Bitcoin Red Team Surfaces 7,958 Security Findings Across 390 Projects Using Moonshot AI's Kimi K3
Key Takeaways
- •A two-week AI-assisted audit using Moonshot AI's Kimi K3 model catalogued 7,958 potential vulnerabilities across roughly 390 Bitcoin open-source projects, with 1,280 rated high or critical severity.
- •BTCPay Server patched a critical two-factor authentication bypass in version 2.4.2 and confirmed that attackers had already exploited the flaw to extract Lightning wallet credentials.
- •At the time of reporting, only about a quarter of the findings had been dynamically reproduced and fewer than 30% had been communicated to upstream maintainers.
- •The sweep targeted wallets, Lightning infrastructure, and adjacent tools rather than Bitcoin's core consensus protocol, which has not been shown to be compromised.
- •OpenSats created a fast-tracked grant route for AI model costs, while a coalition of more than 40 Bitcoin and digital-asset organizations petitioned AI laboratories to give vetted defenders controlled access to frontier models.

A Bitcoin Red Team initiative built around Kimi K3, a frontier model from Beijing-based AI laboratory Moonshot AI, has completed a comprehensive security sweep of the Bitcoin open-source ecosystem, surfacing thousands of potential vulnerabilities in the software stack that supports the network.
Over a two-week period, researchers catalogued 7,958 findings across approximately 390 projects, with 1,280 classified as high or critical severity. The team described the exercise as a collision between decades of accumulated human-written open-source code and the analytical speed of a modern frontier AI model, noting that much of the low-hanging vulnerability surface has now been examined.
Independent assessments by the U.K. AI Security Institute and the U.S. Center for AI Security Standards and Innovation (CAISI) — the government institutes that evaluate frontier AI models — have corroborated the model's relevance to cybersecurity work, while noting that it still trails the strongest closed U.S. models on certain exploit-development benchmarks.
The campaign has already produced concretely validated results. BTCPay Server, a widely used self-hosted open-source payment processor that lets merchants accept Bitcoin without a third-party intermediary, patched a critical two-factor authentication bypass in version 2.4.2 after researchers disclosed the flaw, and subsequently confirmed that attackers had already exploited it to extract Lightning wallet credentials. Additional coordinated releases followed as the project processed further reports from multiple research groups.
Figures Require Careful Interpretation
The numbers nonetheless call for context. At the time of reporting, roughly one-quarter of the total issues had been dynamically reproduced, and just under 30% had been communicated to upstream maintainers. The dataset does not represent 7,958 confirmed exploitable vulnerabilities: automated scans can generate false positives and duplicate reports, and preliminary severity ratings frequently shift during manual investigation.
Researchers stressed that the sweep targeted the broader ecosystem of wallets, Lightning infrastructure, payment libraries, and adjacent tools rather than Bitcoin's core consensus protocol itself. Lightning, a second-layer payment network built on top of Bitcoin, adds channel-management and routing logic that sits outside the base protocol's consensus rules. Vulnerabilities were concentrated particularly in older or lightly reviewed codebases, with the Lightning network stack described as presenting disproportionate complexity and exposure relative to other components. The prevalence of C-based implementations was also flagged as a persistent structural risk factor across the reviewed projects, echoing a long-standing industry concern: memory-safety errors in C code are among the most common sources of critical vulnerabilities, a recognition that has driven growing adoption of memory-safe languages such as Rust in security-sensitive software.
One participant in the initiative, posting as calle on X, described the dynamic:
gained a ton of new insights working in bitcoin red team that i wish i could share without vague posting. but this is what i got anon. – we're experiencing a massive collision between decades of human open source slop against 2 weeks of kimi k3 (not good) – everything is…
— calle (@callebtc), August 13, 2026
Ecosystem Races to Adapt as AI Redefines Security Timelines
The campaign signals a broader inflection point in open-source cybersecurity. Frontier AI models have dramatically compressed the cost and timeline of vulnerability discovery, making it possible to review years of accumulated code in a matter of weeks. The acceleration creates acute risk for unmaintained projects, where legacy code now faces heightened exposure as offensive capabilities become accessible to a wider range of actors.
Organizers emphasized that response speed to disclosed issues has emerged as a critical indicator of project health, and advised development teams to build continuous AI-assisted audit pipelines rather than relying on periodic external reviews alone. They also underscored the importance of coordinated disclosure — the established practice of privately reporting flaws to maintainers and allowing time for fixes before publication — noting that trust between researchers and maintainers remains essential for effective security collaboration.
The ecosystem is mobilizing to prevent a widening capability gap between attackers and defenders. OpenSats, a nonprofit that funds free and open-source Bitcoin development, has established a fast-tracked grant route designed to reimburse researchers for large language model costs, lowering the barrier to sustained AI-powered security work. Separately, a coalition of more than 40 Bitcoin and digital-asset organizations has petitioned leading AI laboratories to provide vetted open-source defenders with controlled access to frontier models in secure research environments, complete with sufficient compute and direct communication channels to AI security teams. The coalition warned that without comparable tooling, legitimate defenders risk falling behind malicious actors, who face no such access restrictions.
BTCPay supporters have also backed recovery efforts and pledged funding to the Bitcoin Red Team initiative, reflecting growing recognition that external security review is a permanent rather than temporary ecosystem need.
For everyday users, the immediate takeaway is narrower than the headline figures suggest: the base Bitcoin protocol has not been shown to be compromised, but the surrounding software infrastructure demands heightened vigilance, starting with keeping wallet and server software current. As automated discovery continues to scale, the central bottleneck in cryptocurrency security is shifting from finding flaws to verifying, disclosing, and patching them at a pace that matches the speed of modern AI. The concrete markers to watch follow from the campaign's own figures: how much of the roughly 70% of findings not yet communicated upstream reach maintainers, whether AI laboratories grant the requested defender access, and how quickly projects such as BTCPay Server turn further disclosures into patched releases.
Source: Metaverse Post