BlockBeats news, March 15, OKX founder and CEO Star responded to the "Wuhan Anshun Technology team's hacker attack incident utilizing plugin vulnerabilities" stating, "The OKX Wallet security team has completed the investigation. It is inaccurate to describe it as an 'OKX wallet vulnerability.' Two points need clarification:
· This incident is not a security vulnerability of the OKX Web3 wallet. The attack method was that hackers controlled user devices through Trojan software, then implanted hooks by tampering with the webpage JS code or monitoring keyboard input to steal locally stored encrypted files and passwords.
· OKX Web3 wallet is 100% self-custodial. Private keys and passwords only exist on the user's own device, and OKX cannot access or control user assets. However, if the user's device itself has been compromised by hackers, then any wallet—including MetaMask—cannot guarantee security. It's like a thief being able to operate your computer and see all your keyboard inputs.
Users are advised to avoid installing software or plugins from unknown sources, regularly check device security, and properly protect mnemonic phrases and private keys.
It is reported that the Wuhan Anshun Technology team controlled a large number of user terminals to steal mnemonic phrases and remotely transfer digital assets, with an involved amount of 7 million USD.
