The Morse code exploit highlights the dangerous fragility of LLMs when given direct financial power without robust input filtering. It serves as a stark reminder that "smart" AI is still easily blinded by simple tricks, making human oversight non-negotiable.
Deep Dive
Prerequisite Knowledge
- No data available.
Where to go next
- No data available.
Deep Dive
Somebody Hacked Grok AI With Dots and DashesAdded:
So something interesting happened today where Grock which is an AI agent on Xplatform was hacked by somebody to transfer a bunch of crypto money to their own account. And it's super weird and sort of funny and you will understand the complete picture when I break it down to you. So let's start. So I basically came across this tweet where this person mentioned somebody used Morse code prompt injection to trick Grock into outputting a hidden command that tagged bank Rbbot sending 3 billion DRB to a wallet. Now rest of the post sort of reads like AI generated. But let me explain you core idea of what happened exactly. So basically back in March last year what happened is that a user actually asked Grock the AI agent that you see on X platform to come up with a token name and a ticker for it which Grock came up as DRB and this was sort of debt relief bot right that the that's the full form of this. Now without getting into a lot into the crypto part of this, the core idea is that Grock actually held some money because Grock created this dollar DRB and every swap of crypto that was happening on the sticker slowly started giving Grock some money in its own wallet. So Grock also had a wallet in this right in this crypto token. Now this crypto thing, this sticker that was there, it was operated by another bot called Bank RBot. And if you look at this, this is how it looks like. And this can be used to launch a token and even make like financial decisions directly over X. Right? So I don't want to get a lot into the web three side of things in this video. But the idea is that you can technically tag this bot and you can ask it to do certain financial things. Now what somebody did is that somebody asked Grock to write this message using Morse code right the previous code that I showed you earlier.
And Grock mistakenly I mean not even mistakenly it actually converted the Morse code into the tweet and it actually passed that tweet down. This tweet by Grock itself was seen by bank arbot because of obviously bank arbbert was tagged and it actually did that transaction on behalf of grock account right and it transferred the money to that specific user who told it to transfer to a specific wallet. Now this is stupid because obviously if the bot has been asked by an actual entity itself it does that task which is fair but it's stupid in regards because grock can be manipulated in speaking out anything right as a translate feature as something just to recite back. It's an AI and an AI combined with a system that can actually make actions without a human in the loop is a disaster waiting to happen. We see this all the time in other fields of database resets and data loss and so on. But this is the first time that I have seen personally something like this happen which is funny. Soon after this transaction was actually done which is this 3 billion DRB. The original tweeter deleted its tweet and just you know deactivated their account. There's also a community note over here and you can also verify this transaction right which is about $200,000. So what we learned from this hack is that AI is not smart enough right now to take these financial decisions properly, right? So you should not have an AI bot I feel in my opinion that has unrestricted access to capital or you know if you want unrestricted to be a number let's say something more than let's say $1,000 right because $1,000 is more than enough for AI to if you're doing like stock markets or if you're doing some sort of small experiments yes you can give your AI wallet access to automated way of deducting the balance making payments but I don't think that this should be something that you should do right now I would say the second point is do not create automations on social media that can impact your real life like money right because see even if AI was not getting used in that bank RB bot right still somebody was able to steal the money out of it because they were able to prompt gro itself or maybe in future we don't know like if there's a vulnerability in that bot itself that somehow allows you to you know just make transactions directly I mean there is no point in doing something like this if you want to make a transaction it's more than enough for you to just link up an MCP server use your own LLM to make that No need to announce it on social media in a form of a bot. And third of course is that I'm not a crypto person myself but stay away from crypto and in generally like you know make money soon sort of schemes if you want to avoid losses right this goes into investment finances taking like shortcuts you know doing things like these. The thing is that this person that actually had done this Morse code attack has also been found. Right? So this person is actually stupid enough to do this everything under his own public profile. So his ex account was actually also real. The balance the address where he has withdrawn this 3 billion DRB tokens that is also under his own name. So I mean it's just attracting trouble at this point, right? So again a short video on this topic. Just wanted to let you guys know on what's going on recently on the crypto side of world. I don't really cover this a lot on this channel, but it was interesting to me because AI, crypto, and hacking, all these two, three topics were involved. So, do let me know in the comments what do you think about this. So, that's all for this video. Hopefully, you liked it. If you did, make sure to leave a like and subscribe to the channel. I'm going to see you in the next video very soon. If you're still watching, make sure you leave a comment. I watched till the end below to tell me that you were still here. And let me know what do you think about the video.
Related Videos
Agentforce NOW AMA: Build with React and Salesforce Multi-Framework
SalesforceDevs
490 viewsβ’2026-05-28
How agent o11y differs from traditional o11y β Phil Hetzel, Braintrust
aiDotEngineer
450 viewsβ’2026-05-28
Re: π£οΈπthepropheduπ2026 GST 103 CLASS (E-EXAM REVISION)
theprophedu
636 viewsβ’2026-06-04
WEB TECHNOLOGIES UNIT-2 | Degree 4th sem BCOM Computers web technologies unit-2 full explanationπ―β
LearnwithSahera
1K viewsβ’2026-05-29
More tests are always better? How to use AI to identify tests that bring little value
Alliance4Qualification
335 viewsβ’2026-05-29
Search Algorithms Explained in 60 Seconds! π€π¨
samarthtuliofficial
218 viewsβ’2026-06-01
People of Game of Thrones using JavaScript DOM
AltCampus
296 viewsβ’2026-05-30
Instagram accounts got PWNed
EricParker
13K viewsβ’2026-06-03











