Share this article

Ethereum Browser Bug Could Put User Funds At Risk

Using ethereum browser Mist may put cryptocurrency private keys at risk, according to an Ethereum Foundation blog post.

Updated Sep 13, 2021, 7:16 a.m. Published Dec 15, 2017, 12:05 p.m.
(jivacore/Shutterstock)
(jivacore/Shutterstock)

Using ethereum browser Mist may put cryptocurrency private keys at risk, according to an Ethereum Foundation blog post published today.

The threat arises from a newly discovered vulnerability, which the blog post classifies as "high severity," and impacts all existing versions of the browser. However, Mist browser compatible Ethereum Wallet is not affected, the post clarifies.

STORY CONTINUES BELOW
Don't miss another story.Subscribe to the Crypto Daybook Americas Newsletter today. See all newsletters

As a result, Mist users are urged to avoid "untrusted" websites, and to default to Ethereum Wallet to manage any funds.

The vulnerability stems from the underlying software framework, Electron. Electron's delay in upgrading to correct known security issues has led to "an increasing potential attack surface as time passes," the post's author, Mist developer Everton Fraga, said.

As a result, Mist is considering migrating to a fork of Electron from Brave – named Muon – that has a more frequent release schedule.

In the post, Fraga stressed that Mist is still in beta mode, and users that engage with the browser do so without warranty.

He said:

"The Mist Browser beta is provided on an "as is" and "as available" basis and there are no warranties of any kind, expressed or implied, including, but not limited to, warranties of merchantability or fitness of purpose."

The developer further described security as a "never-ending battle" in browser development, writing: "making a browser (an app that loads untrusted code) that handles private keys is a challenging task."

Sponsored by the Ethereum Foundation, Mist is the most popular ethereum browser for browsing decentralized applications (dapps).

Code image via Shutterstock

More For You

KuCoin Hits Record Market Share as 2025 Volumes Outpace Crypto Market

16:9 Image

KuCoin captured a record share of centralised exchange volume in 2025, with more than $1.25tn traded as its volumes grew faster than the wider crypto market.

What to know:

  • KuCoin recorded over $1.25 trillion in total trading volume in 2025, equivalent to an average of roughly $114 billion per month, marking its strongest year on record.
  • This performance translated into an all-time high share of centralised exchange volume, as KuCoin’s activity expanded faster than aggregate CEX volumes, which slowed during periods of lower market volatility.
  • Spot and derivatives volumes were evenly split, each exceeding $500 billion for the year, signalling broad-based usage rather than reliance on a single product line.
  • Altcoins accounted for the majority of trading activity, reinforcing KuCoin’s role as a primary liquidity venue beyond BTC and ETH at a time when majors saw more muted turnover.
  • Even as overall crypto volumes softened mid-year, KuCoin maintained elevated baseline activity, indicating structurally higher user engagement rather than short-lived volume spikes.

More For You

Coreweave stock gains 9% on fresh $2 billion Nvidia investment

(Michael M. Santiago/Getty Images)

Already an investor in CoreWeave, Nvidia last September had agreed to purchase $6.3 billion of computing services from the AI infrastructure provider.

What to know:

  • CoreWeave shares jumped about 9% in pre-market trading after Nvidia invested another $2 billion in the AI-focused cloud company.
  • The new funding is intended to help CoreWeave expand to more than 5 gigawatts of AI-dedicated data centers by the end of the decade.
  • The deal deepens a yearslong collaboration in which Nvidia and CoreWeave will align on hardware, software and data center strategy, and test CoreWeave’s Mission Control resource-scheduling platform for potential integration into Nvidia’s ecosystem.