Main Ethereum software program agency Consensys has firmly denied rumors that consumer knowledge or funds had been compromised after a North Korea-linked IT employee briefly gained entry to the core codebase of its common Web3 pockets, MetaMask.
The safety incident, which occurred earlier this yr, concerned a person working underneath the alias “Tyler Knapp” (GitHub username: “imyugioh”).Â
The person was not a direct worker of Consensys, however was as an alternative engaged as a guide by way of an unnamed third-party supplier.
Between March 9 and early April 2026, the contractor contributed on to MetaMask’s core codebase, particularly engaged on the pockets’s fiat on-ramp and off-ramp options.
Upon detecting the menace, Consensys took quick and aggressive motion. The agency froze all product releases, swiftly terminated the contractor’s entry, and launched a complete inside safety audit.Â
The corporate additionally confirmed that it has notified legislation enforcement companies concerning the infiltration.
Correcting misinformation
In a public assertion launched on X (previously Twitter), Consensys sought to right latest misinformation circulating on-line in regards to the severity of the breach.
“Earlier this yr, we recognized and contained a menace from a person engaged as a guide by way of a third-party supplier,” the corporate acknowledged. “After the menace was shortly recognized, we instantly terminated all entry, launched a complete investigation, and notified legislation enforcement.”
Consensys emphasised the outcomes of its inside audit, confirming that the menace was neutralized earlier than any harm might happen.
“Our investigation confirmed no malicious code was deployed, no buyer property or knowledge had been compromised, and there was no affect to consumer security, funds, or safety,” the agency concluded.












