Close Menu
    Trending
    • Saylor Says Strategy Added More Than 716,000 BTC Since 2022
    • Fidelity FBTC Leads Bitcoin ETF Inflows With $14M as Market Bleeds $82M Post-FOMC
    • Ethereum Layer 2 Taiko Urges Users to Withdraw Funds From Bridges, Confirms Security Breach
    • Bitcoin Bears Eye Lower Levels As TradingView Analysts Flag
    • Bitcoin Price Prediction as Kevin Warsh’s Fed Debut Flops
    • Algorand Reveals Plans to Become Quantum Resistant by 2027
    • Bitcoin Reclaims $63,500 As Traders Watch For Squeeze Toward
    • G7 Targets North Korea Crypto Hackers as Weapons-Financing Threat After $6.75B Stolen
    CryptoGate
    • Home
    • Bitcoin News
    • Cryptocurrency
    • Crypto Market Trends
    • Altcoins
    • Ethereum
    • Blockchain
    • en
      • en
      • fr
      • de
      • it
      • ja
    CryptoGate
    Home»Ethereum»Security alert — Chromium vulnerability affecting Mist Browser Beta
    Ethereum

    Security alert — Chromium vulnerability affecting Mist Browser Beta

    CryptoGateBy CryptoGateDecember 24, 2025No Comments3 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email


    As a result of a Chromium vulnerability affecting all launched variations of the Mist Browser Beta v0.9.3 and beneath, we’re issuing this alert warning customers to not browse untrusted web sites with Mist Browser Beta at the moment. Customers of “Ethereum Pockets” desktop app aren’t affected.

    Affected configurations: Mist Browser Beta v0.9.3 and beneath
    Chance: Medium
    Severity: Excessive

    Malicious web sites can probably steal your personal keys.

    As Ethereum Pockets desktop app doesn’t qualify as a browser — it accesses solely the native Pockets Dapp — it isn’t topic to the identical class of points current in Mist. For now, it’s endorsed to make use of Ethereum Wallet to handle funds and work together with sensible contracts as an alternative.

    Mist Browser’s imaginative and prescient is to be an entire user-facing bridge to the ethereum blockchain and set of applied sciences that compose the Web3. The browser paves a big path for the following Internet our ecosystem is proudly constructing.

    Safety-wise, making a browser (an app that masses untrusted code) that handles personal keys is a difficult process. Over the course of the final 12 months, we’ve got had Cure53 conduct an intensive safety audit of Mist, and vastly improved the safety of each the Mist browser and the underlying platform, Electron. We have promptly fastened discovered safety points.

    However that isn’t sufficient. Safety within the browser area is a unending battle. The Mist browser relies on Electron, which relies on Chromium. Every new Chromium launch fixes quite a few safety points.

    The layer between Mist and Chromium, Electron, is a mission led by GitHub that goals to ease the creation of cross-platform functions utilizing JavaScript. Not too long ago, Electron hasn’t saved updated with Chromium, resulting in an growing potential assault floor as time passes.

    A core drawback with the present structure is that any 0-day Chromium vulnerability is a number of patch-steps away from Mist: first Chromium must be patched, then Electron must replace the Chromium model, and eventually, Mist must replace to the brand new Electron model.

    We’re analyzing how we might take care of Electron’s not-so-frequent launch schedule, to scale back the hole between Chromium variations we use. From preliminary research, Brave’s Muon (an Electron fork) follows Chromium updates intently and is one potential possibility. The Courageous browser, which additionally incorporates a cryptocurrency pockets integration, has an analogous threat-model and calls for for safety as Mist.

    An vital reminder: Mist continues to be beta software program, and you need to deal with it as such. The Mist Browser beta is supplied on an “as is” and “as obtainable” foundation and there aren’t any warranties of any variety, expressed or implied, together with, however not restricted to, warranties of merchantability or health of function.
    Fast safety guidelines:

    • Keep away from preserving massive portions of ether or tokens in personal keys on an internet pc. As a substitute, use a {hardware} pockets, an offline system or a contract-based answer (ideally a mixture of these).
    • Again up your personal keys — Cloud companies aren’t the most suitable choice to retailer it.
    • Don’t go to untrusted web sites with Mist.
    • Don’t use Mist on untrusted networks.
    • Hold your day-to-day browser up to date.
    • Hold observe of your Working System and anti-virus updates.
    • Learn to confirm file checksums (link).

    Lastly, we want to thank the safety researchers that labored laborious on reproducing and making invaluable submissions by way of the Ethereum Bounty program.

    In the event you want additional info, get in contact right here: mist[at]ethereum dot org.

    [We’ll update this post as the situation evolves].

    @evertonfraga
    Mist Staff



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    CryptoGate
    • Website
    • Pinterest

    Related Posts

    Ethereum’s Jaredfromsubway MEV bot drained after approving its own $7.5M theft

    June 21, 2026

    Morgan Stanley’s proposed 0.14% ETH and SOL fees could turn the next crypto ETF race into a price fight

    June 21, 2026

    Ethereum Quantum-Proof Account Proposal Could Make Wallet Protection Cheap

    June 15, 2026

    XRP Eyes $1.20 Breakout As Upbit Flows Hit Highest Share Since May 2024

    June 15, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Tether Eyes US Expansion as New Stablecoin Rules Take Shape

    July 25, 2025

    Did a Whale Just Signal a PEPE Bull Run? On-Chain Data Suggests It’s Happening

    September 14, 2025

    Trump Media And Crypto.com Partner To Launch $6.42B ‘Saylor-Style’ Crypto Treasury

    August 27, 2025

    SUI Breakout Could Lead to $8: Analyst Explains Why

    July 28, 2025

    Solana (SOL) Has the Perfect Recipe for a Massive Rally, Bitwise’s Matt Hougan

    September 13, 2025
    Categories
    • Altcoins
    • Bitcoin News
    • Blockchain
    • Crypto Market Trends
    • Crypto Mining
    • Cryptocurrency
    • Ethereum
    About us

    Welcome to cryptogate.info — your trusted gateway to the latest and most reliable news in the world of cryptocurrency. Whether you’re a seasoned trader, a blockchain enthusiast, or just curious about the future of digital finance, we’re here to keep you informed and ahead of the curve.

    At cryptogate.info, we are passionate about delivering timely, accurate, and insightful updates on everything crypto — from market trends, new coin launches, and regulatory developments to expert analysis and educational content. Our mission is to empower you with knowledge that helps you navigate the fast-paced and ever-evolving crypto landscape with confidence.

    Top Insights

    Goldman Sachs Discloses $1.1B Position In Bitcoin Holdings

    February 11, 2026

    Happy Bitcoin Pizza Day, The 16th Anniversary Of Laszlo Hanyecz Paying 10,000 BTC For Two Papa John’s Pies

    May 23, 2026

    Kraken IPO Plan Signals Fresh Mid‑Cycle Push for Crypto

    December 25, 2025
    Categories
    • Altcoins
    • Bitcoin News
    • Blockchain
    • Crypto Market Trends
    • Crypto Mining
    • Cryptocurrency
    • Ethereum
    YouTube
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    • Impressum
    • About us
    • Contact us
    Copyright © 2025 CryptoGate All Rights Reserved.

    Type above and press Enter to search. Press Esc to cancel.