ChartModo logo ChartModo logo
Invezz 2026-01-02 09:08:16

ZachXBT flags ongoing attack targeting crypto wallets across multiple chains

On-chain investigator ZachXBT has brought to light a major crypto draining campaign that is affecting wallets across multiple EVM chains. According to an alert on ZachXBT’s Telegram channel, an unknown attacker has been targeting several crypto wallets and stealing small amounts, notably under $2,000 per wallet. While at first glance the losses seem minor, the vast amount of wallets being targeted at the same time is a concerning development, especially as the attack vector remains unknown at the moment. As of the last update, ZachXBT estimates that total losses have reached roughly $107,000 , but warned that the figure may continue to increase. At the time of publication, the investigation did not identify the attack vector that allowed the attacker to compromise these wallets, which leaves room for more victims to be affected. ZachXBT has flagged the attacker’s address: 0xAc2e5153170278e24667a580baEa056ad8Bf9bFB. Some community members believe that the attacks may be the result of a malicious campaign targeting MetaMask users. One X user, going by the name MechaKong, highlighted a spoof email that was reportedly sent to MetaMask users earlier in the day. The message urged recipients to upgrade to the latest version of the wallet and directed them to download a file that was not affiliated with the official source. A screenshot of the phishing email shows a fake download link masked under a MetaMask-branded prompt, which may have tricked unsuspecting users into compromising their wallets. See below. Vladimir S. | Officer’s Notes @officer_secret · Follow Replying to @officer_secret According to @Mecha_Kong , there was a spoof mm email sent out today about upgrading… could be the reason behind drains… 8:12 AM · Jan 2, 2026 40 Reply Copy link Read 6 replies Trust Wallet users were recently targeted Last week, similar panic ensued among several Trust Wallet users who found that their wallets had been drained without warning. Specifically, users who were operating the Trust Wallet Google Chrome extension became the victim of a large-scale heist after attackers were able to upload a malicious version, v2.68, to the Chrome Web Store on December 24, 2025. It is estimated that they were able to carry this out, likely using leaked API keys, and pushed malicious code disguised as analytics logic, which allowed them to quietly harvest sensitive user data, specifically seed phrases. Attackers were able to steal somewhere between $7 million and $8.5 million from hundreds of wallets across more than 2,500 affected addresses. A patch has since been released to fix the compromised version, and Trust Wallet has confirmed that it will reimburse all affected users. Over $3 billion lost to hacks in 2025 The recent wallet-draining campaign, however, presents a sharp contrast from broader crypto attack trends in 2025, where attackers were largely found to be targeting centralized services across fewer incidents. Total losses from these concentrated events surpassed $3 billion last year, with a handful of breaches like the Bybit hack accounting for the vast majority of the stolen funds. The total number of incidents, however, dropped compared to the previous year. Security agencies have attributed a significant portion of total crypto losses to North Korean hackers , who are believed to have netted roughly $2.02 billion through increasingly coordinated and structured operations. The post ZachXBT flags ongoing attack targeting crypto wallets across multiple chains appeared first on Invezz

면책 조항 읽기 : 본 웹 사이트, 하이퍼 링크 사이트, 관련 응용 프로그램, 포럼, 블로그, 소셜 미디어 계정 및 기타 플랫폼 (이하 "사이트")에 제공된 모든 콘텐츠는 제 3 자 출처에서 구입 한 일반적인 정보 용입니다. 우리는 정확성과 업데이트 성을 포함하여 우리의 콘텐츠와 관련하여 어떠한 종류의 보증도하지 않습니다. 우리가 제공하는 컨텐츠의 어떤 부분도 금융 조언, 법률 자문 또는 기타 용도에 대한 귀하의 특정 신뢰를위한 다른 형태의 조언을 구성하지 않습니다. 당사 콘텐츠의 사용 또는 의존은 전적으로 귀하의 책임과 재량에 달려 있습니다. 당신은 그들에게 의존하기 전에 우리 자신의 연구를 수행하고, 검토하고, 분석하고, 검증해야합니다. 거래는 큰 손실로 이어질 수있는 매우 위험한 활동이므로 결정을 내리기 전에 재무 고문에게 문의하십시오. 본 사이트의 어떠한 콘텐츠도 모집 또는 제공을 목적으로하지 않습니다.