{"id":140620,"date":"2023-09-01T23:14:50","date_gmt":"2023-09-01T17:44:50","guid":{"rendered":"https:\/\/dripp.zone\/news\/?p=140620"},"modified":"2023-09-01T23:14:50","modified_gmt":"2023-09-01T17:44:50","slug":"phantom-materializes-sign-in-with-solana-wallet-authentication-crypto-news","status":"publish","type":"post","link":"https:\/\/dripp.zone\/news\/phantom-materializes-sign-in-with-solana-wallet-authentication-crypto-news\/","title":{"rendered":"Phantom materializes \u2018sign in with Solana\u2019 wallet authentication &#8211; Crypto News"},"content":{"rendered":"<p><\/p>\n<div>\n<p>Wallet service provider Phantom said Monday it has introduced a new feature allowing applications to authenticate users using a Solana address.<\/p>\n<p>The introduction of Sign In With Solana (SIWS) is intended to improve the user experience and security by streamlining the traditional \u201cconnect\u201d and \u201csignMessage\u201d flow into a single-click \u201csignIn\u201d method.<\/p>\n<p>Traditionally, the connect function enables a user\u2019s digital wallet to interact with an application, while \u201csignMessage\u201d allows the user to cryptographically verify their identity.<\/p>\n<p>The message lacks human-readable information, which can sometimes lead to new and seasoned users agreeing to malicious prompts.<\/p>\n<p>Even in cases when connecting a wallet to trusted applications, unexpected pop-up signatures can often confuse or frighten new users, Phantom said in a <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/phantom.app\/learn\/developers\/sign-in-with-solana\">statement<\/a>. This, in turn, can often be a major hurdle for new entrants, it said.<\/p>\n<p>The one-click sign-in method, available as of Phantom version 23.11, allows Solana developers to prompt users to connect and sign a standardized authentication message and prove ownership of their addresses.<\/p>\n<p>Designed as a drop-in replacement for the previous two-step authentication flow, the sign-in method also provides developers with a robust API for creating standardized authentication messages, Phantom said.<\/p>\n<p>The responsibility for message construction shifts from applications to the wallet, allowing Phantom to scrutinize elements such as the site\u2019s domain or the time of message issuance to ensure legitimacy.<\/p>\n<p>It is unclear whether there could be fresh privacy concerns associated with the shift of responsibility in message construction. Blockworks has reached out to Phantom for comment.<\/p>\n<p>In some instances, that construction may help slow or hinder the progress of malicious actors. That could help prevent instances like <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/blockworks.co\/news\/solana-based-wallet-users-drained-in-suspected-exploit\">last year\u2019s breach<\/a>, when a coding error allowed hackers to easily find and use client passwords, leading to a breach in both Slope and Phantom wallets.<\/p>\n<p>Private keys associated with the impacted wallets were either leaked or compromised, and these keys were then utilized to authorize fraudulent transactions, according to <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/discover.luno.com\/what-exactly-happened-in-the-slope-finance-hack\/\">reports<\/a> at the time.<\/p>\n<p>The sign-in feature released on Monday makes authentication more consistent and allows Phantom to check for suspicious activity, its developers said.<\/p>\n<p>Ethereum dapps similarly can facilitate a \u201csign in with Ethereum\u201d feature using <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/blockworks.co\/tag\/ethereum-name-service\">Ethereum Name Service<\/a> (ENS), as part of a push for <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/blockworks.co\/news\/what-is-decentralized-identity\">decentralized identity services<\/a>.<\/p>\n<hr class=\"wp-block-separator has-alpha-channel-opacity\" \/>\n<p><strong>Get the day\u2019s top crypto news and insights delivered to your email every evening.\u00a0<a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/blockworks.co\/newsletter?source=end\">Subscribe to Blockworks\u2019 free newsletter<\/a>\u00a0now.<\/strong><\/p>\n<p><strong>Want alpha sent directly to your inbox? Get degen trade ideas, governance updates, token performance, can\u2019t-miss tweets and more from\u00a0<a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/blockworks.co\/newsletter\/research\">Blockworks Research\u2019s Daily Debrief<\/a>.<\/strong><\/p>\n<p><strong>Can\u2019t wait? Get our news the fastest way possible.\u00a0<a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/t.me\/blockworks_news\">Join us on Telegram<\/a>\u00a0and follow us on\u00a0<a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/news.google.com\/publications\/CAAqBwgKMPyTxgswn6_dAw\">Google News<\/a>.<\/strong><\/p>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>Wallet service provider Phantom said Monday it has introduced a new feature allowing applications to authenticate users using a Solana address. The introduction of Sign In With Solana (SIWS) is intended to improve the user experience and security by streamlining the traditional \u201cconnect\u201d and \u201csignMessage\u201d flow into a single-click \u201csignIn\u201d method. Traditionally, the connect function [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":140621,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[5],"tags":[230,225,221,227,226,228,229,60,223,224,222],"class_list":["post-140620","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cryptocurrency","tag-brave","tag-coinbase","tag-crypto","tag-decentralised","tag-decentralized","tag-decentralized-exchange","tag-erc-20","tag-featured","tag-meme-coin","tag-robinhood","tag-solana"],"_links":{"self":[{"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/posts\/140620","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/comments?post=140620"}],"version-history":[{"count":2,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/posts\/140620\/revisions"}],"predecessor-version":[{"id":147271,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/posts\/140620\/revisions\/147271"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/media\/140621"}],"wp:attachment":[{"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/media?parent=140620"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/categories?post=140620"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/tags?post=140620"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}