Trust Wallet browser extension vulnerability reported, user funds stolen over $6 million

区块客
TWT0,58%

On-Chain Detective ZachXBT’s daily report on the 25th indicated that multiple Trust Wallet users reported unauthorized fund outflows from their wallets within a few hours. According to preliminary monitoring and comprehensive reports, on-chain tracking shows that hundreds of victims have been affected, with stolen funds totaling at least $6 million so far.

We’ve identified a security incident affecting Trust Wallet Browser Extension version 2.68 only. Users with Browser Extension 2.68 should disable and upgrade to 2.69.

Please refer to the official Chrome Webstore link here: https://t.co/V3vMq31TKb

Please note: Mobile-only users…

— Trust Wallet (@TrustWallet) December 25, 2025

Trust Wallet issued an emergency notice on its official X account, stating that version 2.68 of its browser extension has a security vulnerability. It recommends affected users disable version 2.68, upgrade to version 2.69 via the official Chrome Web Store, and not open the affected version until the update is complete. Trust Wallet stated that mobile applications and other extension versions are unaffected, and the team is actively investigating. As of the 26th, no compensation details have been announced by the official sources.

Public blockchain analysis from on-chain monitoring agencies shows that funds from many affected addresses were quickly transferred to a wallet controlled by the attacker. This pattern is common in cases of compromised extensions or front-end events, where malicious updates or vulnerabilities may lead to unauthorized signing requests or private key leaks. Trust Wallet’s advisory was issued only after the extension update, which has heightened community concerns about whether version 2.68 introduced or exposed vulnerabilities.

View Original
Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to Disclaimer.
Comment
0/400
No comments
Trade Crypto Anywhere Anytime
qrCode
Scan to download Gate App
Community
  • 简体中文
  • English
  • Tiếng Việt
  • 繁體中文
  • Español
  • Русский
  • Français (Afrique)
  • Português (Portugal)
  • Bahasa Indonesia
  • 日本語
  • بالعربية
  • Українська
  • Português (Brasil)