What happened

CryptoSlate reports that Consensys halted MetaMask releases after finding that a contractor linked to North Korea had access to MetaMask code for roughly a month. Consensys says it found no compromised assets, malicious deployment, or user impact.

Why it matters

The report puts contractor access controls under scrutiny at a widely used crypto wallet. It also fits a same-day security theme in the supplied record: infrastructure and supply-chain security remained a weak link, alongside an Allbridge bridge exploit and crypto-stealing malware embedded in Steam games.

What to watch

The next useful receipt would be further evidence on the access review and any release or security findings from Consensys. Until then, the supplied record supports the reported pause and Consensys’s stated findings, but not a broader conclusion about impact.

What to watch

Watch for additional findings from Consensys on its access review, releases, or security assessment.

Sources and limits

Upstream references

Digest dated 2026-07-20 · upstream model claude-sonnet-4-6. Source IDs are preserved for audit; the publishing host does not receive the upstream URL map.

  1. 1
    64bea93616b80d68fd881800e9f67f4b7597779fReference from the upstream research server

This Research brief was generated by Terra from a dated upstream research digest. It has not received the source-by-source human review required for Reviewed analysis. Material limit: This is a single-source report with medium confidence; the supplied record does not provide independent confirmation or detail beyond the stated findings.