ConsenSys Accidentally Hires North Korean Agent—Access to Core Code of MetaMask Revealed for One Month
ConsenSys Accidentally Hires North Korean Agent
It has been revealed that the major blockchain company ConsenSys inadvertently hired a software developer connected to the North Korean government as a consultant.
This developer used the alias "Tyler Knapp" and the GitHub account "imyugioh," and was involved in the core code development of the company’s main service, the cryptocurrency wallet MetaMask, for about one month.
Intrusion Through Clever Identity Fraud
According to ConsenSys's legal advisor, Matt Corva, this individual was contracted not through direct employment but via a referral from a reputable external third-party service provider.
The developer participated in the project starting March 9, 2026, and was involved in developing features that connect cryptocurrency users with external fiat payment providers. Subsequently, the company detected the threat in April and immediately revoked the individual’s access rights. During the investigation period, all product releases were temporarily halted, and employees were placed under strict orders to avoid contact with the individual and maintain confidentiality.
Damage Assessment and Company Response
As a result of ConsenSys's comprehensive internal investigation and information sharing with law enforcement, the following facts have been confirmed:
**- No misappropriation of assets or data
- No deployment or alteration of malicious code
- No impact on user safety or security**
The company stated, "This incident has demonstrated the effectiveness of our security procedures in detecting complex threats at the national level," while also indicating plans to revise outsourcing practices to apply stringent screening criteria equivalent to direct employment for engineers via external vendors.
Threat of Internal Intrusion Facing the Cryptocurrency Industry
This incident highlights the reality that North Korean hacker groups are shifting their tactics from traditional cyberattacks to exploiting fake identification, remote work systems, and infiltrating through "legitimate hiring routes" via third-party organizations.
According to data from TRM Labs, approximately 66% (around 104.4 billion yen) of the cryptocurrency stolen through hacking in the first half of 2026 was attributed to North Korean-related groups.
The suspension of releases at ConsenSys, which is responsible for critical infrastructure for Ethereum, is evidence that the company takes this risk extremely seriously. Cryptocurrency companies will now be compelled to strengthen governance not only against smart contract bugs but also against "internal risks (supply chain risks)" including contractors and consultants.
This content is provided for general informational purposes only and doesn't constitute financial, investment, legal, or tax advice. Any events, rewards, online promotions, or related information mentioned herein should not be considered a recommendation, solicitation, or invitation to purchase, sell, trade, or otherwise deal in any crypto assets. Crypto assets are highly volatile and may result in loss. The availability of WEEX services, products, and related events may vary by region. You are responsible for ensuring that your participation is in accordance with applicable local laws and regulations.
You may also like

Mining Boom: San Juan Seeks to Issue Debt of $500 Million to Finance Strategic Projects

Bitcoin Suspended by Fed Decision: What’s at Stake This Wednesday

Marc Cucurella Keeps His Promise and Tattoos Luis De La Fuente After the 2026 World Cup

Chainlink's CCIP Absorbs $7 Billion in a Massive Migration of Protocols

Grok 4.6 gets Aug. 7 launch date, Grok 4.7 follows

Juan Grabois Meets Peter Thiel: Artificial Intelligence, the Antichrist, Universal Income, and Argentina's Role

Trump and Netanyahu Meeting... Oil Prices Plummet Amid Search for Diplomatic Solutions

The wholesale dollar has gone five days without declines, although it remains below $1,500

The ideal invention for running at night: a smart vest with LED lights for greater safety

The Theory of the 'Dead Internet' is Confirmed: AI Agent Traffic Soars by 8000%

Mortgage Loans and Guarantees: The Government Prepares a New System to Expand Access to Housing

Winter Holidays: Promotions, Installments, and Snow Are Not Enough to Fill Destinations

OpenAI, Anthropic push 30-day review for frontier AI models

I Scanned The Entire Bitcoin Blockchain For Images. What I Found Will Shock You

The Dumbest-Looking AI Prompt Just Beat Months of Careful Game-Design Prompt Engineering

Left His Tesla Cybertruck Plugged In for Two Weeks and It Wouldn’t Turn On: What Really Happened?

What is and how does "Apple Upgrade" work, the official rental plan for iPhones, iPads, and MacBooks

Quick Maths On STRC Buybacks: The Truth About Net Bitcoin Per Share And Accretion

Robinhood Chain Tops Solana in Tokenized Stock Volume Via Memecoin Pairs

Between Economic Sanctions and Bombings, the US Strategy to Negotiate with Iran

Iran Released a Video with Threats Against Melania and Barron Trump: Tensions with the US Escalate

Artificial Intelligence: Vint Cerf Wants to Give Each AI Agent an Identity Card

Ondo Turns Away from Its L1 Blockchain and Now Focuses on Off-Chain Execution

SBI expands beyond Ripple with Canton Network unit

Michael Saylor: Bitcoin Has Won, But Must Be Protected from Internal Corruption

Clear Creek reveals $15M Bitcoin, crypto ETF portfolio

Flare makes XRPFi accessible in a single signature with smart accounts v1.3

Bitcoin: Does the Tug-of-War Between Whales and Small Holders Signal a Bottom?

Ethereum startup EthSystems bets privacy is key to getting banks on public blockchains











