PoCs Check

Guide
中文

MetaMask SDK Origin Forgery Testing Guide

Summary Description

The MetaMask SDK Origin Forgery is used to test the wallet connecting to a counterfeit SDK Connect, essentially displaying a fake Origin source.

Vulnerability Identification

Click the "Connect" button on the page to connect the wallet. If the displayed origin is a fake "metamask.io" without any alerts, it indicates a problem.