Background
Recently, an abuse of privileges incident occurred on the Base chain involving the combination of an AI Agent and an automated trading system. The attacker sent specifically crafted content to @grok on the X platform, inducing it to output transfer instructions that could be recognized by an external trading agent (@bankrbot), ultimately leading to the transfer of real assets on the chain.

(https://x.com/bankrbot/status/2051192437797015859)
About "Grok Wallet":

(https://basescan.org/address/0xb1058c959987e3513600eb5b4fd82aeee2a0e4f9)
1. Privilege Escalation Phase
The attacker (associated address ilhamrafli.base.eth) activated the Bankr Club Membership for this wallet through a centralized mechanism. This operation unlocked @bankrbot's high-privilege agency toolset, providing the necessary permissions for subsequent transfer execution.
1. Privilege Escalation Phase
The attacker (associated address ilhamrafli.base.eth) activated the Bankr Club Membership for this wallet through a centralized mechanism. This operation unlocked @bankrbot's high-privilege agency toolset, providing the necessary permissions for subsequent transfer execution.

(https://x.com/bankrbot/status/2051005172202258526)
2. Prompt Injection execution phase