Consensys Unwittingly Hired North Korean Operative Who Accessed MetaMask Core Code
ConsenSys, the developer of MetaMask, discovered that it had unknowingly hired a North Korea-linked developer through a third-party provider who gained access to MetaMask's core code. The individual's access lasted approximately one month before their identity was revealed, after which ConsenSys revoked permissions and conducted an internal investigation.
Key Highlights
- •A developer using the alias 'Tyler Knapp' was hired via third-party provider and later identified as North Korea-linked
- •The individual had access to MetaMask core code for approximately one month
- •ConsenSys revoked access immediately upon discovering the developer's true identity
- •Internal investigation found no evidence of data theft or malicious code injection
- •The hiring occurred through an external staffing provider rather than direct recruitment
Why It Matters
This incident highlights security risks in crypto infrastructure development and raises concerns about supply chain vulnerabilities in wallet and protocol development. For MetaMask users and the broader Ethereum ecosystem, it underscores the importance of robust identity verification and access controls in critical software projects.
Source: CryptoTalkies Events Feed
Frequently Asked Questions
Was MetaMask compromised or user data stolen?
+
How long did the unauthorized developer have access?
+
How did this developer gain access to MetaMask?
+
What specific information about the developer's background or how the breach was discovered is available?
+
Related Events
Vietnam to Impose Fines up to $1,900 for Unlicensed Crypto Trading
Bitmine Slows Ethereum Purchases as Tom Lee Shifts $86M Into Stock Buybacks
Bank of Korea to Launch Expanded CBDC Pilot With Live Transactions Across 9 Banks in September
BitMine Boosts Ethereum Hoard to ~5.78M ETH, Aiming for 5% Supply as Strategic Hedge
This page is for informational purposes only and does not constitute financial advice.Disclaimer