Get all your news in one place.
100’s of premium titles.
One app.
Start reading
Benzinga
Benzinga
Business
Wahid Pessarlay

Cryptographer IDs Critical Metamask Privacy Vulnerability

Metamask is a crypto wallet and gateway for accessing decentralized apps (DApps) built on the Ethereum (CRYPTO: ETH) blockchain. A cryptographer addressed a security loophole that can put 21 million users at risk.

What happened: Alexandru Lupascu — co-founder of the OMNIA protocol and a blockchain analyst — recently published a blog about a critical vulnerability in the most popular Web 3.0 wallet. He says the vulnerability can put a users’ IP address and privacy on the line by spending only $50.

According to Lupascu, a hacker can mint a non-fungible token and transfer free ownership to the victim by only knowing their Ethereum address connected to the Metamask wallet.

“Do not underestimate the risk associated with IP leaks.” Lupascu said. “If malicious actors derive more information from the IP address (think geolocation, GSM carrier, etc.), they can turn it into physical risks, such as kidnapping.”

Daniel Finlay — the founder of Metamask — knew about this loophole a long time ago and said in a tweet: “Alex is right to call us out for not addressing it sooner. Starting work on it now. Thanks for the kick in the pants, and sorry we needed it.”

See Also: Best Crypto Wallet

According to ConsenSys, Metamask is the most popular hot crypto wallet with over 21 million monthly active users as of Nov 2021.

Sign up to read this article
Read news from 100’s of titles, curated specifically for you.
Already a member? Sign in here
Related Stories
Top stories on inkl right now
One subscription that gives you access to news from hundreds of sites
Already a member? Sign in here
Our Picks
Fourteen days free
Download the app
One app. One membership.
100+ trusted global sources.