The #Haveno team has recently found a vulnerability in @bisq_network that would have allowed malicious actors to harvest user's payment information like Bank accounts, names and potentially home addresses at no cost.
Statement regarding privacy vulnerability patched in Bisq v1.7.0 ๐Ÿ‘‡๐Ÿ‘‡
Show this thread

2:36 PM ยท Jul 7, 2021

1
26
8
151
The problem was found by our own Woodser (Core Team) while working on Haveno's protocol (part of which we inherit from Bisq). We immediately contacted #Bisq and gave them all the info and support to fix the vulnerability.
1
2
0
38
We are relieved that they came to realize the severity of the situation and rolled out a dedicated security patch.
1
0
0
23
We cannot be sure if the vulnerability was exploited or not, but it's improbable that it was exploited in large scale, as Bisq would have probably noticed an increase of support tickets opened because of failing trades.
1
0
0
29
Forks, not knives.
1
6
1
64