CoinGeek News, March 19 - Following余弦, founder of Slow Mist, disclosing that Coinbase Commerce's asset recovery page directly asks users to enter plaintext recovery phrases, posing security risks, Slow Mist Chief Information Security Officer 23pds further noted that the page's sitemap also has vulnerabilities. Malicious attackers can easily use tools like ResourcesSaver to download frontend code and deploy similar websites. If combined with phishing attacks using domains similar to Coinbase, users can easily be deceived.

View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pin