{"id":36853,"date":"2022-12-02T03:16:47","date_gmt":"2022-12-02T03:16:47","guid":{"rendered":"http:\/\/egrowonline.com\/?p=36853"},"modified":"2022-12-02T03:16:47","modified_gmt":"2022-12-02T03:16:47","slug":"this-ai-chatbot-is-either-an-exploiters-dream-or-their-nightmare","status":"publish","type":"post","link":"http:\/\/egrowonline.com\/?p=36853","title":{"rendered":"This AI chatbot is either an exploiter&#8217;s dream or their nightmare"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div data-v-471f9776=\"\">\n<p>The online crypto community has discovered a new Artificial Intelligence (AI)-powered chatbot that can either be used to warn developers of smart contracts vulnerabilities or teach hackers how to exploit them.\u00a0<\/p>\n<p>ChatGPT, a chatbot tool built by AI research company OpenAI, was <a target=\"_blank\" href=\"https:\/\/openai.com\/blog\/chatgpt\/\" rel=\"noopener nofollow\">released<\/a> on Nov. 30 and was designed to interact \u201cin a conversational way\u201d with the ability to answer follow-up questions and even admit mistakes, according to the company.<\/p>\n<p>However, some Twitter users have come to realize that the bot could potentially be used for both good and evil, as it can be prompted to <a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/compound-finance-to-impose-lending-caps-in-light-of-failed-aave-exploit\" rel=\"noopener\">reveal loopholes in smart contracts<\/a>.<\/p>\n<p>Stephen Tong, co-founder of smart contract auditing firm Zellic asked ChatGPT to help find an exploit, presenting a piece of smart contract code.<\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\">OMG WTF <a target=\"_blank\" href=\"https:\/\/t.co\/I2hE0e5ppq\" rel=\"noopener\">pic.twitter.com\/I2hE0e5ppq<\/a><\/p>\n<p>\u2014 cts (@gf_256) <a target=\"_blank\" href=\"https:\/\/twitter.com\/gf_256\/status\/1598104835848798208?ref_src=twsrc%5Etfw\" rel=\"noopener\">December 1, 2022<\/a><\/p><\/blockquote>\n<p>The bot responded by noting the contract had a reentrancy vulnerability where an exploiter could repeatedly withdraw the funds from the contract and provided an example of how to fix the issue. <\/p>\n<p>This similar type of exploit was used in May by the attacker of the Decentralized finance (DeFi) platform Fei Protocol who <a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/rari-fuze-hacker-offered-10m-bounty-by-fei-protocol-to-return-80m-loot\" rel=\"noopener\">made off with $80 million<\/a>.<\/p>\n<p>Others have shared results from the chatbot after prompting it with vulnerable smart contracts. Twitter user devtooligan shared a screenshot of ChatGPT, which provided the exact code needed to fix a <a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/vyper-solidity-and-scrypto-how-the-smart-contract-languages-compare\" rel=\"noopener\">Solidity smart contract<\/a> vulnerability commenting \u201cwe&#8217;re all gonna be out of a job.\u201d<\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\">omg. seriously mind-blown   <\/p>\n<p>we&#8217;re all gonna be out of a job  <a target=\"_blank\" href=\"https:\/\/t.co\/iwjjOTPDLY\" rel=\"noopener\">pic.twitter.com\/iwjjOTPDLY<\/a><\/p>\n<p>\u2014 devtooligan (@devtooligan) <a target=\"_blank\" href=\"https:\/\/twitter.com\/devtooligan\/status\/1598159034196328448?ref_src=twsrc%5Etfw\" rel=\"noopener\">December 1, 2022<\/a><\/p><\/blockquote>\n<p>With the tool, Twitter users have already begun to jest they\u2019re able to now start businesses for <a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/explained\/solana-and-ethereum-smart-contract-audits-explained\" rel=\"noopener\">security auditing<\/a> simply by using the bot to test for weaknesses in smart contracts.<\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\">Excited to announce I&#8217;m raising for my new smart contract security consulting company.<br \/>It&#8217;s gonna be me just be throwing ChatGPT to fuzz your code. <a target=\"_blank\" href=\"https:\/\/t.co\/gSFyABd9M6\" rel=\"noopener\">https:\/\/t.co\/gSFyABd9M6<\/a><\/p>\n<p>\u2014 eddie (&#x2b05;&#xfe0f;,) (@0x_eddie) <a target=\"_blank\" href=\"https:\/\/twitter.com\/0x_eddie\/status\/1598124147967954944?ref_src=twsrc%5Etfw\" rel=\"noopener\">December 1, 2022<\/a><\/p><\/blockquote>\n<p>Cointelegraph tested ChatGPT and found it can also create an example smart contract from a prompt using simple language, generating code that could apparently <a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/what-is-nft-staking-and-how-to-earn-income-from-nfts\" rel=\"noopener\">provide staking rewards<\/a> for Ethereum-based nonfungible tokens (NFTs).<\/p>\n<figure><img decoding=\"async\" src=\"https:\/\/s3.cointelegraph.com\/uploads\/2022-12\/5a4e67ed-9a5d-4758-affb-4e229a85218c.png\" \/><figcaption style=\"text-align: center\"><em>ChatGPT\u2019s example Solidity smart contract for NFT staking rewards from a simple prompt. Image: Cointelegraph.<\/em><\/figcaption><\/figure>\n<p>Despite the chatbot&#8217;s ability to test smart contract functionality, it wasn\u2019t solely designed for that purpose and many on Twitter have <a target=\"_blank\" href=\"https:\/\/twitter.com\/nicksdjohnson\/status\/1598115422347595776\" rel=\"noopener nofollow\">suggested<\/a> some of the smart contracts it generates have issues.<\/p>\n<p> The tool also might provide different responses depending on the way it\u2019s prompted, so it isn&#8217;t perfect.<\/p>\n<p><strong><em>Related: <\/em><\/strong><a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/secret-network-resolves-network-vulnerability-following-white-hat-disclosure\" rel=\"noopener\"><strong><em>Secret Network resolves network vulnerability following white hat disclosure<\/em><\/strong><\/a><\/p>\n<p>OpenAI CEO Sam Altman <a target=\"_blank\" href=\"https:\/\/twitter.com\/sama\/status\/1598038817126027264\" rel=\"noopener nofollow\">tweeted<\/a> that the tool was \u201can early demo\u201d and is \u201cvery much a research release.\u201d<\/p>\n<p>He opined that \u201clanguage interfaces are going to be a big deal\u201d and tools such as ChatGPT will \u201csoon\u201d have the ability to answer questions and give advice with later iterations completing tasks or even discovering new knowledge.<\/p>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/cointelegraph.com\/news\/this-ai-chatbot-is-either-an-exploiter-s-dream-or-their-nightmare\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The online crypto community has discovered a new Artificial Intelligence (AI)-powered chatbot that can either be used to warn developers of smart contracts vulnerabilities or teach hackers how to exploit them.\u00a0 ChatGPT, a chatbot tool built by AI research company OpenAI, was released on Nov. 30 and was designed to interact \u201cin a conversational way\u201d [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":36854,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","enabled":false}}},"categories":[38],"tags":[12618,1833,12619,12620],"class_list":["post-36853","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-blockchain","tag-chatbot","tag-dream","tag-exploiters","tag-nightmare"],"jetpack_publicize_connections":[],"jetpack_sharing_enabled":true,"jetpack_featured_media_url":"http:\/\/egrowonline.com\/wp-content\/uploads\/2022\/12\/1200_aHR0cHM6Ly9zMy5jb2ludGVsZWdyYXBoLmNvbS91cGxvYWRzLzIwMjItMTIvZGUzYTliOTEtYmZjYi00YTlkLWE5ZTItNmNlMWIxNzc1NzcyLmpwZw.jpg","_links":{"self":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts\/36853","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=36853"}],"version-history":[{"count":1,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts\/36853\/revisions"}],"predecessor-version":[{"id":36855,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts\/36853\/revisions\/36855"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/media\/36854"}],"wp:attachment":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=36853"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=36853"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=36853"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}