helium / wallet-app

Apache License 2.0
55 stars 35 forks source link

Improvement proposal to mitigate address poisoning attacks #738

Closed yannickmodahgouez closed 1 month ago

yannickmodahgouez commented 2 months ago

Describe the bug Not a bug but I was victim of an address poisoning / dusting attack and I think this could have been mitigated by a simple UI fix

Here is what happened :

To Reproduce

Do exactly what I did while talking on the phone so you only have 20% of your brain available for transferring assets.

Expected behavior

My suggestion would be to change the green check icon on the left of each Transfer to an "incoming" or "outgoing" icon. Users would be more suspicious of an incoming transaction and wouldnt copy and address from it. This is a very low hanging fruit that could save tons of tokens of SOLs.

Donations welcome to make back my SOLs 🤣 : 25Tdv6UamFdVA7shbuGdCTCzAev1nsPVCKK4coYDVLTB

Smartphone (please complete the following information): Happened on latest version of iOS wallet

yannickmodahgouez commented 2 months ago

Can't edit the label but definitely not a bug

yannickmodahgouez commented 2 months ago

Thanks guys, at least I know I did not lose my SOLs for nothing 👏🏾 @ChewingGlass @jthiller