Telegram (AI) YouTube Facebook X
Ру
OpenSea closes vulnerability that could have exposed users' personal data

OpenSea closes vulnerability that could have exposed users’ personal data

The OpenSea NFT marketplace team fixed a vulnerability that threatened to expose user data. The issue was discovered by Imperva security researchers.

Security researchers found that the bug allowed de-anonymizing users of the platform by linking an IP address, browser session data, and email to a specific NFT.

According to experts, the cause of the bug was a misconfiguration of the iFrame-resizer library. The vulnerability allowed data to be aggregated through cross-site search.

Using information returned in responses, an attacker could then send phishing links to a potential victim.

Earlier in December 2022, OpenSea became victims of an attack worth several million dollars.

Подписывайтесь на ForkLog в социальных сетях

Telegram (основной канал) Facebook X
Нашли ошибку в тексте? Выделите ее и нажмите CTRL+ENTER

Рассылки ForkLog: держите руку на пульсе биткоин-индустрии!

We use cookies to improve the quality of our service.

By using this website, you agree to the Privacy policy.

OK