Ethereum Foundation seeks protocol security hire for AI-assisted core audits

Ethereum Foundation seeks protocol security hire for AI-assisted core audits

The Foundation is hiring a remote protocol security researcher to use AI, fuzzing and manual review across Ethereum’s execution, consensus and networking stack after broader staff cuts and recent AI-led bug findings.

ETH

Fact Check
Every element of the claim is confirmed by primary sources. The official Ashby job posting titled 'Protocol Security Researcher @ Ethereum Foundation' lists it as a remote (Europe/Global) role using AI-assisted analysis, fuzzing, and manual review across execution, consensus, networking, specs, and client implementations. The official Ethereum Foundation blog 'The triage is the product' (July 9, 2026) documents recent AI-led bug findings, including CVE-2026-34219 in libp2p gossipsub. News reporting and search results confirm the broader ~20% staff cuts and dissolution of the Protocol Support team. There is no conflicting evidence.
Summary

The Ethereum Foundation is recruiting a protocol security researcher to examine vulnerabilities across Ethereum’s execution layer, consensus layer, peer-to-peer networking, specifications and client software, using AI-assisted analysis alongside fuzzing, manual audits and disclosure coordination. The global remote role follows a restructuring that cut 54 positions, or about 20% of the Foundation’s workforce, even as it continues to add staff in areas it considers critical. The move also comes after the Protocol Security team said on July 9 that coordinated AI agents had uncovered genuine flaws, including a remotely triggered panic in libp2p’s gossipsub component that was fixed before disclosure as CVE-2026-34219. The Foundation said the larger challenge was verifying which AI-generated findings were real, a workflow the new hire would help formalize as Ethereum reviews future hard forks and protocol changes.

Terms & Concepts
  • fuzzing: An automated testing method that feeds unexpected or malformed inputs into software to uncover crashes, bugs or security weaknesses.
  • hard forks: Protocol upgrades that change a blockchain’s rules and require network participants to adopt the new version to stay aligned.
  • responsible disclosure: A process for privately reporting confirmed security flaws so developers can fix them before details are made public.