We’ve improved the security of Jaxx in several ways. Certain Electron behaviours regarding drag-and-drop and “nodeIntegration” are now disabled, and system browsers will be relied upon in more cases (as opposed to the Electron browser). A special thank you to the Ethereum Blue team for their responsible disclosure of an Electron-related issue. We encourage disclosure to our Chief Security Officer, Dr. Shu Wang, at: [email protected].
Congrats on the Jaxx project work.
It's great to see your code work and code knowledge has been vouched for, acknowledged and appreciated.
We was skeptical this week for lack of updates but after reading this it is great to see you guys are working hard at it.
Great work and keep it up!
All the best, team.