BlockBeats report: On July 19, ConsenSys, the developer of MetaMask, discovered that a North Korean hacker had infiltrated the MetaMask team under a false identity, working for approximately one month and contributing to the development of core wallet code. The individual used the name "Tyler Knapp," joined as a contractor in an advisory role, and operated under the GitHub username imyugioh, with code commits spanning from March 9 to April.
The hacker's involvement included code related to transfers between crypto assets and fiat currency. Upon identifying the risk, ConsenSys immediately revoked the hacker's access, instructed employees to halt product releases and avoid any contact, and reported the incident to law enforcement.
Consensys General Counsel Matt Corva stated that the investigation confirmed no assets or data were misappropriated, no malicious code was deployed, and user funds and security were unaffected. The company is currently reviewing its contractor background check processes.
TRM Labs stated that developers' work environments have become a critical entry point for attackers to gain access to encryption companies' keys and withdrawal approval systems. Previously, an Ethereum-funded project identified 100 suspected North Korean IT professionals across 53 crypto projects.

