• Live Crypto Prices
  • Crypto News
    • Worldwide
      • Bitcoin
      • Ethereum
      • Altcoin
      • Blockchain
      • Regulation
    • Australian Crypto News
  • Education
    • Cryptocurrency For Beginners
    • Where to Buy Cryptocurrency
    • Where to Store Cryptos
    • Cryptocurrency Tax in Australia 2021
No Result
View All Result
CryptoABC.net
No Result
View All Result

Security Flaw Dubbed ‘Demonic’ Discovered In MetaMask And Phantom Wallets

June 17, 2022
in Australian Crypto News
Reading Time: 3min read
0 0
A A
0
Security Flaw Dubbed ‘Demonic’ Discovered In MetaMask And Phantom Wallets
0
SHARES
7
VIEWS
ShareShareShareShareShare

In a classic case of “the devil is in the detail”, security researchers from Halborn have discovered a security flaw dubbed ‘Demonic’ in MetaMask and Phantom wallets.

Do Not Import Wallets Using Unencrypted Computers

According to researchers, when users imported a web extension wallet using their seed phrases via an unencrypted computer, their assets could be at risk if a hacker manages to get access to their hard drives:

1/ As of April 2022, Phantom users are protected from the “Demonic” critical vulnerability in crypto browser extensions.

Another exhaustive patch is rolling out next week that we believe will make @Phantom the safest from “Demonic” in the industry. https://t.co/bKE1olpzng

— Phantom (@phantom) June 15, 2022

These attacks are known as ‘key-finding’ or ‘key-search’, and consist of attackers using cryptography to decrypt messages on computer systems and gain access to them, leaving users’ systems exposed to the hands of the attackers:

Vulnerability Patched Up

The Demonic vulnerability only affects users with web extension wallets including MetaMask, Phantom, Brave, and XDefi wallets, while mobile users and anyone with fully-encrypted hard drives remain unaffected.

According to researchers, all wallets have now patched the security flaw. MetaMask updated its wallet with version 10.11.3, while Phantom is rolling out a new update for its wallet next week.

After the security flaw was discovered, MetaMask awarded Halborn US$50,000, while Phantom hired Oussami Amri, the employee who found the vulnerability.

MetaMask Can’t Catch a Break

MetaMask seems to be constantly in the headlines when it comes to security protocols and users’ safety. A month ago, Crypto News Australia reported that the Ethereum-based wallet had issued a phishing attack security alert for iPhone users, warning that their assets could be at risk from an iCloud-related phishing scam.

After all, the number one rule in crypto is to never give your private key or seed phrase to anyone, and never connect it to a website or app you don’t recognise, or you could end up like Dallas2626, a MetaMask user who lost US$10,000 from a scammer in Discord using a fake WalletConnect app.

Share this article

Join in the conversation on this article’s Twitter thread.

Disclaimer:
The content and views expressed in the articles are those of the original authors own and are not necessarily the views of Crypto News. We do actively check all our content for accuracy to help protect our readers. This article content and links to external third-parties is included for information and entertainment purposes. It is not financial advice. Please do your own research before participating.


Credit: Source link

ShareTweetSendPinShare
Previous Post

Mark Cuban Says Crypto Startups With Good Fundamental Will Thrive

Next Post

Bitcoin Remains In Downtrend, Risk of Drop Below $20K

Next Post
Bitcoin Reclaims 100 SMA, Here’s Why BTC Could Surge above $58K

Bitcoin Remains In Downtrend, Risk of Drop Below $20K

You might also like

Bhutan Sells Bitcoin as National Holdings Drop Nearly 60%

Bhutan Sells Bitcoin as National Holdings Drop Nearly 60%

March 11, 2026
Nvidia Plans to add Innovation in the Metaverse with Software, Marketplace Deals

NVIDIA Unveils BlueField-4 STX Storage Architecture for Agentic AI Workloads

March 16, 2026
JPMorgan Flags Sharp Divergence Between Bitcoin and Gold ETF Flows Since Iran War

JPMorgan Flags Sharp Divergence Between Bitcoin and Gold ETF Flows Since Iran War

March 13, 2026
Arthur Hayes Deploys Net Liquidity Strategy: Not Buying BTC Now Even If He Has Only $1

Arthur Hayes Deploys Net Liquidity Strategy: Not Buying BTC Now Even If He Has Only $1

March 11, 2026
DOT Price Prediction: Polkadot Eyes $4.01 Recovery Despite Current Bearish Momentum

DOT Price Prediction: Polkadot Targets $1.72 Breakthrough After 11.56% Daily Surge

March 16, 2026
Binance Launches Defamation Lawsuit Against Wall Street Journal Over Iran Sanctions Claims

Binance Launches Defamation Lawsuit Against Wall Street Journal Over Iran Sanctions Claims

March 12, 2026
CryptoABC.net

This is an Australian online news/education portal that aims to provide the latest crypto news, real-time updates, education and reviews within Australia and around the world. Feel free to get in touch with us!

What's New Here!

Bitcoin Hits 40-Day High As US-Iran Tensions Trigger $113M In Short Liquidations

Bitcoin Hits 40-Day High As US-Iran Tensions Trigger $113M In Short Liquidations

March 17, 2026
Nvidia Plans to add Innovation in the Metaverse with Software, Marketplace Deals

NVIDIA Project Rheo Trains Hospital Robots in Simulation Before Patient Contact

March 16, 2026

Subscribe Now

  • Contact Us
  • Privacy Policy
  • Terms of Use
  • DMCA

© 2021 cryptoabc.net - All rights reserved!

No Result
View All Result
  • Live Crypto Prices
  • Crypto News
    • Worldwide
      • Bitcoin
      • Ethereum
      • Altcoin
      • Blockchain
      • Regulation
    • Australian Crypto News
  • Education
    • Cryptocurrency For Beginners
    • Where to Buy Cryptocurrency
    • Where to Store Cryptos
    • Cryptocurrency Tax in Australia 2021

© 2021 cryptoabc.net - All rights reserved!

Welcome Back!

Login to your account below

Forgotten Password?

Create New Account!

Fill the forms below to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
Please enter CoinGecko Free Api Key to get this plugin works.