app_icon
ChainCatcher Building the Web3 world with innovations.