Damus
The Daniel đź–– profile picture
The Daniel đź––
@daniel
Update on the @Alby attack:

⚠️ IT’S WORSE THAN I THOUGHT! ⚠️

What I believe is happening is someone is using the public Lightning addresses from Nostr profiles to doxx everyone’s registered email address on Alby.

By simply entering a valid Alby address, the login page LEAKS the corresponding email address.

This means that the purpose of the attack is not so much to breach your Alby account, it’s to collect emails of Alby users for future phishing attacks.
3
PriorBall · 17w
Exactly ! Got a password change request but changed my LN provider a while ago. So old infos are going round …..
Nichro · 17w
Received a bunch of these emails to reset alby recently, including for old abandoned/test accounts. I was getting suspicious.