Skip to content

Security flaw on Samsung. #276

@E-Louise

Description

@E-Louise

When the wallet is locked, it asks for biometric authentication or, if that’s not possible, a PIN.

However, if you choose the PIN option and click "Cancel," the Blockstream wallet unlocks anyway.

This flaw does not affect the wallets within the app; it is not possible to use this bug to access a wallet, even if it only requires biometric authentication. This issue is specific to when the Enhanced Privacy option is activated, and you exit and then try to unlock the app to enter.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions