MetaMask warns of security vulnerability from older versions of popular crypto wallet

On Wednesday, MetaMask said that it uncovered a critical security vulnerability in older versions of its crypto wallet with the help of security researchers at Halborn. The security firm was awarded a bounty of $50,000 for the discovery. 

For users of the MetaMask extension before version 10.11.3, three necessary conditions would have led to the potential vulnerability. They are: 1) an unencrypted hard drive, 2) having imported a secret recovery phrase into a MetaMask extension on a device that was compromised, stolen, or has unauthorized access, and 3) having used the “Show Secret Recovery Phrase” checkbox to view one’s secret recovery phrase on-screen during the import process.

“We’ve only found that the Secret Recovery Phrase could be extracted under very specific circumstances, and we’ve been able to introduce new protections over the period that Halborn has waited to disclose.”

Apparently, the exploit affects all browser versions of MetaMask wallet versions prior to the 10.11.3 update, and all operating systems if all three circumstances were met, but not mobile versions.

MetaMask is warning affected users to migrate their funds from their compromised wallets. However, keep in mind that all three conditions need to have been met for the vulnerability to be active on older versions of MetaMask.

All Dutch and English crypto news!

Bitcoin sub-$60K levels in focus after daily crypto liquidations near $300M

Bitcoin bears are out in force with BTC price trajectory quickly headed back to $60,000. Market Update Own this piece of crypto history Collect this article as NFT Join...

Is mysterious ΑΙ ‘gpt2-chatbot’ OpenAI’s next upgrade in disguise?

A powerful new AI chatbot called “gpt2-chatbot” appears on LMSYS Chat and has sparked speculation whether it could be OpenAI's unreleased GPT-5 or a supercharged...

BlackRock’s Bitcoin ETF daily inflow on halt for 4 days

While some crypto observers are concerned about IBIT’s inflow halt, others say it’s more normal than the 71-day inflow streak it has recorded. News Own this piece...

Animoca Brands “comes to Bitcoin” with OPAL Protocol

Animoca Brands says Bitcoin is ready for Web3. The blockchain gaming giant will collaborate with Darewise and OPAL Protocol to launch a new era for gaming,...

Beste exchanges

Koop je crypto bij Bitvavo