logo

A Statement about Disclosing Bad Behaviors in Mobile Wallet Apps

ID: 18ced21d-d64b-5026-bad2-49b1802f26a5

STIX ID: report--18ced21d-d64b-5026-bad2-49b1802f26a5

Feed Name: CertiK Blog

Threat Score
70/100

Date Published: 2024-02-29

Date Updated: 2026-06-11

...
...

CertiK research identified multiple critical vulnerabilities in mobile wallets — ranging from hidden/malicious functions that exfiltrate private keys and over-collection or exposure of personal data to bugs enabling remote code execution. The team followed responsible disclosure but encountered vendor resistance to public alerts, so they plan an anonymized, limited-disclosure campaign to raise community awareness and improve Web3 wallet security while withholding exploit-enabling details.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.