Scan to download
BTC $70,221.66 +2.03%
ETH $2,130.77 +2.35%
BNB $637.91 +1.34%
XRP $1.42 -4.56%
SOL $81.67 -4.53%
TRX $0.2795 -0.47%
DOGE $0.0974 -3.83%
ADA $0.2735 -4.22%
BCH $477.88 +1.98%
LINK $8.64 -2.97%
HYPE $28.98 -1.81%
AAVE $122.61 -3.42%
SUI $0.9531 +3.02%
XLM $0.1605 -4.62%
ZEC $260.31 -8.86%
BTC $70,221.66 +2.03%
ETH $2,130.77 +2.35%
BNB $637.91 +1.34%
XRP $1.42 -4.56%
SOL $81.67 -4.53%
TRX $0.2795 -0.47%
DOGE $0.0974 -3.83%
ADA $0.2735 -4.22%
BCH $477.88 +1.98%
LINK $8.64 -2.97%
HYPE $28.98 -1.81%
AAVE $122.61 -3.42%
SUI $0.9531 +3.02%
XLM $0.1605 -4.62%
ZEC $260.31 -8.86%

Slow Fog CISO: The Coinbase Commerce asset recovery page sitemap also has flaws, posing a phishing attack risk

2026-03-19 11:37:54
Collection

After Slow Mist founder Yu Xian disclosed that the Coinbase Commerce asset recovery page directly requires users to enter plaintext mnemonic phrases, Slow Mist's Chief Information Security Officer 23pds added that the sitemap of that page also has flaws, allowing malicious attackers to easily use tools like ResourcesSaver to download the frontend code and deploy similar websites.

If combined with similar domain names like Coinbase for phishing attacks, users can easily fall victim.

app_icon
ChainCatcher Building the Web3 world with innovations.