The post ZachXBT Flags Suspicious Address Holding Stolen Crypto appeared on BitcoinEthereumNews.com. ZachXBT flags a suspicious address holding stolen crypto fromThe post ZachXBT Flags Suspicious Address Holding Stolen Crypto appeared on BitcoinEthereumNews.com. ZachXBT flags a suspicious address holding stolen crypto from

ZachXBT Flags Suspicious Address Holding Stolen Crypto

ZachXBT flags a suspicious address holding stolen crypto from nearly 20 blockchains in an ongoing attack.

Hundreds of crypto wallets on Ethereum Virtual Machine chains have been drained in small amounts. As of now, losses exceed $107,000. Each wallet reportedly lost less than $2,000. Meanwhile, blockchain investigators continue to monitor suspicious addresses while the attack’s cause remains unidentified. Users should strengthen wallet security immediately.

Small Crypto Wallet Drains Across EVM Chains

The exploit affected Ethereum, BNB, Avalanche, and Arbitrum wallets. Consequently, each victim lost under $2,000, but the total theft surpassed $107,000. ZachXBT, a blockchain investigator, flagged a suspicious address linked to these drains. Investigators are actively tracking this address as stolen assets spread across multiple chains.

According to DeBank, Ethereum accounts for about $54,655 of stolen funds, while BNB holds $25,545. In addition, Base, Polygon, Arbitrum, Optimism, and Avalanche show smaller amounts. As a result, attackers reduced the risk of automated detection. Analysts note the method indicates coordinated action rather than random attacks.

Connection to Trust Wallet Extension

Investigations indicate the drains may connect to the Trust Wallet’s Chrome extension compromise. In December, version 2.68 was breached, allowing attackers to collect wallet seed phrases. Subsequently, a trojanized update was pushed to the Chrome Web Store on December 24. Trust Wallet instructed one million users to upgrade to version 2.69.

Nansen and other monitoring firms confirmed the malicious version, Shai-Hulud, enabled fund transfers across multiple EVM wallets. Additionally, exposed developer secrets gave attackers direct access to Chrome Web Store API keys. This supply chain attack affected wallets beyond Trust Wallet users, demonstrating a broader risk.

Phishing Emails and Holiday Scams

Users also received phishing emails impersonating MetaMask during the holiday period. Some falsely claimed mandatory upgrades were required. Meanwhile, investigators have not confirmed a direct connection between these emails and wallet drains.

Data from Chainalysis shows individual wallet breaches contributed roughly 20% of crypto losses in 2025. Moreover, 158,000 wallet breaches affected 80,000 unique users, nearly tripling incidents recorded in 2022. As investigators continue tracking suspicious addresses, stolen funds are actively monitored across multiple chains.

Related Readings: Israel Targets Iran-Linked Crypto Wallets in Major Seizure

Ongoing Investigation and Security Advice

Users should immediately update wallet software and avoid clicking suspicious email links. Additionally, strong passwords and hardware wallets help secure digital assets. Checking transactions regularly can reveal unauthorized transfers. Meanwhile, exchanges and wallet providers monitor attacks to prevent further losses.

As a result, these ongoing wallet drains emphasize the risks in EVM-compatible wallets. Blockchain investigators continue monitoring unusual activity while users follow recommended security practices. Subsequently, updates on the exploit may reveal additional affected wallets or recovered funds.

Source: https://www.livebitcoinnews.com/zachxbt-identifies-suspicious-address-linked-to-hundreds-of-crypto-wallets-losing-funds-across-chains/

Market Opportunity
Virtuals Protocol Logo
Virtuals Protocol Price(VIRTUAL)
$0.733
$0.733$0.733
+7.58%
USD
Virtuals Protocol (VIRTUAL) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Best Sit and Go Poker Sites – Where to Play SNG Poker Tournaments in 2025

Best Sit and Go Poker Sites – Where to Play SNG Poker Tournaments in 2025

Like its name implies, Sit and Go tournaments, widely popular as SNG poker events, allow players to jump into the action immediately, appealing to players who prefer not to wait for scheduled games.  These events start as soon as the seats are filled rather than at a set time, ensuring a more spontaneous and fast-paced […]
Share
The Cryptonomist2025/09/18 05:45
XRP may peak in 2026. How can I reliably earn 2000 XRP per da

XRP may peak in 2026. How can I reliably earn 2000 XRP per da

Steven McClurg, CEO of Canary Capital, stated that while Bitcoin may face correction pressure in the coming cycle, XRP is expected to reach a cyclical peak in 2026
Share
AI Journal2026/01/02 19:33
Tokenized Assets Shift From Wrappers to Building Blocks in DeFi

Tokenized Assets Shift From Wrappers to Building Blocks in DeFi

The post Tokenized Assets Shift From Wrappers to Building Blocks in DeFi appeared on BitcoinEthereumNews.com. RWAs are rapidly moving on-chain, unlocking new opportunities for investors and DeFi protocols, according to a new report from Dune and RWAxyz. Tokenized real-world assets (RWAs) are moving beyond digital versions of traditional securities to become key building blocks of decentralized finance (DeFi), according to the 2025 RWA Report from Dune and RWAxyz. The report notes that Treasuries, bonds, credit, and equities are now being used in DeFi as collateral, trading instruments, and yield products. This marks tokenization’s “real breakthrough” – composability, or the ability to combine and reuse assets across different protocols. Projects are already showing how this works in practice. Asset manager Maple Finance’s syrupUSDC, for example, has grown to $2.5 billion, with more than 30% placed in DeFi apps like Spark ($570 million). Centrifuge’s new deJAAA token, a wrapper for Janus Henderson’s AAA CLO fund, is already trading on Aerodrome, Coinbase and other exchanges, with Stellar planned next. Meanwhile, Aave’s Horizon RWA Market now lets institutional users post tokenized Treasuries and CLOs as collateral. This trend underscores a bigger shift: RWAs are no longer just copies of traditional assets; instead, they are becoming core parts of on-chain finance, powering lending, liquidity, and yield, and helping to close the gap between traditional finance (TradFi) and DeFi. “RWAs have crossed the chasm from experimentation to execution,” Sid Powell, CEO of Maple Finance, says in the report. “Our growth to $3.5B AUM reflects a broader shift: traditional financial services are adopting crypto assets while institutions seek exposure to on-chain markets.” Investor demand for higher returns and more diversified options is mainly driving this growth. Tokenized Treasuries proved there is strong demand, with $7.3 billion issued by September 2025 – up 85% year-to-date. The growth was led by BlackRock, WisdomTree, Ondo, and Centrifuge’s JTRSY (Janus Henderson Anemoy Treasury Fund). Spark’s $1…
Share
BitcoinEthereumNews2025/09/18 06:10