Charts
DataOn-chain
VIP
Market Cap
API
Rankings
CoinOSNew
CoinClaw🦞
Language
  • 简体中文
  • 繁体中文
  • English
Leader in global market data applications, committed to providing valuable information more efficiently.

Features

  • Real-time Data
  • Special Features
  • AI Grid

Services

  • News
  • Open Data(API)
  • Institutional Services

Downloads

  • Desktop
  • Android
  • iOS

Contact Us

  • Chat Room
  • Business Email
  • Official Email
  • Official Verification

Join Community

  • Telegram
  • Twitter
  • Discord

© Copyright 2013-2026. All rights reserved.

简体繁體English
|Legacy
BTCBTC
💲72262.10
+
2.55%
ETHETH
💲2119.80
+
2.77%
SOLSOL
💲90.35
+
4.04%
USDCUSDC
💲0.9999
-
0%
XRPXRP
💲1.42
+
2.16%
DOGEDOGE
💲0.09979
+
5.63%

SlowMist Warning: WebAuthn Key Login May Be at Risk of Bypass

AiCoin
AiCoin|9月 22, 2025 07:05
SlowMist Technology Chief Information Security Officer 23pds issued a warning on the X platform, stating that researchers have discovered a new attack method capable of bypassing WebAuthn key login. Attackers can exploit malicious browser extensions or leverage XSS vulnerabilities on websites to hijack the WebAuthn API, forcing a downgrade to password login or tampering with the key registration process to steal user credentials. Such attacks do not require physical access to the device or the use of Face ID. Users may face identity impersonation risks and account breaches when using key login on websites with vulnerabilities or malicious extensions. WebAuthn is a security authentication standard developed by the W3C and the FIDO Alliance. It aims to replace or supplement traditional passwords through public key cryptography, supporting hardware security keys, platform authenticators, and FIDO2 devices.
+4
Mentioned
|
APP
Windows
Mac
Share To

X

Telegram

Facebook

Reddit

CopyLink

|
APP
Windows
Mac
Share To

X

Telegram

Facebook

Reddit

CopyLink

Timeline

10月 21, 15:30Batch threshold encryption may redefine DeFi fairness
10月 21, 09:39North Korean hackers use blockchain to hide malware
10月 20, 10:41Sharwa.Finance suffered multiple attacks, with losses exceeding $140,000.
10月 20, 03:58BNB Chain faces a new type of Pi Xiu scheme attack
10月 18, 16:18Bitcoin dust attack resolved.
10月 17, 12:00Private key brute force attack sparks discussion
10月 15, 23:50North Korean hackers exploit open-source platforms to attack cryptocurrency developers
10月 15, 04:43Suspected attack on the Ethereum chain causes a loss of approximately $120,000
10月 14, 11:32Android side-channel attacks can steal 2FA verification codes and private messages
10月 13, 00:31Microsoft Defender has a vulnerability that can bypass authentication

HotFlash

|
APP
Windows
Mac
Share To

X

Telegram

Facebook

Reddit

CopyLink

APP
Windows
Mac

X

Telegram

Facebook

Reddit

CopyLink

Hot Reads