Highlights: The Trust Wallet hack shows how a single update can put user funds at risk. Browser extensions remain a major weak point for crypto wal Highlights: The Trust Wallet hack shows how a single update can put user funds at risk. Browser extensions remain a major weak point for crypto wal

Trust Wallet Hack Drains Over $6 Million After Browser Extension Update

Highlights:

  • The Trust Wallet hack shows how a single update can put user funds at risk.
  • Browser extensions remain a major weak point for crypto wallet security.
  • The recent attacks highlight the need for faster alerts and safer update checks.

Multi-chain crypto wallet provider Trust Wallet confirmed a security breach tied to its browser extension on Thursday. Several users reported unauthorized fund outflows shortly after installing a recent extension update.

Blockchain investigator ZachXBT flagged the issue after receiving multiple reports within hours. Early estimates show that the losses exceed $6 million across several blockchains. The affected assets included Bitcoin, Solana tokens, and EVM-based cryptocurrencies.

Users reported that wallet drains occurred within minutes of normal extension activity. Many reports surfaced during the Christmas holiday period, when users returned to check balances. On-chain data indicated that attackers moved funds to several receiving addresses. In addition to this, blockchain trackers have noticed rapid exchanges among wallets to minimize traceability.

Further reports showed that victims shared a common factor before the theft. Each affected user had installed the new Trust Wallet browser extension update. Some users said they noticed no unusual prompts or warnings before the drains. In several cases, transactions occurred within a four-minute window. This speed left users little time to react or move funds.

Trust Wallet hack Linked to Extension Version 2.68

Trust Wallet later confirmed that the issue affected Browser Extension version 2.68 only. The company urged users to disable that version and upgrade immediately to version 2.69. ZachXBT said the number of affected users rose into the hundreds. He added that attackers siphoned funds across Bitcoin, Solana, and EVM-compatible networks. However, investigators said the precise technical root cause remained under review.

Several users reported that importing a seed phrase triggered immediate wallet draining. Security researchers clarified that browser extensions run with high system permissions. These permissions include access to storage, cookies, and browsing. Attackers are able to steal sensitive credentials without initiating endpoint defenses when they are misconfigured. Consequently, attacks that rely on extensions cannot be detected early.

On-chain analysis showed that the attackers split the stolen funds across several addresses. Arkham-linked data suggested that exploiters used multiple wallets to receive assets. Shortly after, attackers moved portions of the funds across chains. Some assets later appeared to move toward centralized exchanges. Investigators said these steps often complicate tracing and recovery efforts.

In a separate industry incident, Balancer confirmed a major exploit earlier last month. Attackers drained more than $129 million from Balancer v2 liquidity pools. Blockchain security firms PeckShield and Spot On Chain flagged large vault outflows across several chains. The case revealed that there are persistent security threats in established DeFi platforms.

Company Response and Broader Security Context

Trust Wallet stated that mobile-only users and other extension versions were not affected. The company said customer support teams had contacted impacted users regarding next steps. Trust Wallet also advised users to avoid opening the extension until completing the update. Founder Changpeng Zhao said the company would cover verified losses. He added that user funds remained protected following the incident.

Meanwhile, other platforms have faced similar security issues in recent months. Arcadia Finance reported a breach on the Base blockchain. According to Cyvers, an attacker exploited Arcadia’s Rebalancer contract in under one minute. The attacker used swap data parameters to induce unauthorized asset transfers.

eToro Platform

Best Crypto Exchange

  • Over 90 top cryptos to trade
  • Regulated by top-tier entities
  • User-friendly trading app
  • 30+ million users
9.9
Visit eToro

eToro is a multi-asset investment platform. The value of your investments may go up or down. Your capital is at risk. Don’t invest unless you’re prepared to lose all the money you invest. This is a high-risk investment, and you should not expect to be protected if something goes wrong.

Market Opportunity
Intuition Logo
Intuition Price(TRUST)
$0.1095
$0.1095$0.1095
+0.55%
USD
Intuition (TRUST) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Hoskinson Says XRP and Cardano Projects Lead Tokenization Race

Hoskinson Says XRP and Cardano Projects Lead Tokenization Race

Cardano founder Charles Hoskinson says Web3-native platforms already operate at a scale traditional finance has yet to reach. Cardano founder Charles Hoskinson
Share
LiveBitcoinNews2025/12/27 07:59
Fed forecasts only one rate cut in 2026, a more conservative outlook than expected

Fed forecasts only one rate cut in 2026, a more conservative outlook than expected

The post Fed forecasts only one rate cut in 2026, a more conservative outlook than expected appeared on BitcoinEthereumNews.com. Federal Reserve Chairman Jerome Powell talks to reporters following the regular Federal Open Market Committee meetings at the Fed on July 30, 2025 in Washington, DC. Chip Somodevilla | Getty Images The Federal Reserve is projecting only one rate cut in 2026, fewer than expected, according to its median projection. The central bank’s so-called dot plot, which shows 19 individual members’ expectations anonymously, indicated a median estimate of 3.4% for the federal funds rate at the end of 2026. That compares to a median estimate of 3.6% for the end of this year following two expected cuts on top of Wednesday’s reduction. A single quarter-point reduction next year is significantly more conservative than current market pricing. Traders are currently pricing in at two to three more rate cuts next year, according to the CME Group’s FedWatch tool, updated shortly after the decision. The gauge uses prices on 30-day fed funds futures contracts to determine market-implied odds for rate moves. Here are the Fed’s latest targets from 19 FOMC members, both voters and nonvoters: Zoom In IconArrows pointing outwards The forecasts, however, showed a large difference of opinion with two voting members seeing as many as four cuts. Three officials penciled in three rate reductions next year. “Next year’s dot plot is a mosaic of different perspectives and is an accurate reflection of a confusing economic outlook, muddied by labor supply shifts, data measurement concerns, and government policy upheaval and uncertainty,” said Seema Shah, chief global strategist at Principal Asset Management. The central bank has two policy meetings left for the year, one in October and one in December. Economic projections from the Fed saw slightly faster economic growth in 2026 than was projected in June, while the outlook for inflation was updated modestly higher for next year. There’s a lot of uncertainty…
Share
BitcoinEthereumNews2025/09/18 02:59
Sharplink CEO: Stablecoins, RWA, and sovereign wealth funds will drive Ethereum's TVL to grow tenfold by 2026.

Sharplink CEO: Stablecoins, RWA, and sovereign wealth funds will drive Ethereum's TVL to grow tenfold by 2026.

PANews reported on December 27 that Sharplink CEO Joseph Chalom stated that the surge in stablecoins, tokenized RWAs, and the growing interest from sovereign wealth
Share
PANews2025/12/27 08:15