Your ICO Here
ICO Date Period: ICO BTCUI from 01.01.2018 - 01.09.2018
Round 1 (until March 1st) : BTCUI = 0.000010
Round 2 (until May 1st) : BTCUI = 0.000030
Round 3 (until July 1st) : BTCUI = 0.000075
Round 4 (until September 1st) : BTCUI = 0.000150

Now Buy Bitcoin Unicorn on Etherdelta || Estimated price after ico : 0.12$

Electrum

Post Reply

Topic author
Sakurako
Reactions:
Posts: 26
Joined: 08 Jan 2018, 14:18
Cash on hand: Locked
Bank: Locked
Location: Poland
Bitcoin: 1Crw9DJp8oPKxxkmQLihXD2r5Wn7mUMQF4
ETH: 0xf0d08020dbDB41C85f5e34Abe8b853bae4Fe2190
Poland

Electrum

#1

Post by Sakurako » 11 Jan 2018, 00:27

Electrum users must upgrade to 3.0.5 if they haven't already.

JSONRPC vulnerability in Electrum 2.6 to 3.0.4
On January 6th, a vulnerability was disclosed in the Electrum wallet software, that allows malicious websites to execute wallet commands through JSONRPC executed in a web browser. The bug affects versions 2.6 to 3.0.4 of Electrum, on all platforms. It also affects clones of Electrum such as Electron Cash.

Can funds be stolen?
Wallets that are not password protected are at risk of theft, if they are opened with a version of Electrum older than 3.0.5 while a web browser is active.

In addition, the vulnerability allows an attacker to modify user settings, the list of contacts in a wallet, and the "payto" and "amount" fields of the user interface while Electrum is running.

Although there is no known occurrence of Bitcoin theft occurring because of this vulnerability, the risk increases substantially now that the vulnerability has been made public.

What should users do?
All users should upgrade their Electrum software, and stop using old versions.

Users who did not protect their wallet with a password should create a new wallet, and move their funds to that wallet. Even if it never received any funds, a wallet without password should not be used anymore, because its seed might have been compromised.

In addition, users should review their settings, and delete all contacts from their contacts list, because the Bitcoin addresses of their contacts might have been modified.

https://electrum.org/#download



Was This Topic Useful?

Post Reply

Return to “MEW - My Ether Wallet”