The post Users Report Losses Following Trust Wallet Extension Update appeared on BitcoinEthereumNews.com. Trust Wallet extension v2.68 linked to suspected supplyThe post Users Report Losses Following Trust Wallet Extension Update appeared on BitcoinEthereumNews.com. Trust Wallet extension v2.68 linked to suspected supply

Users Report Losses Following Trust Wallet Extension Update

2025/12/27 01:58
3분 읽기
이 콘텐츠에 대한 의견이나 우려 사항이 있으시면 crypto.news@mexc.com으로 연락주시기 바랍니다
  • Trust Wallet extension v2.68 linked to suspected supply-chain compromise after Dec. 24 update.
  • Users reported wallet drains after seed imports; losses estimated above $6M.
  • Trust Wallet confirmed issue, urged upgrade to v2.69; mobile apps not affected.

Security concerns surfaced around the Trust Wallet browser extension after reports linked a recent update to possible unauthorized access and wallet drains, prompting warnings from blockchain investigators and security-focused developers. The incident has focused attention on version 2.68 of the extension, which Trust Wallet later confirmed was affected.

The issue arose following alerts from blockchain investigator ZachXBT, who stated that he had received messages from hundreds of users claiming their wallet balances had dropped after importing seed phrases into the browser extension. 

According to technical reviews shared by developers, a browser extension update released on 24 December may have introduced malicious code through a suspected supply-chain compromise.

Researchers examining the update allege that a newly added JavaScript file was embedded in the extension and appeared to be disguised as analytics functionality. The file reportedly activated only when a user imported a seed phrase, after which it transmitted sensitive wallet-related data to an external domain designed to resemble official Trust Wallet infrastructure.

Indicators of a Potential Supply-Chain Compromise

The external domain referenced in the reports was reportedly registered only days before the incident and later went offline. Analysts noted that the domain’s recent creation, combined with the timing of the update, raised concerns that the incident may be the result of a coordinated supply-chain attack rather than isolated phishing attempts or user error.

On-chain analysis cited by community researchers showed that compromised funds were routed through multiple addresses. This pattern, they said, is commonly associated with automated exploitation methods. Public estimates shared online suggested losses may exceed $6 million, although these figures have not been independently verified.

Trust Wallet Confirms Scope and Issues Fix

Later on 25 December, Trust Wallet confirmed that the security incident was limited to browser extension version 2.68. In a statement, the company advised users to disable that version immediately and upgrade to version 2.69, which it said contains a fix. Trust Wallet added that no other browser extension versions and none of its mobile applications were affected.

The company also stated that its support team had begun contacting impacted users and was investigating the incident. No details were provided regarding the technical root cause or potential compensation.

Related: Trust Wallet Restores Balances After Data Sync Glitch; Funds Safe

Disclaimer: The information presented in this article is for informational and educational purposes only. The article does not constitute financial advice or advice of any kind. Coin Edition is not responsible for any losses incurred as a result of the utilization of content, products, or services mentioned. Readers are advised to exercise caution before taking any action related to the company.

Source: https://coinedition.com/trust-wallet-confirms-extension-v2-68-security-issue-after-wallet-drains/

시장 기회
Intuition 로고
Intuition 가격(TRUST)
$0.07216
$0.07216$0.07216
+1.74%
USD
Intuition (TRUST) 실시간 가격 차트
면책 조항: 본 사이트에 재게시된 글들은 공개 플랫폼에서 가져온 것으로 정보 제공 목적으로만 제공됩니다. 이는 반드시 MEXC의 견해를 반영하는 것은 아닙니다. 모든 권리는 원저자에게 있습니다. 제3자의 권리를 침해하는 콘텐츠가 있다고 판단될 경우, crypto.news@mexc.com으로 연락하여 삭제 요청을 해주시기 바랍니다. MEXC는 콘텐츠의 정확성, 완전성 또는 시의적절성에 대해 어떠한 보증도 하지 않으며, 제공된 정보에 기반하여 취해진 어떠한 조치에 대해서도 책임을 지지 않습니다. 본 콘텐츠는 금융, 법률 또는 기타 전문적인 조언을 구성하지 않으며, MEXC의 추천이나 보증으로 간주되어서는 안 됩니다.

Roll the Dice & Win Up to 1 BTC

Roll the Dice & Win Up to 1 BTCRoll the Dice & Win Up to 1 BTC

Invite friends & share 500,000 USDT!