ChartModo logo ChartModo logo
Cryptopolitan 2026-01-02 22:38:11

Trust Wallet extension returns to Chrome after $8.5M exploit

Trust Wallet’s browser extension has returned to the Chrome Web Store following a temporary remova l fo rced by a sophisticated hack that compromised roughly $8.5 million worth of digital assets in December. The platform posted on X , stating, “Version 2.71.0 is now available & includes customer service verification code support to help with the claims process.” Trust Wallet’s chief executive officer, Eowyn Chen, called for calm on December 31, posting on X , “Some may have noticed that the @trustwallet Browser Extension is temporarily unavailable on the Chrome Web Store. We hit a Chrome Web Store bug while releasing a new version that includes a feature to help reimbursement claimants submit verification codes from their extension — this helps us better verify wallet ownership for affected users, separate from the hacker/scammer. Google has acknowledged the issue and is escalating it internally. We hope to have it resolved soon.” Chen also warned users to remain vigilant for fake versions of the extension. Holiday attack drains thousands of Trust Wallet users’ assets In the hack that occurred in December , attackers released a malicious version 2.68 of Trust Wallet’s browser extension on Christmas Eve. Unsuspecting users were stunned when their funds got drained during a roughly two-day period between December 25 and 26. According to Trust Wallet, 2,520 wallet addresses were affected across multiple blockchain networks. The crypto wallet platform also added that they have a high confidence that the exploit is linked to the November Shai-Hulud supply chain attack, which targeted the npm software registry and affected thousands of repositories industry-wide. Security researchers noted that the attackers demonstrated sophisticated planning, having staged their infrastructure by December 8, more than two weeks before deploying the compromised extension. White-hat security researchers attempted to mitigate the damage by launching distributed denial-of-service attacks against the attackers’ infrastructure, helping to limit the number of additional victims after the breach was discovered. Trust Wallet initially released a version 2.69 to replace the compromised version 2.68, urging users to download it; however, that new version hit a bug, as Chen pointed out. Fraudulent claims complicate reimbursement plan Trust Wallet, which is owned by Binance but operates as a separate entity, assured users that only the browser extension was affected. It insisted that the mobile app versions were not affected throughout the incident. Binance founder Changpeng Zhao confirmed the company’s plan to fully reimburse all verified victims. However, according to Chen , Trust Wallet had to revise its claims process to be more stringent after receiving over 5,000 claims despite identifying only 2,596 affected wallet addresses. In an X post dated December 28, Chen acknowledged the irregular number of claim seekers, writing, “Our team is working diligently to verify claims; combining multiple data points to distinguish legitimate victims from malicious actors.” Chen explained that the newly restored extension’s verification code feature will allow Trust Wallet to distinguish genuine claims from fraudulent or duplicate submissions. Sign up to Bybit and start trading with $30,050 in welcome gifts

阅读免责声明 : 此处提供的所有内容我们的网站,超链接网站,相关应用程序,论坛,博客,社交媒体帐户和其他平台(“网站”)仅供您提供一般信息,从第三方采购。 我们不对与我们的内容有任何形式的保证,包括但不限于准确性和更新性。 我们提供的内容中没有任何内容构成财务建议,法律建议或任何其他形式的建议,以满足您对任何目的的特定依赖。 任何使用或依赖我们的内容完全由您自行承担风险和自由裁量权。 在依赖它们之前,您应该进行自己的研究,审查,分析和验证我们的内容。 交易是一项高风险的活动,可能导致重大损失,因此请在做出任何决定之前咨询您的财务顾问。 我们网站上的任何内容均不构成招揽或要约