Skip to content
NOFX AI Vulnerability Exposes User API and Private Keys

NOFX AI Vulnerability Exposes User API and Private Keys

First seen 17 Nov 2025, 19:15 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster March 12, 2026 at 13:27 UTC

SlowMist identified a critical vulnerability in the NOFX AI automated trading system, which shipped with an 'admin mode' enabled by default, allowing unauthorized access to sensitive API and private wallet keys. Users of exchanges including Binance, Hyperliquid, and Aster DEX are at risk of fund theft due to this flaw. Despite attempts to patch the issue, the core problem remains unresolved as the default JWT secret was publicly accessible.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 183d ago How this analysis works

More articles in this cluster (3)

Following this threat?

Track Aster in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed