
Contractor linked to North Korea worked on MetaMask code
A contractor, later linked to North Korea, worked on MetaMask code for Consensys from March to April before access was terminated. Consensys's investigation found no asset or data misappropriation, malicious code, or impact on user safety. The incident highlights the need for rigorous third-party contractor security, including identity verification, least-privilege access, and continuous monitoring.



