Flash News

One Korean hacker infiltrated MetaMask to participate in code development without causing data and financial losses

On 19 July, MetaMask developer Consensys discovered that a Korean hacker had entered the MetaMask team in a false capacity for about a month and was involved in the development of the core wallet code. The person, using the name "Tyler Knapp", joined as a consultant through the contractor and the GitHub account was imyugioh, whose code was submitted from 9 March until April. Part of the hacker's participation code relates to transfers between encrypted assets and legal currency. Consensys cut off its access as soon as it discovered the risk and asked employees to suspend the distribution of the product and avoid contact with it and to report the matter to law enforcement. According to Matt Corva, General Counsel, Consensys, the investigation confirmed that there were no assets or data misappropriated, no malicious codes were deployed and user funds and security were not affected. The company is currently re-examining the contractor ' s background verification process. TRM Labs states that the work environment of the developers has become an important entry point for the attackers to access the encryption company ' s key and withdrawal approval system. Previously, a project funded by the Ether Workshop had found 100 suspected Korean IT practitioners in 53 encryption projects。

OKX - Unlock Rewards