MetaMask warns of security vulnerability from older versions of popular crypto wallet

Share This Post

“Ultimately, we’ve learned that our password encryption feature’s security was partially undermined by browser behavior,” said the team at MetaMask.

On Wednesday, MetaMask said that it uncovered a critical security vulnerability in older versions of its crypto wallet with the help of security researchers at Halborn. The security firm was awarded a bounty of $50,000 for the discovery. 

For users of the MetaMask extension before version 10.11.3, three necessary conditions would have led to the potential vulnerability. They are: 1) an unencrypted hard drive, 2) having imported a secret recovery phrase into a MetaMask extension on a device that was compromised, stolen, or has unauthorized access, and 3) having used the “Show Secret Recovery Phrase” checkbox to view one’s secret recovery phrase on-screen during the import process.

“We’ve only found that the Secret Recovery Phrase could be extracted under very specific circumstances, and we’ve been able to introduce new protections over the period that Halborn has waited to disclose.”

Apparently, the exploit affects all browser versions of MetaMask wallet versions prior to the 10.11.3 update, and all operating systems if all three circumstances were met, but not mobile versions.

MetaMask is warning affected users to migrate their funds from their compromised wallets. However, keep in mind that all three conditions need to have been met for the vulnerability to be active on older versions of MetaMask.

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

Bitcoin Profitability Index Hits 202%: Is This Enough For A Top?

On-chain data shows the Bitcoin Profitability Index is at 202% right now Here’s how this compares with past bull runs of the asset Bitcoin Average Profitability Index Has Been Rising Recently

Ripple Misses Deadline in SEC Legal Battle, Pro-XRP Lawyer Says ‘No Big Deal’

The post Ripple Misses Deadline in SEC Legal Battle, Pro-XRP Lawyer Says ‘No Big Deal’ appeared first on Coinpedia Fintech News The US Securities and Exchange Commission (SEC) has filed its Form

Will Cardano (ADA) Price Hold Its Support Or Record A Major Crash?

The post Will Cardano (ADA) Price Hold Its Support Or Record A Major Crash appeared first on Coinpedia Fintech News Despite increased price action in the crypto market, the Cardano price has

Crypto Price Today (Oct 23rd, 2024): Bitcoin Settles at $66k, MEW Meme Coin Leads Gainers!

The post Crypto Price Today (Oct 23rd, 2024): Bitcoin Settles at $66k, MEW Meme Coin Leads Gainers! appeared first on Coinpedia Fintech News Crypto Market Overview: The global cryptocurrency market

Crypto Liquidations Top $190 Million As Bitcoin Slides Below $67,000: Can BTC Rebound?

In the past 24 hours, crypto liquidations worth $190 million were recorded as Bitcoin (BTC) failed to break through the crucial $70,000 resistance level Bitcoin Remains Range-Bound, Just Shy Of New

Bitcoin Difficulty Hits New ATH As Mining Revenue Soars!

The post Bitcoin Difficulty Hits New ATH As Mining Revenue Soars! appeared first on Coinpedia Fintech News On Tuesday, the Bitcoin difficulty reportedly hit a new ATH of 9567T, with a record hash