Stack Wallet

To reinforce its security and protect user assets, CypherStack, the creators of Stack Wallet, engaged us to perform a targeted security audit of their custom theme functionality.

Stack Wallet is a non-custodial, multi-currency cryptocurrency wallet that prioritizes financial privacy and user control. Our engagement involved a detailed security assessment to identify and address vulnerabilities within the custom theme functionality.

During our examination, we identified a critical vulnerability related to how the application handles external theme files, which could potentially be abused to compromise the security of a user’s local file system. Additionally, we discovered an issue that could lead to a denial-of-service condition by allowing an attacker to exploit resource consumption during file processing. The audit also confirmed that several other potential attack vectors, such as HTML or SVG injection, were not exploitable due to built-in protections. The findings from this security audit were crucial for ensuring the integrity of the Stack Wallet application and maintaining a robust security posture for its user base.

Business enquiries

info@digilol.net

Join Us

Open positions

Company Details

Digilol OÜ

Registry code: 16602787

Narva mnt 5, 10117 Tallinn, Estonia

Digilol America LLC

75 E 3rd St, Ste 7, Sheridan, WY 82801, United States

Socials

LinkedIn

GitHub

X (formerly Twitter)

Instagram

Northern ingenuity. Digital solutions.