

The cybersecurity landscape for digital assets is undergoing a radical transformation. With open-source software underpinning over a trillion dollars in Bitcoin and trillions more across broader cryptocurrency networks, the race between defenders and malicious actors has reached a critical juncture. Recently, more than 40 leading cryptocurrency institutions—including Coinbase, Block, BitGo, Blockstream, and ARK Invest—issued a unified call to action to the world’s leading artificial intelligence laboratories.
Organised by the Bitcoin Policy Institute, an open letter signed by industry leaders highlights an alarming asymmetry: cybercriminals are already leveraging advanced AI tools to breach financial software, whilst the ethical developers keeping these networks safe are locked out of the newest, most capable frontier models.
At the heart of the issue is the open-source nature of blockchain infrastructure. The core code driving Bitcoin nodes, wallet software, custody systems, and cryptographic libraries is freely accessible to anyone. While transparency is vital for decentralisation and trust, it also means attackers can scrutinise every line of code at their leisure.
With the rapid rise of frontier AI models, attackers now possess tools that drastically lower the cost and complexity of discovering zero-day vulnerabilities. Phenomena such as "vibe hacking"—where bad actors use AI assistance to conduct live ransom attacks and generate complex exploits—are turning automated software exploitation into an accessible reality.
Conversely, security maintainers face an uphill struggle. When ethical security researchers attempt to use public AI models to probe open-source repositories for flaws, strict guardrails frequently block their queries, misidentifying legitimate vulnerability research as malicious activity. Consequently, developers must rely on open-weight models, which, whilst useful, lag behind the state-of-the-art capabilities available to sophisticated threats.
To rebalance the scales, the coalition of crypto leaders is urging major AI labs to establish dedicated, standing trusted-access programmes for qualified open-source software maintainers.
Specifically, the open letter requests:
The petition arrives alongside significant financial commitments to blockchain resilience, such as the $15 million pledged by the Bitcoin Security Consortium—featuring heavyweights like BlackRock, Strategy, and Fidelity Digital Assets. However, funding alone cannot solve the technological gap if defenders lack the tools to match AI-augmented threats.
For AI labs, granting early access involves careful risk management. They must navigate the delicate balance of vetting researchers thoroughly to prevent leaks, whilst ensuring their models are not misused. Nevertheless, as artificial intelligence becomes deeply integrated into software development and cyber offence, empowering open-source defenders is rapidly becoming a necessity rather than an option.
Protecting the global open-source financial stack requires proactive collaboration across technology sectors. By granting verified security maintainers access to frontier AI tools, artificial intelligence developers can help safeguard the future of digital finance before critical exploits occur.
Disclaimer: This article is provided for informational purposes only, mistakes may be made, and it's not offered or intended to be used as legal, tax, investment, financial, or any other advice.
