trusat-frontend icon indicating copy to clipboard operation
trusat-frontend copied to clipboard

Does the page prevent iframe renders? (Cross-Frame Scripting)

Open Kmoneal opened this issue 6 years ago • 1 comments

An easy phishing attack is to render the webpage under an attacker's page to steal user information. This is not the biggest concern unless users put ethereum on addresses that we provide them (exposing their private key when logging in).

Kmoneal avatar Oct 19 '19 00:10 Kmoneal

Would this be a concern for signing messages using MetaMask?

Kmoneal avatar Oct 19 '19 16:10 Kmoneal