|

Recent Firefox’s Zero-Day Flaw Was Used in Attacks Against Coinbase’s Employees

The recent Firefox’s zero-day security flaw was used in attacks against major crypto exchange and wallet service Coinbase, according to a tweet from Coinbase security researcher Philip Martin posted on June 20.

As Martin found, the reported critical zero-day vulnerability in Mozilla’s Firefox web browser, which was announced on June 18, has actually emerged along with another zero-day flaw that targeted Coinbase employees, meaning that there were two separate Firefox zero-day attacks.

The Coinbase security expert tweeted:

“On Monday, Coinbase detected & blocked an attempt by an attacker to leverage the reported 0-day, along with a separate 0-day firefox sandbox escape, to target Coinbase employees.”

Martin continued that Coinbase was not the only crypto-related company targeted in the campaign, adding that the firm is working to report other businesses that they believe were also targeted. He emphasized that the company’s security team has seen “no evidence” that the exploit targeted Coinbase customers.

Coinbase Security first reported on the security flaw along with Samuel Groß, security researcher with Google Project Zero’s security team, who argued that he first reported the bug to Mozilla on April 15, 2019.

Following these reports, Mozilla released security updates for its browser, admitting that the company is “aware of targeted attacks in the wild abusing this flaw.”

Specifically, Mozilla released Firefox 67.0.3 and Firefox ESR 60.7.1 to fix the reported zero-day flaw tracked as CVE-2019-11707, describing it as a “confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array.pop.”

Recently, crypto enthusiast John McAfee's crypto trading platform suffered a denial of service (DOS) attack by hackers immediately after its launch.

Author

Cointelegraph Team

Cointelegraph Team

Cointelegraph

We are privileged enough to work with the best and brightest in Bitcoin.

More from Cointelegraph Team
Share:

Editor's Picks

Sui extends sideways action ahead of Grayscale’s GSUI ETF launch

Sui is extending its downtrend for the second consecutive day, trading at 0.95 at the time of writing on Wednesday. The Layer-1 token is down over 16% in February and approximately 34% from the start of the year, aligning with the overall bearish sentiment across the crypto market.

XRP pares losses, targets breakout above $1.50 as ETF demand diminishes

XRP pares losses as bulls target a short-term breakout above $1.50. The MACD upholds a buy signal while the MFI indicator rises above the midline, suggesting a potential bullish shift.

Ghost holding in BlackRock’s IBIT sparks Chinese Bitcoin investment whispers

A new entity identified in BlackRock's quarterly filing for its Bitcoin (BTC) Exchange-Traded Fund (ETF) IBIT has sparked rumors of Chinese investment under the name of Zhang Hui, despite the nationwide ban on the Crypto King. 

Crypto Today: Bitcoin, Ethereum, XRP rebound slightly as technicals signal bullish shift

The cryptocurrency market is showing signs of a gradual recovery, with Bitcoin (BTC), Ethereum (ETH), and Ripple (XRP) all edging higher at the time of writing on Wednesday after the price declines seen a day earlier. 

Bitcoin Price Annual Forecast: BTC holds long-term bullish structure heading into 2026

Bitcoin (BTC) is wrapping up 2025 as one of its most eventful years, defined by unprecedented institutional participation, major regulatory developments, and extreme price volatility.

Bitcoin: BTC bears aren’t done yet

Bitcoin (BTC) price slips below $67,000 at the time of writing on Friday, remaining under pressure and extending losses of nearly 5% so far this week.