April 24, 2024

Serious vulnerability discovered in Argent wallet

Cryptocurrency cybersecurity company OpenZeppelin reported a discovery in a popular mobile phone.Ethereum Argent's wallet is a serious vulnerability that can lead to a loss of funds.

In an article on the blog, Open'eppelin writes that the vulnerability allows the attacker to gain control of the Argent wallet.This is especially true for those wallets whose users have not included the "defender" function.The development team has already fixed the vulnerability and contacted users whose wallets are vulnerable to update the program.

The "defender" feature allows users to select third-party accounts that are allowed to perform certain actions with the wallet, such as blocking it or initiating a recovery.Until March 30, 2020, the function was not activated by default when creating a wallet.Thanks to an error in the code, attackers were able to attack wallets with the "defender" function disabled, start the process of restoring the wallet and gain access to it.

However, if a user missed a notification and didn't block the recovery process for 36 hours, the attackers could have accessed the funds.Even when the user blocked the process, the attackers could re-initiate it, so the funds on the wallet remained frozen.The experts of Open'eppelin found 329 wallets with vulnerability to attack, and another 5,513 wallets are potentially vulnerable.

"The Argent team quickly responded to the discovery of the vulnerability and fixed it so that users' funds were not stolen," the CEO said.Open'sppelin By Damian Brener.

Earlier this month, users lost more than $ 100,000 due to a vulnerability in updating the Bancor Network protocol.

</p></p>