ChartModo logo ChartModo logo
Cryptopolitan 2026-01-02 22:38:11

Trust Wallet extension returns to Chrome after $8.5M exploit

Trust Wallet’s browser extension has returned to the Chrome Web Store following a temporary remova l fo rced by a sophisticated hack that compromised roughly $8.5 million worth of digital assets in December. The platform posted on X , stating, “Version 2.71.0 is now available & includes customer service verification code support to help with the claims process.” Trust Wallet’s chief executive officer, Eowyn Chen, called for calm on December 31, posting on X , “Some may have noticed that the @trustwallet Browser Extension is temporarily unavailable on the Chrome Web Store. We hit a Chrome Web Store bug while releasing a new version that includes a feature to help reimbursement claimants submit verification codes from their extension — this helps us better verify wallet ownership for affected users, separate from the hacker/scammer. Google has acknowledged the issue and is escalating it internally. We hope to have it resolved soon.” Chen also warned users to remain vigilant for fake versions of the extension. Holiday attack drains thousands of Trust Wallet users’ assets In the hack that occurred in December , attackers released a malicious version 2.68 of Trust Wallet’s browser extension on Christmas Eve. Unsuspecting users were stunned when their funds got drained during a roughly two-day period between December 25 and 26. According to Trust Wallet, 2,520 wallet addresses were affected across multiple blockchain networks. The crypto wallet platform also added that they have a high confidence that the exploit is linked to the November Shai-Hulud supply chain attack, which targeted the npm software registry and affected thousands of repositories industry-wide. Security researchers noted that the attackers demonstrated sophisticated planning, having staged their infrastructure by December 8, more than two weeks before deploying the compromised extension. White-hat security researchers attempted to mitigate the damage by launching distributed denial-of-service attacks against the attackers’ infrastructure, helping to limit the number of additional victims after the breach was discovered. Trust Wallet initially released a version 2.69 to replace the compromised version 2.68, urging users to download it; however, that new version hit a bug, as Chen pointed out. Fraudulent claims complicate reimbursement plan Trust Wallet, which is owned by Binance but operates as a separate entity, assured users that only the browser extension was affected. It insisted that the mobile app versions were not affected throughout the incident. Binance founder Changpeng Zhao confirmed the company’s plan to fully reimburse all verified victims. However, according to Chen , Trust Wallet had to revise its claims process to be more stringent after receiving over 5,000 claims despite identifying only 2,596 affected wallet addresses. In an X post dated December 28, Chen acknowledged the irregular number of claim seekers, writing, “Our team is working diligently to verify claims; combining multiple data points to distinguish legitimate victims from malicious actors.” Chen explained that the newly restored extension’s verification code feature will allow Trust Wallet to distinguish genuine claims from fraudulent or duplicate submissions. The smartest crypto minds already read our newsletter. Want in? Join them .

Leggi la dichiarazione di non responsabilità : Tutti i contenuti forniti nel nostro sito Web, i siti con collegamento ipertestuale, le applicazioni associate, i forum, i blog, gli account dei social media e altre piattaforme ("Sito") sono solo per le vostre informazioni generali, procurati da fonti di terze parti. Non rilasciamo alcuna garanzia di alcun tipo in relazione al nostro contenuto, incluso ma non limitato a accuratezza e aggiornamento. Nessuna parte del contenuto che forniamo costituisce consulenza finanziaria, consulenza legale o qualsiasi altra forma di consulenza intesa per la vostra specifica dipendenza per qualsiasi scopo. Qualsiasi uso o affidamento sui nostri contenuti è esclusivamente a proprio rischio e discrezione. Devi condurre la tua ricerca, rivedere, analizzare e verificare i nostri contenuti prima di fare affidamento su di essi. Il trading è un'attività altamente rischiosa che può portare a perdite importanti, pertanto si prega di consultare il proprio consulente finanziario prima di prendere qualsiasi decisione. Nessun contenuto sul nostro sito è pensato per essere una sollecitazione o un'offerta