$SPLASH
Sudden SpikeSnapshot Window: 2026-07-23 16:30 UTC ยท โ Back to Crypto Overview
Social Momentum Summary
Total Engagement - Comments: 0, Retweets: 0, Likes: 3, Impressions: 144
Verbatim Community Citations & Social Evidence 1 source posts analyzed
A North Korea-linked contractor spent nearly a month contributing to MetaMask's codebase. While no assets or data was stolen, investigators have connected suspected DPRK linked personnel to over 20+ projects. Will the number of exploits rise? [Spoken audio]: A North Korean link developer reportedly spent a month working inside MetaMask. The contractor used a fake identity. They came through a reputable third-party provider and contributed to MetaMask's wallet and fiat on-ramp code before Consensus identified the issue and revoked access. Consensus says no funds or user data were compromised and no malicious code was deployed. But this is much bigger than just MetaMask. Investigators have already connected suspected North Korean IT workers to more than two dozen crypto companies, including Cosmos, Injective Phantom, Sushi, and Yern. Several of those projects were later hacked, though investigators haven't linked every attack directly to those workers. For years, North Korea's crypto strategy was stealing funds. Now, they're increasingly getting inside the companies themselves. So how many unidentified operatives still have access to crypto's most critical code? And will the next discovery come before or after the next exploit?