Consensys, a leading Ethereum software firm, has firmly denied rumors that user data or funds were compromised after a North Korea-linked IT worker temporarily gained access to MetaMask’s core codebase. The security incident involved an individual operating under the alias « Tyler Knapp », engaged as a consultant through a third-party provider. Between March 9 and early April 2026, this contractor contributed directly to MetaMask’s codebase, specifically working on fiat on-ramp and off-ramp features. Upon detecting the threat, Consensys immediately froze all product releases, terminated the contractor’s access, and launched a comprehensive internal security audit. The investigation confirmed that no malicious code was deployed and no customer assets or data were compromised.
Source: Read the original article

