Tangem Users Urged to Update Apps Amid Security Vulnerability Over Private Key Collection Concerns
The post Tangem Users Urged to Update Apps Amid Security Vulnerability Over Private Key Collection Concerns appeared on BitcoinEthereumNews.com.
Tangem’s mobile app faced a critical security issue that led to the unintended collection of users’ private keys during email interactions. This major vulnerability was exposed by community members, prompting a wave of criticism towards Tangem’s initial handling of the situation. All users are strongly advised to update their Tangem mobile apps immediately to protect their crypto assets from potential threats. Tangem’s security flaw puts users at risk as private keys were reportedly collected via email; immediate app updates recommended for safety. Urgent Update Required: Tangem Users at Risk The discovery of a significant security flaw in Tangem’s mobile wallet has raised alarm bells among its user base. Reports emerged on December 29 that private keys, essential to the security of cryptocurrencies, could be found in email histories due to a bug within the app’s logging process. This issue not only exposed private keys to Tangem employees but potentially compromised the wallets of all affected users. Community Reaction and Responsibility The vulnerability was highlighted by a Reddit user known as “u/areklanga,” who revealed how private keys were not only stored in user email history but could also be accessible to Tangem staff, stating that the situation left users feeling compromised. The discussion quickly garnered significant attention, prompting users to reach out to Tangem’s support to express their concerns. In a statement released on December 30, Tangem recognized the issue and explained that the security breach was due to a bug that incorrectly logged private keys during customer service interactions. This official acknowledgment followed considerable community pressure. “Private keys were logged mistakenly due to a flaw during wallet creation,” Tangem confirmed. “We have deleted all affected logs and resolved the incident.” This reassurance, however, did little to quell the unrest among users who felt the company could have acted more transparently.…
Filed under: News - @ January 2, 2025 12:52 am