The X user used Morse code and a Bankr Club Membership NFT to move 3 billion DRB tokens, worth about $200,000, on the Base network via Bankrbot.
The hidden instruction was translated by Grok and passed as a valid command to the trading bot, bypassing safeguards tied to the AI systems' wallet access.
The attacker then sold the tokens, causing brief price volatility, while blockchain data later showed funds linked to Grok's wallet were returned and converted into Ethereum and USDC.
How did 19th-century Morse code defeat a futuristic AI chatbot for $200,000?
Are our financial systems ready for AI agents with direct wallet access?
Why is a repeatedly-failed AI being used in sensitive US government operations?