A critical security incident has impacted numerous Trust Wallet users following a Chrome extension update to version 2.68.0. The breach has triggered widespread concerns across the cryptocurrency community, with attackers systematically extracting digital assets from compromised wallets.
Rapid Asset Extraction Across BTC, ETH, and BNB
Documentation from X (formerly Twitter) revealed that wallet balances experienced immediate depletion immediately after seed phrases were imported into the updated extension. On-chain researcher ZachXBT documented cases where multiple wallets lost Bitcoin, Ethereum, and BNB in coordinated fashion, with fund transfers occurring within hours of the extension rollout.
The pattern exhibited by the hacker activity showed no gradual withdrawal strategy. Instead, assets moved swiftly across multiple receiving addresses in a consistent routing pattern. Transaction structures remained remarkably similar across reported incidents, suggesting systematic exploitation rather than isolated cases.
$4.3 Million in Assets Siphoned Through Coordinated Attack
Blockchain analysis indicates approximately $4.3 million in cryptocurrency has been extracted from affected wallets, based on publicly available on-chain data. ZachXBT identified several suspicious addresses associated with the theft operations:
0x3b09A3c9aDD7D0262e6E9724D7e823Cd767a0c74
0x463452C356322D463B84891eBDa33DAED274cB40
0xa42297ff42a3b65091967945131cd1db962afae4
These addresses received continuous inflows from compromised wallets, indicating coordinated fund consolidation by the hacker network.
Ongoing Investigation with Limited Official Guidance
As of press time, Trust Wallet has not issued an official statement regarding the security incident. The company has neither confirmed whether the Chrome extension update directly facilitated the breach nor provided mitigation measures for affected users. The exact cause remains unconfirmed, though timeline analysis points to the December 24 extension update as the critical event coinciding with fund extraction.
No corrective actions or recovery procedures have been announced, leaving users without clear recovery pathways. The incident underscores the ongoing vulnerability of browser-based wallet management systems and the risks associated with rapid extension updates.
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
Millions in Crypto Vanish: Trust Wallet Users Targeted in Security Breach with Hacker Involvement
A critical security incident has impacted numerous Trust Wallet users following a Chrome extension update to version 2.68.0. The breach has triggered widespread concerns across the cryptocurrency community, with attackers systematically extracting digital assets from compromised wallets.
Rapid Asset Extraction Across BTC, ETH, and BNB
Documentation from X (formerly Twitter) revealed that wallet balances experienced immediate depletion immediately after seed phrases were imported into the updated extension. On-chain researcher ZachXBT documented cases where multiple wallets lost Bitcoin, Ethereum, and BNB in coordinated fashion, with fund transfers occurring within hours of the extension rollout.
The pattern exhibited by the hacker activity showed no gradual withdrawal strategy. Instead, assets moved swiftly across multiple receiving addresses in a consistent routing pattern. Transaction structures remained remarkably similar across reported incidents, suggesting systematic exploitation rather than isolated cases.
$4.3 Million in Assets Siphoned Through Coordinated Attack
Blockchain analysis indicates approximately $4.3 million in cryptocurrency has been extracted from affected wallets, based on publicly available on-chain data. ZachXBT identified several suspicious addresses associated with the theft operations:
These addresses received continuous inflows from compromised wallets, indicating coordinated fund consolidation by the hacker network.
Ongoing Investigation with Limited Official Guidance
As of press time, Trust Wallet has not issued an official statement regarding the security incident. The company has neither confirmed whether the Chrome extension update directly facilitated the breach nor provided mitigation measures for affected users. The exact cause remains unconfirmed, though timeline analysis points to the December 24 extension update as the critical event coinciding with fund extraction.
No corrective actions or recovery procedures have been announced, leaving users without clear recovery pathways. The incident underscores the ongoing vulnerability of browser-based wallet management systems and the risks associated with rapid extension updates.