Connect with us

Tech

ElizaOS Exposed: Researchers Discover How to Manipulate Its Memory and Alter Its Operations

Published

on

TL;DR

  • Princeton researchers discovered how to manipulate the memory of AI agents like ElizaOS to alter their financial decisions.
  • The memory injection attack allows fake memories to be inserted into AI systems, causing harmful transactions.
  • CrAIBench, the tool created by Princeton, measures AI agents’ resistance to contextual manipulations and social attacks.

A group of researchers from Princeton University, in collaboration with the Sentient Foundation, identified a critical vulnerability in artificial intelligence agents operating on blockchains. The study focused on ElizaOS, a popular open-source framework used to automate financial operations on decentralized networks, and revealed a method for manipulating its memory.

How AI Agents Are Manipulated

The attack, known as memory injection, allows false data to be inserted into an AI agent’s persistent memory. This information is stored and influences the system’s future decisions without triggering any alert. While it does not directly compromise the blockchains, it causes harmful transactions driven by data that was externally manipulated. The researchers successfully demonstrated the effectiveness of this technique by using social platforms to generate fake memories within ElizaOS.

The agents most affected are those that adjust their activity based on social perception. In these cases, attackers create fake profiles and post coordinated messages that artificially alter the sentiment around a token. This causes the AI to purchase overvalued assets, only to get trapped in a price drop planned by the attackers themselves. This type of maneuver, known as a Sybil attack, becomes more effective when combined with memory manipulation.

ElizaOS post

ElizaOS Works with Researchers to Find a Solution

The Princeton team thoroughly examined all the functionalities of ElizaOS to design realistic and complete attacks, which revealed the broad range of available vectors when an AI has multiple plugins and access to financial operations. From these trials, the researchers developed CrAIBench, a testing system that measures the resistance of different AI agents to contextual manipulations.

The results have already been shared with Eliza Labs, the company responsible for the framework. Discussions about possible solutions are ongoing. The study concludes that protecting these systems requires improvements in both memory management and language model capabilities. So they can better distinguish between legitimate data and malicious instructions.

The post ElizaOS Exposed: Researchers Discover How to Manipulate Its Memory and Alter Its Operations appeared first on The Cryptocurrency Post.

Tech

Noos sets September 5 mainnet launch as it moves AI agent infrastructure on-chain

Published

on

Noos said its mainnet will go live at 00:00 UTC on September 5, 2026, marking the project’s shift from testnet operation to an on-chain environment for AI agent execution, collaboration, verification and value settlement.

The announcement was published on Noos’ official blog, which described the launch as a step toward the AI agent economy rather than a simple network transition. The post said the project has spent 159 days building on testnet ahead of mainnet.

In a separate post on Noos’ official X account, the team said the move will bring those functions fully on-chain once mainnet opens. The same materials say Noos has been working across ecosystem partners, nodes, users and communities ahead of launch.

Testnet phase set the backdrop for launch

Noos said its testnet began on March 20, 2026 and continued for 159 days. During that period, the project said it completed phased testing of core infrastructure that includes AI Agents, AI Skills, Genesis AIDs and the IVN validation network.

The project also said its testnet phase involved more than 50 ecosystem partners, 700+ global KOLs, 3,500+ globally distributed computing nodes and 5,000 on-chain Genesis AIDs. Those figures were presented by Noos as part of the foundation for the mainnet rollout.

According to the announcement, mainnet is expected to move the network beyond infrastructure validation and into “real usage, execution, collaboration, and value.”

Noos frames the launch around the AI agent economy, a concept it says requires computing power, agent skills, verification, payments, data, smart hardware and vertical applications to work together. The company’s message indicates the mainnet is intended to connect those pieces in a live on-chain environment, though the announcement does not add further operational details beyond the launch timing and broader network goals.

The post Noos sets September 5 mainnet launch as it moves AI agent infrastructure on-chain appeared first on The Cryptocurrency Post.

Continue Reading

Tech

Algorand launches AC2 to let AI agents request user approvals without exposing private keys

Published

on

Algorand Foundation has launched AC2, an open protocol designed to make AI agent approvals more secure by keeping private keys under the user’s control. In the foundation’s public announcement, AC2 is described as a standard for direct, encrypted communication between users and AI agents that lets agents request signing actions without handing over wallet access.

The launch centers on a familiar problem in AI-driven workflows: agents may need to sign payments, code commits or other digital actions on a user’s behalf, but the surrounding messaging tools do not provide cryptographic verification or scoped approval. Algorand says AC2 is meant to close that gap by allowing the user to review and approve each requested action through their own wallet interface.

How AC2 is described to work

According to the foundation, AC2 establishes an end-to-end encrypted WebRTC connection between a user’s wallet or app and an AI agent. When the agent needs authorization for an action such as a payment, git commit or API request, it sends a signing request through AC2. The user then approves the action directly, while the private key remains with the user.

The announcement also says the protocol is blockchain-agnostic and open source, with both the specification and a reference implementation now available. Algorand framed AC2 as a way to support broader “agentic” workflows without requiring users to surrender full control of their accounts.

The foundation said the protocol can be extended for different message types and signing formats, which it says would make it usable in settings where agents need limited, user-approved authority rather than unrestricted access.

For now, the launch is best understood as a security and communications layer for AI agents rather than evidence that AI payments or agent-driven commerce are already widespread. The key change is narrower but concrete: users are meant to approve exactly what an agent can sign, instead of relying on chat-based instructions that can be easier to spoof or misread.

The post Algorand launches AC2 to let AI agents request user approvals without exposing private keys appeared first on The Cryptocurrency Post.

Continue Reading

Tech

Token Terminal data shows AI agents driving 73 million stablecoin transfers in 180 days

Published

on

Token Terminal’s agentic payments explorer shows AI agents initiating 73.0 million stablecoin transfers over the past 180 days, with USDC accounting for virtually all of the activity.

The explorer data also points to a concentration of transfers on a small number of networks. Base led with 38.7 million transfers, while Polygon followed with 26.1 million, according to Token Terminal.

The figures describe transfer activity initiated by AI agents, not a broader measure of stablecoin adoption across the market. The available data also does not by itself explain who the agents were, what applications they were using or whether the transfers reflect sustained operational usage beyond the measured period.

Still, the numbers offer a concrete snapshot of how agent-driven payments are appearing in onchain data. In this case, the activity is largely tied to USDC and concentrated on Base and Polygon, which makes the breakdown more specific than a generic claim about AI and crypto payments.

The post Token Terminal data shows AI agents driving 73 million stablecoin transfers in 180 days appeared first on The Cryptocurrency Post.

Continue Reading

Trending