Consensys, the Ethereum software development company behind the popular MetaMask wallet, has disclosed that it unknowingly hired a developer linked to North Korea who gained access to the wallets codebase for approximately one month before being discovered and removed in April. The incident highlights the growing threat of North Korean IT worker infiltration in the technology sector.
The developer, who was hired through a remote contracting arrangement, was granted access to MetaMasks source code repository after passing the companys standard hiring and onboarding processes. The individual worked on the codebase for approximately one month before Consensys security teams identified anomalous behavior patterns that triggered a deeper investigation.
Upon discovering the developers potential ties to North Korea, Consensys immediately revoked all system access and conducted a thorough security review of the code changes made during the contractors period of employment. The company stated that it found no evidence of malicious code being introduced or sensitive user data being compromised.
North Korean IT worker infiltration has become an increasing concern for technology companies worldwide. The countrys operatives have been known to use虚假 identities and credentials to secure remote positions at Western companies, often with the goal of stealing intellectual property or earning revenue that supports North Korean weapons programs.
Consensys has implemented additional screening measures for remote contractors and enhanced its monitoring of code repository access following the incident. The company is also cooperating with relevant authorities on the matter. MetaMask, which is used by over 30 million monthly active users, continues to operate normally with no reported security issues related to the incident.
