Dan Romero
@dwr.eth
Would be curious what @aman @scharf think happened with the Kevin Rose hack? https://twitter.com/0xquit/status/1618335012176400384?s=46&t=EDpYmItVCL0dWiilP6A4TA
12 replies
0 recast
0 reaction
Cassie Heart
@cassie
There is this process with webauthn where the keys are unique to the domain and the domain is checked by the client to confirm there is no MITM. Due to the single key, single account design of Ethereum (aware there is nuance and new developments, speaking to norms), it falls prey to these kinds of attacks.
0 reply
0 recast
1 reaction