• Press Releases
    • Submit a press release
    • Read All
  • Contact us
Advertise
Bitcoinist.com
No Result
View All Result
  • Bitcoin
    • News
    • Price
    • Businesses
    • Acceptance
    • Technology
    • Investment
    • Regulation
    • Reviews
    • All Bitcoin News
  • Altcoins
    • News
    • Price
    • Ethereum
    • Ripple
    • Litecoin
    • EOS
    • NAGA
    • All Altcoin News
  • Tech
    • Blockchain
    • Security
    • FinTech
    • Price
      • Bitcoin Price
      • Ethereum Price
      • Binance Coin Price
      • Litecoin Price
  • Industry
    • Industry News
    • Press Releases
  • How to
    • Buy gift cards/mobile Top Ups with Cryptos
    • What Is Bitcoin?
    • Best Bitcoin Wallet
    • Bitcoin vs Ethereum
    • Why Use Blockchain Technology?
    • Bitcoin Cash ABC vs. Bitcoin Cash SV
    • How to Buy Cryptocurrency
    • How to do Crypto Gambling
      • Crypto Casinos
        • Ethereum Casinos
        • Solana Casinos
        • LiteCoin Casinos
        • DogeCoin Casinos
        • Live Crypto Casinos
        • New Casinos
        • Instant Withdrawal Casinos
        • Cash App Casinos
        • No KYC Casinos
        • VPN Casinos
        • Offshore Casinos
          • Crypto Casinos IT
          • Crypto Casinos ES
            • All Guides
          • Crypto Casinos JP
          • Crypto Casinos SG
          • Crypto Casinos MY
          • Crypto Casinos KR
          • No GAMSTOP Casinos in UK
          • No Cruks Casinos NL
      • Crypto Betting
        • No ID sportsbooks
    • Play Crypto Games
      • Crypto Poker
      • Crypto Slots
      • Crypto Blackjack
      • Crypto Crash Gambling
        • Aviator Sites
      • Plinko
    • Bitcoin Mining
    • Best Bitcoin Brokers
    • Best Bitcoin Forex Brokers
    • How To Earn Bitcoin
    • What is Facebook Libra?
    • Ripple and XRP: The Complete Guide
  • Events
  • Play Games
Breaking News: FTX Trust Sues Genesis To Recover $1 Billion Allegedly Misappropriated By SBF
  • Bitcoin
    • News
    • Price
    • Businesses
    • Acceptance
    • Technology
    • Investment
    • Regulation
    • Reviews
    • All Bitcoin News
  • Altcoins
    • News
    • Price
    • Ethereum
    • Ripple
    • Litecoin
    • EOS
    • NAGA
    • All Altcoin News
  • Tech
    • Blockchain
    • Security
    • FinTech
    • Price
      • Bitcoin Price
      • Ethereum Price
      • Binance Coin Price
      • Litecoin Price
  • Industry
    • Industry News
    • Press Releases
  • How to
    • Buy gift cards/mobile Top Ups with Cryptos
    • What Is Bitcoin?
    • Best Bitcoin Wallet
    • Bitcoin vs Ethereum
    • Why Use Blockchain Technology?
    • Bitcoin Cash ABC vs. Bitcoin Cash SV
    • How to Buy Cryptocurrency
    • How to do Crypto Gambling
      • Crypto Casinos
        • Ethereum Casinos
        • Solana Casinos
        • LiteCoin Casinos
        • DogeCoin Casinos
        • Live Crypto Casinos
        • New Casinos
        • Instant Withdrawal Casinos
        • Cash App Casinos
        • No KYC Casinos
        • VPN Casinos
        • Offshore Casinos
          • Crypto Casinos IT
          • Crypto Casinos ES
            • All Guides
          • Crypto Casinos JP
          • Crypto Casinos SG
          • Crypto Casinos MY
          • Crypto Casinos KR
          • No GAMSTOP Casinos in UK
          • No Cruks Casinos NL
      • Crypto Betting
        • No ID sportsbooks
    • Play Crypto Games
      • Crypto Poker
      • Crypto Slots
      • Crypto Blackjack
      • Crypto Crash Gambling
        • Aviator Sites
      • Plinko
    • Bitcoin Mining
    • Best Bitcoin Brokers
    • Best Bitcoin Forex Brokers
    • How To Earn Bitcoin
    • What is Facebook Libra?
    • Ripple and XRP: The Complete Guide
  • Events
  • Play Games
Bitcoinist.com
No Result
View All Result
Breaking News: FTX Trust Sues Genesis To Recover $1 Billion Allegedly Misappropriated By SBF

Independent Researcher Finds Authy Vulnerability

Nuno Menezes
by Nuno Menezes
10 years ago
·
Posted in Bitcoin, Bitcoin Security, Companies, News, News teaser, Press releases, Team, Uncategorized
Trusted Editorial content, reviewed by leading industry experts and seasoned editors. Ad Disclosure

Yesterday, a security notice was launched in Authy’s blog.  An independent security researcher from Sakurity found a bug in the popular 2FA app Authy. Egor Homakov was responsible for finding a Format Injection vulnerability that affected the Authy service through a commonly used open source library.

Also Read: Bitcoin Exchange CAVIRTEX Shut’s Down After Database Hack Leaves User Data Exposed

In his research, Egor found out that the Authy-node wasn’t encoding the tokens from the users parameters. This was due to a High severity format Injection in Authy API and “the real problem was default Sinatra dependency “rack-protection”.

The researcher alerted the Authy security team who immediately performed an investigation and a forensic analysis to check if this vulnerability was being used or if someone was taking advantage of this bug.

Authy is supposed to make two-factor authentication simple and easy by giving an extra security layer to your accounts using one app, so even if your password is compromised, your account will still be safe. This app needs to be installed on a mobile device. Two-factor authentication is currently the best way to keep your accounts safe; Authy, is focused on making 2FA easier to use by allowing users to get a second-factor authentication code from multiple devices.Authy_article_1_Bitcoinist

This was the first time the company faced this type of issue. They promptly solved the case with an exceptional professional attitude and a remarkable solution.

The Authy security team went through an extensive review in their API logs to confirm if there was some indication that this vulnerability was used to compromise the Authy service and concluded that it wasn’t compromised at any time.

The team sent all of their active customers a signed email with a full description of the issue. Customers found to be using the affected third party libraries were notified and Authy’s security team worked directly with them to apply the patch.

The Authy security team declared available to work with outside security experts saying this would help them ensure transparency while ensuring they would get the needed security information from the community to rapid response to any new vulnerability.

The Authy Security team also notified the author of the affected library, and a final audit was done with the help of other third-party libraries and community helper libraries looking to find the same issue. Egor Homakov assisted the Authy team by providing time to correct the issue for all customers before publishing his findings. After this being done, patches were applied to the service and patched forks of community helper libraries were published via the Authy Github page.

In the end, The Authy team thanked Egor for responsibly disclosing his research on this vulnerability, and providing them detailed information to analyze the issue. This was crucial for the team to solve the issue and notify its customers.

Link to source: 1, 2

Image Source: 1, 2

What do you think about second-factor authentication? Let us know on the comment bellow!

Editorial Process for bitcoinist is centered on delivering thoroughly researched, accurate, and unbiased content. We uphold strict sourcing standards, and each page undergoes diligent review by our team of top technology experts and seasoned editors. This process ensures the integrity, relevance, and value of our content for our readers.
ShareTweetShareShare

Sign Up for Our Newsletter!

For updates and exclusive offers enter your email.

I consent to my submitted data being collected and stored.
Nuno Menezes

Nuno Menezes

Follow

Nuno Menezes is a Portuguese Bitcoin Entrepreneur and a crypto currency’s enthusiast supporting the Bitcoin Portuguese Community. He is an Anthropologist and a Writer and his current field of work is virtual currencies. Complementing his Social Sciences Master degree with a Professional background in telecommunications along some experience in Computer Science, he intends to bring knowledge and understanding about the impact of crypto currencies in society.

Full Profile

Related Posts

Philippines

Philippines Authorities Move To Put Key Public Records On Blockchain After Mass Protests

6 hours ago
Sam Bankman Fried

Sam Bankman-Fried’s X Post Triggers Questions, Is He Out Of Prison?

10 hours ago
crypto

Australia Cracks The Whip: Crypto Exchanges Face Tough New Rules

16 hours ago
Pattern Testa e Spalle di Ethereum Rivela Nuovo Target: In Arrivo un Crollo Sotto i 4.000 $

Pattern Testa e Spalle di Ethereum Rivela Nuovo Target: In Arrivo un Crollo Sotto i 4.000 $

16 hours ago
Liczba milionerów kryptowalutowych wzrosła

Liczba milionerów kryptowalutowych wzrosła o 40%. Rynek przekracza 3,3 biliona dolarów

1 day ago
Chỉ số Altcoin Season vượt Bitcoin lên 80 – Top altcoin tiềm năng để mua ngay

Chỉ số Altcoin Season vượt Bitcoin lên 80 – Top altcoin tiềm năng để mua ngay

2 days ago
Please login to join discussion

Premium Sponsors

Press Releases

  • 上線倒計時:僅剩25天可搶購 Snorter Bot 代幣

    2 hours ago
  • 加密錢包掀起發幣熱潮 Best Wallet...

    2 days ago
  • Bitcoin Hyper

    ChatGPT предсказва следващата 1000x...

    3 days ago
  • Snorter надхвърли $4 милиона след...

    4 days ago
  • Experience the Next Chapter of Pickleball with the $PKL Token Presale.

    Experience the Next Chapter of Pickleball with the $PKL...

    7 days ago

Bitcoin news portal providing breaking news, guides, price analysis about decentralized digital money & blockchain technology.

Bitcoin

  • News
  • Price
  • Businesses
  • Acceptance
  • Technology
  • Investment
  • Regulation
  • Reviews

Altcoins

  • News
  • Price
  • Ethereum
  • Ripple
  • Litecoin
  • EOS

Categories

  • Blockchain
  • Security
  • FinTech
  • Technology
  • Trending
  • Breaking News
  • Press Releases
  • How to

About Us

  • Advertise
  • Contact us
  • Editorial Policy
  • Privacy Policy
© 2025 Bitcoinist.com. All Rights Reserved.
  • Bitcoin
    • News
    • Price
    • Businesses
    • Acceptance
    • Technology
    • Investment
    • Regulation
    • Reviews
    • All Bitcoin News
  • Altcoins
    • News
    • Price
    • Ethereum
    • Ripple
    • Litecoin
    • EOS
    • NAGA
    • All Altcoin News
  • Tech
    • Blockchain
    • Security
    • FinTech
    • Price
      • Bitcoin Price
      • Ethereum Price
      • Binance Coin Price
      • Litecoin Price
  • Industry
    • Industry News
    • Press Releases
  • How to
    • Buy gift cards/mobile Top Ups with Cryptos
    • What Is Bitcoin?
    • Best Bitcoin Wallet
    • Bitcoin vs Ethereum
    • Why Use Blockchain Technology?
    • Bitcoin Cash ABC vs. Bitcoin Cash SV
    • How to Buy Cryptocurrency
    • How to do Crypto Gambling
      • Crypto Casinos
      • Crypto Betting
    • Play Crypto Games
      • Crypto Poker
      • Crypto Slots
      • Crypto Blackjack
      • Crypto Crash Gambling
      • Plinko
    • Bitcoin Mining
    • Best Bitcoin Brokers
    • Best Bitcoin Forex Brokers
    • How To Earn Bitcoin
    • What is Facebook Libra?
    • Ripple and XRP: The Complete Guide
  • Events
  • Play Games
Advertise

© 2025 Bitcoinist. All Rights Reserved.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy Center or Cookie Policy.