AI-Driven Attacks Cause Massive Losses in DeFi Sector

Thumbnail Image

The information displayed in the AIM should not be reported as representing the official views of the OECD or of its member countries.

AI-powered tools have enabled attackers to rapidly identify and exploit vulnerabilities in decentralized finance (DeFi) protocols, leading to over $1.1 billion in losses in the past year. Security experts warn that AI gives hackers a decisive advantage, making even established DeFi platforms unsafe.[AI generated]

Why's our monitor labelling this an incident or hazard?

The article explicitly discusses AI-powered coding agents used by attackers to find vulnerabilities in DeFi protocols, which have resulted in major exploits and billions in losses. The involvement of AI in enabling these attacks is clear, and the harm (financial loss, disruption of DeFi operations, loss of user funds) has already occurred. The warnings and advice to exit DeFi positions further underscore the severity of the realized harm. Hence, this is an AI Incident due to the direct link between AI use in attacks and the resulting harm to property and communities within the crypto ecosystem.[AI generated]
AI principles
SafetyAccountability

Industries
Financial and insurance servicesDigital security

Affected stakeholders
ConsumersBusiness

Harm types
Economic/Property

Severity
AI incident

AI system task:
Event/anomaly detectionReasoning with knowledge structures/planning


Articles about this incident or hazard

Thumbnail Image

No DeFi Is Safe Anymore, Warns Top Crypto Security Executive -- Why Is He Urging Everyone To Exit Positions?

2026-05-27
CCN - Capital & Celeb News
Why's our monitor labelling this an incident or hazard?
The article explicitly discusses AI-powered coding agents used by attackers to find vulnerabilities in DeFi protocols, which have resulted in major exploits and billions in losses. The involvement of AI in enabling these attacks is clear, and the harm (financial loss, disruption of DeFi operations, loss of user funds) has already occurred. The warnings and advice to exit DeFi positions further underscore the severity of the realized harm. Hence, this is an AI Incident due to the direct link between AI use in attacks and the resulting harm to property and communities within the crypto ecosystem.
Thumbnail Image

Is all of DeFi vulnerable due to AI agents finding potential exploit points? - Cryptopolitan

2026-05-27
Cryptopolitan
Why's our monitor labelling this an incident or hazard?
The article explicitly involves AI systems in the context of AI agents analyzing DeFi protocols for vulnerabilities, which is a form of AI use. The harms discussed include financial losses from hacks and undermined trust in DeFi, which are harms to property and communities. However, the article does not attribute any specific realized exploit directly to AI agents but rather warns about the potential for AI to increase vulnerability. This fits the definition of an AI Hazard, as the development and use of AI systems could plausibly lead to AI incidents (exploits causing harm) in the DeFi ecosystem. There is no indication of a new AI Incident or complementary information about mitigation or governance responses as the main focus.
Thumbnail Image

AI-driven DeFi attacks caused $722 million losses in April

2026-05-27
COINTURK NEWS
Why's our monitor labelling this an incident or hazard?
The event involves AI systems used maliciously to identify and exploit vulnerabilities in DeFi protocols, leading to substantial financial losses. This constitutes direct harm to property and communities dependent on these protocols, fulfilling the criteria for an AI Incident. The article details actual attacks and losses, not just potential risks, and explicitly links AI-driven methods to these harms. Therefore, the classification as an AI Incident is appropriate.
Thumbnail Image

DeFi app security shaken as $20B in value lost

2026-05-27
COINTURK NEWS
Why's our monitor labelling this an incident or hazard?
The article explicitly states that AI agents are now capable of independently finding vulnerabilities and launching attacks on DeFi protocols, which have already resulted in substantial financial losses and platform shutdowns. The AI system's role is pivotal in these incidents, as it accelerates and automates hacking beyond human capabilities, directly causing harm. This fits the definition of an AI Incident because the AI system's use has directly led to harm (financial loss and disruption) in a critical sector. Hence, the classification is AI Incident.
Thumbnail Image

DeFi Security Split Widens as AI-Linked Threats Fuel Debate

2026-05-27
Cointelegraph
Why's our monitor labelling this an incident or hazard?
The event involves AI systems in the form of AI coding agents and AI tools used by attackers to identify and exploit vulnerabilities in DeFi smart contracts, which are software systems that qualify as AI systems due to their autonomous and complex decision-making nature. The use of AI has directly or indirectly led to significant financial losses (harm to property) in the DeFi sector, fulfilling the criteria for an AI Incident. Although direct forensic proof of AI executing exploits is limited, the article reports actual losses linked to AI-enabled threats and ongoing exploits, indicating realized harm. Therefore, this is not merely a potential risk but an incident involving AI-related harm. The discussion of defensive AI measures and ongoing debate is complementary but does not negate the presence of an AI Incident.
Thumbnail Image

DeFi isn't safe anymore because AI is becoming 'superhuman' at hacking, security chief warns

2026-05-27
CoinDesk
Why's our monitor labelling this an incident or hazard?
The article explicitly mentions an AI system (Claude Mythos) that autonomously discovers and weaponizes software flaws, which has directly contributed to multiple DeFi hacks resulting in substantial financial harm. This fits the definition of an AI Incident because the AI's use has directly led to harm (financial loss and disruption of critical financial infrastructure). The harm is materialized and ongoing, not just a potential risk, and the AI system's involvement is central to the incident.
Thumbnail Image

DeFi isn't safe anymore because AI is becoming 'superhuman' at hacking, onetime OpenZeppelin founder says

2026-05-27
CoinDesk
Why's our monitor labelling this an incident or hazard?
The article explicitly mentions AI systems autonomously discovering and weaponizing software flaws, leading to real financial losses in DeFi platforms. The harm is realized and ongoing, with over $1.1 billion lost in the past year due to exploits that AI can accelerate. The AI system's role is pivotal in enabling these exploits at superhuman speed, surpassing human capabilities and thus directly causing harm. This fits the definition of an AI Incident because the AI's use has directly led to harm to property and communities through financial theft and ecosystem destabilization.
Thumbnail Image

Blockchain Security Expert Warns All DeFi Unsafe as AI Agents Outpace Auditors

2026-05-27
BeInCrypto
Why's our monitor labelling this an incident or hazard?
The article explicitly mentions AI code-exploitation agents autonomously locating and weaponizing blockchain flaws, which have directly contributed to losses in DeFi protocols. This constitutes harm to property and communities due to theft or loss of funds. The AI systems' development and use are central to this harm, fulfilling the criteria for an AI Incident. Although there is debate about the extent of code flaws versus operational security failures, the article confirms that AI-driven exploitation is a material factor in realized harm.
Thumbnail Image

Security Chief Warns of AI's Outsized Threat to DeFi | PYMNTS.com

2026-05-27
PYMNTS.com
Why's our monitor labelling this an incident or hazard?
The article explicitly mentions an AI system (Claude Mythos) that autonomously uncovers software vulnerabilities and creates working exploits, which have been used to attack DeFi platforms. These attacks have caused substantial financial harm, including a major exploit that triggered a chain reaction erasing nearly $9 billion from a lending platform. The AI system's use in enabling these exploits directly led to realized harm (financial theft and disruption), fitting the definition of an AI Incident. The harm is materialized, not just potential, and the AI system's involvement is central to the incident.
Thumbnail Image

OpenZeppelin Attributes DeFi Vulnerability to AI Advancements | ForkLog

2026-05-27
ForkLog
Why's our monitor labelling this an incident or hazard?
The article explicitly involves AI systems (modern neural networks and AI agents) used to find vulnerabilities in smart contracts, which are part of DeFi protocols. The use of AI in this context has directly led to harm, including financial losses and increased insecurity in the DeFi sector, fulfilling the criteria for an AI Incident. The harm is to property and communities (financial assets and users of DeFi platforms). Therefore, this event qualifies as an AI Incident rather than a hazard or complementary information.
Thumbnail Image

AI Coding Agents Have Made All DeFi Unsafe, Security Expert Says

2026-05-27
CryptoPotato
Why's our monitor labelling this an incident or hazard?
The article explicitly mentions AI-powered coding agents scanning smart contracts faster than human teams, which is a clear AI system involvement. The expert's warning is about the potential for these AI systems to enable attackers to find vulnerabilities more effectively, which could plausibly lead to significant financial harm in DeFi protocols. Although large financial losses from hacks are reported, the article attributes most of these to operational failures and social engineering rather than direct AI exploitation. Therefore, no direct or indirect harm caused by AI systems is confirmed. The event describes a credible risk scenario where AI use in offensive security could lead to future incidents, fitting the definition of an AI Hazard rather than an AI Incident. The article also includes differing opinions and potential positive uses of AI, but the main focus is on the warning of plausible future harm due to AI in DeFi security.
Thumbnail Image

OpenZeppelin founder warns all of DeFi is unsafe amid security breaches

2026-05-27
Crypto Briefing
Why's our monitor labelling this an incident or hazard?
The article explicitly links AI-powered coding agents to the increased speed and scale at which attackers identify vulnerabilities in DeFi smart contracts, leading to substantial financial losses ($600 million in one month). The harm is materialized and ongoing, affecting users and the broader DeFi community. The AI system's role is pivotal in shifting the security balance unfavorably, making the entire DeFi sector unsafe according to a leading security expert. This meets the criteria for an AI Incident as the AI system's use has directly and indirectly caused harm to property and communities.
Thumbnail Image

"Defenders Lose Every Time": OpenZeppelin's Founder on AI and DeFi's Fatal Flaw

2026-05-27
Live Bitcoin News
Why's our monitor labelling this an incident or hazard?
The event involves AI systems (AI coding agents) used in the development and exploitation of smart contracts in DeFi. The AI's role in generating code flaws that have been exploited has directly led to financial harm (losses of millions of dollars), which qualifies as harm to property and communities. The article describes realized incidents of AI-generated vulnerabilities causing exploits, thus meeting the criteria for an AI Incident. The discussion of ongoing risks and the structural advantage AI gives attackers further supports this classification. Therefore, this is an AI Incident due to the direct link between AI system use and realized harm in the DeFi ecosystem.
Thumbnail Image

Ethereum Security Expert: All DeFi is Unsafe, Exit All Positions Ethereum ETHNews

2026-05-27
ETHNews
Why's our monitor labelling this an incident or hazard?
The event involves AI systems as it references AI tools integrated into DeFi platforms for wallet and transaction management, which influence user actions and security. The warning from a security expert is grounded in actual recent exploits causing hundreds of millions in losses, indicating direct or indirect harm linked to the use and vulnerabilities of AI-enabled DeFi systems. The article describes realized harm (financial theft, security breaches) and the role of AI in expanding the attack surface, fulfilling the criteria for an AI Incident. Although some discussion is about potential risks, the presence of actual large-scale exploits and security failures linked to AI-enabled systems justifies classification as an AI Incident rather than a hazard or complementary information.
Thumbnail Image

DeFi Faces 'Unsafe' Label Amid AI-Driven Security Threats

2026-05-28
blockchain.news
Why's our monitor labelling this an incident or hazard?
The article explicitly links AI-driven tools to the identification and exploitation of vulnerabilities in DeFi smart contracts, which have directly led to significant financial losses (harm to property) in multiple high-profile attacks. The AI systems are involved in the use phase, empowering attackers to automate exploits and conduct social engineering at scale. The harms are materialized and substantial, meeting the criteria for an AI Incident. Although some uncertainty exists about forensic proof of AI-led attacks, the credible expert consensus and the described impact justify classification as an AI Incident rather than a hazard or complementary information.
Thumbnail Image

DeFi Faces Critical Threat With AI Reaching 'Superhuman' Hacking Capabilities, Security Chief Warns - Crypto Economy

2026-05-27
Crypto Economy
Why's our monitor labelling this an incident or hazard?
The article explicitly mentions AI systems (e.g., Anthropic's Claude Mythos model) that autonomously find vulnerabilities and weaponize exploits, which have contributed to recent DeFi hacks causing over $1.1 billion in losses. This constitutes harm to property and communities. The AI's involvement is central to the increased risk and realized harm, fulfilling the criteria for an AI Incident. The harms are materialized, not just potential, and the AI system's role is pivotal in enabling these attacks at superhuman speed, making this more than a hazard or complementary information.
Thumbnail Image

Blockchain Security Expert Warns All DeFi Unsafe as AI Agents Outpace Auditors

2026-05-27
Yahoo Tech
Why's our monitor labelling this an incident or hazard?
The event explicitly involves AI systems (AI code-exploitation agents) whose use in attacking DeFi smart contracts could directly lead to financial losses and harm to users and communities relying on these protocols. The expert's warning about AI agents autonomously locating and weaponizing blockchain flaws indicates a credible and plausible future harm scenario. While no specific incident of harm is detailed, the described situation fits the definition of an AI Hazard because the AI system's use could plausibly lead to an AI Incident involving harm to property and communities. The article also includes industry responses but does not report a realized harm event, so it is not an AI Incident. It is not merely complementary information because the main focus is the warning about potential harm from AI agents, not a governance or response update. Therefore, the classification is AI Hazard.