Researchers discovered a prompt injection vulnerability in OKX Wallet's OnchainOS agent exploitable via malicious token metadata.
Security & Exploits ·
Researchers identified a prompt injection vulnerability in OKX Wallet's OnchainOS agent that could be exploited through malicious token metadata, potentially allowing attackers to drain the agent without proper input validation. The vulnerability stems from unsanitized token metadata that the agent processes without adequate safeguards against injection attacks.