Web Analytics
Coinpaper
2025-12-25 05:00:00

Polymarket Links User Account Breaches to Third-Party Login Flaw

The company said the issue affected a limited number of users, and has since been fully remediated. Polymarket stated it is contacting the impacted users directly and explained that the flaw did not originate from its core infrastructure. Polymarket Confirms Security Breach Polymarket confirmed that a recent wave of user account breaches was caused by a vulnerability linked to a third-party authentication provider, following multiple reports of suspicious activity and drained balances across different social media platforms. Polymarket statement on Discord In a statement that was shared on its Discord channel on Tuesday, Polymarket said it identified and resolved a security issue that affected a “small number of users.” According to the platform, the flaw originated from a third-party login tool rather than Polymarket’s core infrastructure. The company said the issue has been fully remediated, there is no ongoing risk, and impacted users will be contacted directly. The disclosure came after users on Reddit and X reported unauthorized access to their accounts, with some claiming their balances were completely drained. Several users described seeing multiple failed or suspicious login attempts before their positions were closed and funds removed. One Reddit user said they noticed three login attempts overnight, despite their device and Google account showing no signs of compromise, only to later discover their Polymarket balance dropped to just $0.01. (Source: Reddit ) Speculation around the source of the vulnerability quickly spread online, with some users suggesting it may have been tied to Magic Labs, a wallet and authentication service integrated with Polymarket. One X user claimed their Polymarket wallet, which was created through Magic Labs, was drained despite never signing up via email or receiving phishing links. Polymarket did not publicly confirm which authentication provider was responsible. This is not the first time Polymarket users faced account security concerns. In late 2024, some users reported losing funds after logging into the platform through Google account authentication, which raised earlier questions about the risks associated with third-party login integrations. While Polymarket explained that the vulnerability has been fixed and that user funds are now safe, the incident renewed scrutiny of authentication methods used by crypto and prediction market platforms.

Crypto 뉴스 레터 받기
면책 조항 읽기 : 본 웹 사이트, 하이퍼 링크 사이트, 관련 응용 프로그램, 포럼, 블로그, 소셜 미디어 계정 및 기타 플랫폼 (이하 "사이트")에 제공된 모든 콘텐츠는 제 3 자 출처에서 구입 한 일반적인 정보 용입니다. 우리는 정확성과 업데이트 성을 포함하여 우리의 콘텐츠와 관련하여 어떠한 종류의 보증도하지 않습니다. 우리가 제공하는 컨텐츠의 어떤 부분도 금융 조언, 법률 자문 또는 기타 용도에 대한 귀하의 특정 신뢰를위한 다른 형태의 조언을 구성하지 않습니다. 당사 콘텐츠의 사용 또는 의존은 전적으로 귀하의 책임과 재량에 달려 있습니다. 당신은 그들에게 의존하기 전에 우리 자신의 연구를 수행하고, 검토하고, 분석하고, 검증해야합니다. 거래는 큰 손실로 이어질 수있는 매우 위험한 활동이므로 결정을 내리기 전에 재무 고문에게 문의하십시오. 본 사이트의 어떠한 콘텐츠도 모집 또는 제공을 목적으로하지 않습니다.