Morning Edition · Monday, September 14, 2026Published at 1:49 AM EDT · New York
The privacy network says its own contributors found the defect through internal AI-assisted review, and that validator re-execution, the fallback most rollups rely on, does not catch this class of bug.

Aztec, the zero-knowledge privacy layer-2 network on Ethereum, has disclosed a critical vulnerability in the proving system of its Alpha v5 release. By the team's description, an attacker could construct a proof that passes verification for a transaction the network should reject. Core contributors identified the defect on 27 July 2026 through internal auditing assisted by artificial intelligence (AI) tooling, and the fix is scheduled for the next version rather than an emergency patch.
The distinction matters. A smart-contract bug lets an attacker misuse rules that the chain still enforces correctly. A soundness defect in the proving system breaks the enforcement itself, which means the chain can be made to accept state it would otherwise reject. Aztec has stated that this class of flaw is not caught by public re-execution by the validator committee, the check that ordinary optimistic and hybrid designs depend on.
This is the second such disclosure in six months from the same team. Aztec reported a critical flaw affecting the v4 proving system as a whole in March, warned that exploitation could allow theft of user funds, told v4 users to withdraw, and withheld technical details until the v5 upgrade shipped. Embargoed disclosure timed to an upgrade is now the standard practice for proving-system bugs across the zero-knowledge sector, because publishing the defect before the fix exists would give an attacker a working method.
Two readings compete, and both are available from the same facts. Aztec presents the finding as the intended output of an alpha network, meaning a live system carrying deliberately limited value while the proving stack is hardened. Critics of the rollup model see a pattern in which the security case for a chain rests on cryptography that only a small number of specialists can review, leaving users to trust a disclosure process instead of an independent check.
Part of a tracked trend
Proving-System Bugs Become a Distinct Rollup Risk
Soundness defects in zero-knowledge proving systems will keep surfacing as a risk class separate from smart-contract exploits, because validator re-execution — the fallback most rollups rely on — cannot catch them, forcing teams into embargoed disclosure timed to upgrades and pushing users toward proof-system diversity and escape hatches.
Start a discussion in Townsquare.
More from this edition
Competing zero-knowledge and privacy networks that can point to a rival's soundness failure, and Aztec itself, which sets the terms and the timing of a disclosure no outside party could have produced.
Every load-bearing fact comes from Aztec's own post with no independent verification, roughly seven weeks passed between the 27 July discovery and publication, and Aztec's text is more urgent than the article implies: it tells users to treat funds, applications and contract state on v5 as exposed while operators carry out network actions, and says contributors cannot determine whether anyone exploited the flaw first.
An open-source-intelligence read of how likely this story is true with its real nuance, not a judgment of any outlet. It assesses the claim, weighing independent and adversarial reporting. How we label confidence.
What this means
Proving soundness is the assumption underlying every zero-knowledge rollup and every privacy chain that hides transaction contents, because a forged proof looks identical to a valid one to anyone downstream. Users of proof-only systems cannot detect this kind of failure through block explorers or re-execution, so they depend on the quality of one team's review process and the timing of its disclosures. Chains that keep an escape hatch or a second, independent proving implementation reduce that exposure. The sector-wide consequence is slower institutional adoption of proof-only privacy platforms until independent verification of proving systems matures.
What to watch
Observations to monitor, not financial advice.
Synthesized from: Aztec Network · Aztec Network · Aztec Network · The Defiant
Comments
0No comments yet.