|
|
|
|
|
by drcross
2480 days ago
|
|
Please read the following if you use chrome password manager on your phone: https://www.reddit.com/r/Bitcoin/comments/cxtfak/coinomi_wal... TL;DR; Someone in google is sniffing autocorrect text and when they find 12 word bitcoin seed phrases they are stealing the bitcoin. This is a serious breach of trust. If someone from Google is reading this please take it seriously. EDIT: On further research it may not categorically be someone in google if the autocorrect text is sent in plain text. Autocorrect text should not be sent in the clear though. See here for more information: https://avoid-coinomi.com |
|
This[1] report on this incident (commissioned by the wallet creators) makes me skeptical that autocorrect or Google was involved at all. I think some sort of malware or phishing to steal the seed was a much more likely attack.
[1] https://medium.com/@cipherblade/how-not-to-react-when-your-c...