Welcome to BeerMoneyForum.com - BIGGEST MAKE MONEY FORUM ONLINE

Join us now to get access to all our features. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, and so, so much more. It's also quick and totally free, so what are you waiting for?
Blue
Red
Green
Orange
Voilet
Slate
Dark
  Guest viewing is limited

Must checkout:

❕NEWS A new FLAW that could steal your Crypto and NFTs! WARNING

KevinHVG

Platinum Member
LV
0
 
Joined
Aug 21, 2020
Messages
819
Reaction score
159
Points
50
Age
44
Location
South Africa
BMF Points
$9,453
🚨MetaMask and Phantom warn of flaws that could steal:🚨

According to MetaMask and Phantom, a new "Demonic" vulnerability could expose a crypto wallet's secret recovery
phrase, allowing attackers to steal NFTs and crypto stored within it. Even with this issue, there are a lot of cybercrimes
committed these days, especially as regards crypto, and no elements have been ideally adopted as regards tracing
transactions as ideas of ID recognition provided by Concordium are not widely adopted.

Halborn, a blockchain cybersecurity organization, discovered the "Demonic vulnerability in September 2021 and reported
it to wallet vendors remediation.



🚨Exploiting a Brower feature:🚨

The CVE-2022-32969 Demonic vulnerability is caused by how web browsers save the content of non -
password input fields to disk as part of their standard "restore session" system.☝️

When using Google Chrome or Firefox, the browser will cache data entered into text fields (other than password
fields) so that the data can be restored if the browser crashes utilizing the "Restore Session" function.☝️

Because browser wallet extensions like MetaMask, Phantom, and Brave as an input field that isn't labeled as a
password field, when a user enters their recovering phrase, it's saved on the disk in plain text. ☝️

With access to the computer, an attacker or malware could steal the seed and import the wallet onto their own
devices. This attack would necessitate physically stealing the computer, gaining remote access to it, or infecting
it with a remote access trojan, which is common in highly targeted and persistent attacks.☝️

If a hard drive is encrypted, even if it is stolen, the attacker can not access the recovery phrase unless they have
the decryption key.
According to Halborn, another requirement for exploitation is that the victim use the "show recovery phrase
checkbox" to view the phrase during import, which triggers local disk storage.☝️


BE SAFE ALL THE TIME AND SHARE NEW DISCOVERIES HERE ON BEERMONEYFORUM...
 

📢 Recommended Partners

Paykassma - Accept Payments Online  | Payment Processing since 2019 Payka$$ma
Leading solution for accepting high-risk payments since 2019
5.00 star(s) 1 ratings
Updated
MGID - Native Performance & Programmatic Advertising Platform MGID Team
0.00 star(s) 0 ratings
Updated
Roobet.com | Crypto’s Fastest Growing Casino 🦘 Roobet.com
1.00 star(s) 1 ratings
Updated
Duckdice.io - Top Crypto Gambling - Bitcoin Dice DuckDice.io
0.00 star(s) 0 ratings
Updated

banner

REWARDS: Active Raffles


  • 🤑 Roll 4: Win 100,000 BMF Points!

    The entry period for this raffle ends in..
Back
Top Bottom

Earnings Disclaimer:  All the posts published herein are merely based on individual views, and they do not expressly or by implications represent those of BeerMoneyForum.com or its owner. It is hereby made clear that BeerMoneyForum.com does not endorse, support, adopt or vouch any views, programs and/or business opportunities posted herein. BeerMoneyForum.com also does not give and/or offer any investment advice to any members and/or it's readers. All members and readers are advised to independently consult their own consultants, lawyers and/or families before making any investment and/or business decisions. This forum is merely a place for general discussions. It is hereby agreed by all members and/or readers that BeerMoneyForum.com is in no way responsible and/or liable for any damages and/or losses suffered by anyone of you.