[Subscribe Now] Track A-Level Transparency Project Biweekly Report and Discover the Top 1% of Projects
API Download the RootData App

Slow Fog CISO: The Coinbase Commerce asset recovery page sitemap also has flaws, posing a phishing attack risk

Mar 19, 2026 11:37:54

Share to

After Slow Mist founder Yu Xian disclosed that the Coinbase Commerce asset recovery page directly requires users to enter plaintext mnemonic phrases, Slow Mist's Chief Information Security Officer 23pds added that the sitemap of that page also has flaws, allowing malicious attackers to easily use tools like ResourcesSaver to download the frontend code and deploy similar websites.

If combined with similar domain names like Coinbase for phishing attacks, users can easily fall victim.

Recent Fundraising

More
$100M Apr 1, 2025
$1B Mar 20
-- Mar 20

New Tokens

More
edgeX EDGE
Mar 19
Mar 18
Mar 18

Latest Updates on 𝕏

More
Mar 19
Mar 19