Bitcoin Red Team researcher calle said that after using Kimi K3 for two weeks, the team identified numerous critical and high-severity vulnerabilities across Bitcoin open-source projects, with maintainers validating the findings. The team has completed a basic scan of nearly the entire Bitcoin open-source ecosystem, with many of the easier-to-find vulnerabilities already discovered.

Calle said AI is significantly lowering the cost of vulnerability discovery and verification, making unmaintained projects increasingly risky. He argued that projects will need to establish their own AI-driven security audit pipelines, while the speed of response to vulnerability reports has become an important indicator of project health.