‘Demonic’ Threat Looms Large Over Crypto Wallets, Metamask and Phantom Deploy Security Patches

If Demonic was to latch on-to a crypto wallet, it could lead to the wallet’s hostile takeover.

Advertisement
By Radhika Parashar | Updated: 17 June 2022 15:10 IST
Highlights
  • The vulnerability has been in existence since 2021
  • Discussions have opened around it to make people aware
  • Brave and other affected wallets yet to release statement

People who use crypto wallets via browsers must migrate to a new set of accounts

Photo Credit: Reuters

A cyber vulnerability, codenamed ‘Demonic', has been risking the networks of crypto wallets like Metamask, Brave, and Phantom. The threat, that was discovered last year, is now being addressed publicly to make people aware and limit any damage that may be caused to them. If Demonic was to latch on-to a crypto wallet, it could lead to the wallet's hostile takeover. This issue is known to impact those people who access their crypto wallets via unencrypted desktop browsers.

Blockchain security firm Halborn has informed the affected wallet providers about the issue, while suggesting the deployment of a quick security update.

Advertisement

Soon after, Metamask published a blog on Medium informing users that the vulnerability has been fixed.

“Security researchers at Halborn have disclosed an instance where a Secret Recovery Phrase used by web-based wallets like MetaMask could be extracted from the disk of a compromised computer under some conditions. We have since implemented mitigations for these issues, so these should not be problems for users of the MetaMask Extension versions 10.11.3 and later,” the post read.

Advertisement

The Demonic was not just active on Windows and macOS browsers, but was also functional on Linux, Google Chrome, Chromuim, and Firefox browsers.

In its blog Metamask explained that the vulnerability is most likely to affect users who had a device compromised or stolen soon after importing their Secret Recovery Phrase into the servers of their crypto wallet providers.

Advertisement

Phantom, the Solana-based DeFi and NFT wallet also issued a statement acknowledging that Demonic was a potential issue, which the company claims, has now been tackled.

“After some investigation and an official audit, fixes began rolling out in January 2022 and by April, Phantom users became protected from this critical vulnerability. An even more exhaustive patch is rolling out next week that we believe will make Phantom's browser extension the safest from this vulnerability in the industry,” the company wrote in a post.

Advertisement

Halborn recommends people who use crypto wallets via browsers to migrate to a new set of accounts as soon as possible.

“Rotating passwords/keys and the use of a hardware wallet in conjunction with the browser-based wallet can also provide increased security for users. Enabling local disk encryption is another best practice which mitigates this issue,” the security research firm added.

For now, details on how many wallets have been affected by Demonic remains unknown.

So far in 2022, cyber criminals have stolen $1.7 billion (roughly Rs. 13,210 crore) in digital assets with Decentralised Finance (DeFi) protocols accounting for 97 percent of the total, a report by Chainalysis had recently claimed.

The $600 million (roughly Rs. 4,660 crore) Ronin bridge breach in late March and the $320 million (roughly Rs. 2,486 crore) Wormhole attack in February were the main sources of the loot.


Missed Apple's WWDC 2022? We discuss every major announcement on Orbital, the Gadgets 360 podcast. Orbital is available on Spotify, Gaana, JioSaavn, Google Podcasts, Apple Podcasts, Amazon Music and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.
 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Snap Launches Specs AR Glasses With a Built-In Display at This Price
  2. Honor X80 Pro Max Display Details Teased Before Official Launch
  3. OnePlus N6 Confirmed to Launch in India With an 8,000mAh Battery
  4. Samsung Galaxy Z Fold 8 Wide IMDA Certification Hints at Imminent Launch
  5. You Can Now Download Android 17 on These Devices
  6. BenQ Opens Its First Monitor Brand Store in Mumbai
  7. The OnePlus 15R Is Now Available in a New 16GB RAM Variant at This Price
  8. Vivo Y500 4G Global Launch Teased, Here's Where It Might Arrive First
  1. Scientists Discover Giant Planet Formation Around Supermassive Black Holes
  2. EA Sports FC 26, Call of Duty: Vanguard and More Coming to Xbox Game Pass This Month
  3. Vivo Y500 4G Global Launch Teased; Confirmed to Debut With 8,100mAh Battery
  4. WhatsApp Working on Voice Note Widget for Quick Access via Android Home Screen
  5. Honor X80 Pro Max Teased With 10,000 Nits Display Ahead of June 22 Launch
  6. Binance Defends EU Licence Compliance Following Reports of Possible Rejection
  7. OnePlus 15R Now Available in New 16GB RAM Variant in India With Higher Price Tag: Specifications, Features
  8. Google Extends Android's Parental Controls Beyond Pixel Phones With Android 17
  9. iPhone 18 Pro Max Dummies Hint at Case Compatibility With iPhone 17 Pro Max Despite Thicker Camera Bump
  10. Lenovo Yoga Pro 9n Design Renders, Key Specifications Leaked; Nvidia RTX Spark-Powered Laptop Could Launch Soon
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.