The spell checker which could have hacked Coinomi

in #blockchain5 years ago


I came across this article from Coinomi about a statement responding to a Mr Warith Al Maawali who had made a video on how if you used the Desktop Wallet of Coinomi, your restoration of the Coinomi wallet could be jeopardize because of a SPELL CHECKER function which google had.


If you didn't understand that video, this is what it was explained in the most simplistic manner.

Since restoring a COINOMI wallet requires you to type in a RECOVERY phrase, Google 's Spell Checker kicks in and records down all the words you use which is shown in the right hand side of the screen.

This is a large vulnerability which could be exploited by hackers even though Coinomi claims that all information received thru the spell checker does not go anywhere. However its still a vulnerability which is acknowledge by Coinomi.

Here is the full responds from Coinomi in regards to this Spell Checker vulnerability.

https://medium.com/coinomi/official-statement-on-spell-check-findings-547ca348676b

Because of this COINOMI started getting a whole series of allegations about lost money in wallets and etc. etc. and the drama of COINOMI and their reputation is on the line.

Here is a reddit article about someone loosing their entire life savings just after using COINOMI wallets

So be careful as to what you use to keep your precious crypto, as people will always find a way to try to get your $$$ and these vulnerability in softwares & systems are consistently put to the test.

Do take necessary precaution in safe guarding your data and for cryptos, do not place it all in 1 wallet, I do suggest to have a bit of diversity in the method of storing your cryptos. And use only companies which emphasize on security.

Cheers and have a good weekend.



Posted from my blog with SteemPress : http://steemitup.club/coinomi-spell-checker-hack-vulnerability-explained/
Sort:  

Google record everything and your whereabouts. Therefore, with Google no private key or recovery seed is safe.

its pretty scary huh

Thank you so much for participating in the Partiko Delegation Plan Round 1! We really appreciate your support! As part of the delegation benefits, we just gave you a 3.00% upvote! Together, let’s change the world!

Nasib cent cent ja duit dalam. Hhahaha

Posted using Partiko Android

NYC coins yo !

Btc also ada cent cent. Hahaha

Posted using Partiko Android

Congratulations @bitrocker2020! You have completed the following achievement on the Steem blockchain and have been rewarded with new badge(s) :

You published a post every day of the week

Click here to view your Board
If you no longer want to receive notifications, reply to this comment with the word STOP

To support your work, I also upvoted your post!

Vote for @Steemitboard as a witness and get one more award and increased upvotes!

Coin Marketplace

STEEM 0.30
TRX 0.12
JST 0.034
BTC 64136.70
ETH 3128.20
USDT 1.00
SBD 3.94