Trust Wallet Users Lost $7 Million in Cryptocurrency Due to Hack

RBK-cryptoPublished on 2025-12-26Last updated on 2025-12-26

Abstract

On December 26, the team behind Trust Wallet, a popular cryptocurrency wallet owned by Binance, reported a security breach affecting the browser extension version 2.68. According to Binance founder Changpeng Zhao, the incident was the result of a hack, resulting in losses of approximately $7 million. Users of the compromised version were advised to disable or uninstall it and upgrade to the secure version 2.69. The breach did not impact the mobile application. Trust Wallet's native token (TWT) initially dropped around 7% in price but recovered after the official announcement. Zhao stated that Trust Wallet would cover all user losses and urged affected individuals to contact support. Although no official cause was confirmed, reports suggest that version 2.68 contained hidden malicious code that intercepted users' secret recovery phrases during wallet imports, sending them to an external server. This allowed attackers to gain full access to affected wallets. Some community members, including Zhao, suspect the breach may have been an inside job involving a team member.

On the night of December 26, the team of the popular cryptocurrency wallet Trust Wallet reported a security breach that affected the browser application version 2.68. As explained by Binance founder and head of YZi Labs, which owns Trust Wallet, Changpeng Zhao, the incident occurred as a result of a hacker attack, and the damage amounted to $7 million.

Users of version 2.68 should disable or delete this build and only then install the new version 2.69, and under no circumstances should they open or use the unsafe version. The hack only concerns the browser version 2.68 and did not affect the mobile application.

The native token of Trust Wallet (TWT) reacted with a price drop of about 7%, falling for three hours before the team's announcement around 01:20 Moscow time on December 26. After the official announcement, the TWT price recovered to previous levels and the asset is trading slightly below $0.83.

Zhao stated that Trust Wallet will cover all user losses, and affected users were asked to write to the wallet's support service, a link to which can be found on the official website.

No official statements have been made regarding the causes of the hack. But its essence, according to a report by user Akinator on social network X, may be that a hidden malicious code was embedded in version 2.68 of the Trust Wallet browser extension. Akinator was one of the few who reported the hack several hours before the official confirmation from Trust Wallet.

The assumption is that when a user enters their secret phrase to import a wallet, this code stealthily intercepts the data and sends it to an external server. In this way, the attackers could gain full access to the users' wallets and funds.

The crypto community believes that the malicious code was embedded by someone from the cryptocurrency wallet team. In response to a suggestion by X user under the nickname Crazino.eth that the hack was "certainly carried out by an insider working in the team," Zhao replied "probably."

Broke the cycle. How the price of Bitcoin changed over 10 years at Christmas

AI outperformed humans in a crypto trading tournament. What were the results

Miner "capitulation" called a bullish factor for Bitcoin. Why

Related Questions

QWhat was the total amount of cryptocurrency lost by Trust Wallet due to the hack?

AUsers lost $7 million in cryptocurrency due to the hack.

QWhich specific version of the Trust Wallet application was compromised in the security breach?

AThe security breach affected the browser application version 2.68.

QWhat was the impact on Trust Wallet's native token (TWT) price following the incident?

AThe native token TWT initially dropped by approximately 7% but recovered to its previous levels after the official announcement, trading slightly below $0.83.

QAccording to the article, how did the alleged malware in version 2.68 potentially steal user funds?

AThe hidden malicious code allegedly intercepted a user's secret recovery phrase during wallet import and sent it to an external server, giving attackers full access to the wallets and funds.

QWho did the crypto community and Binance's Changpeng Zhao suggest might be responsible for the hack?

AThe crypto community and Changpeng Zhao suggested that the hack was likely carried out by an insider within the Trust Wallet team.

Related Reads

War Trade Unwinding | TradeXYZ Weekend Observations

Weekend markets saw a clear return of risk appetite. Major indices rose broadly, with significant gains in tech and precious metals, while energy sectors fell sharply on the "end of war" narrative. On June 14, oil prices initially rose on reports Iran had not yet finalized a memorandum of understanding. Later, YNET reported Trump might immediately lift the maritime blockade on Iran and the Strait of Hormuz. At 21:30, Trump confirmed on Truth Terminal that a deal with Iran was done, authorizing an immediate end to the US blockade and toll-free opening of the Strait. Iran's deputy foreign minister simultaneously announced an immediate and permanent halt to military actions on multiple fronts. Oil prices had already fallen to weekend boundaries, pre-pricing the news. The S&P 500 subsequently touched 7530. Markets will likely remain in a waiting period until the formal peace deal signing on June 19. At the moment of the deal announcement, gold jumped from ~4,221 to a high of 4,337, and silver from ~67.85 to 70.83, before stabilizing at higher levels. Individual stocks and ETFs like NBIS, RKLB, and LITE performed strongly. NBIS, added to the Nasdaq index, saw a target price increase due to strong AI cloud growth. RKLB, also added to the index, benefited from positive SpaceX valuation sentiment. LITE received a $1,130 target from JPMorgan. SPCX rose quickly after Musk tweeted SpaceX could potentially reach ~$1 trillion in revenue by 2030. In summary, the market shock from the multi-month war is beginning to dissipate. Israel's actions remain the key variable before the June 19 signing. Upcoming events like Fed Chair Warsh's debut and BoJ rate hike expectations will also significantly impact markets this week.

marsbit19m ago

War Trade Unwinding | TradeXYZ Weekend Observations

marsbit19m ago

Will the Next Crypto Bull Run Start with On-Chain Trading of SpaceX?

This article presents a scenario-based forecast for the crypto industry from 2026 to 2029, arguing that the next major cycle will be driven not by technological narratives but by legal access to real-world assets. The author predicts that by mid-2026, pre-IPO perpetual contracts for top private companies like SpaceX, OpenAI, and Anthropic on platforms like Hyperliquid will become the primary gateway for accessing quality assets, as most crypto-native tokens fail to capture real value. The much-hyped AI x Crypto intersection largely fails except for prediction markets, which thrive on betting on AI model supremacy. By 2027, public blockchain foundations are forced to choose between catering to retail speculation or building compliant infrastructure for institutions, with many opting for the latter. Growth in stablecoins and tokenized private credit/equity hits a "triple ceiling" due to regulatory and political uncertainty rather than market demand. The pivotal shift is forecast for 2028. A major liquidation event in pre-IPO perpetuals exposes the structural flaw of synthetic markets lacking a real underlying asset anchor. In response, regulatory changes finally allow the public solicitation of private securities resales to verified accredited investors. This creates a legitimate secondary market for real company equity, which then becomes the core asset class of the new bull market, relegating synthetic perps to a niche role. By 2029, the industry becomes "boring" but foundational. Tokens without claims on real cash flows or assets cease trading. Stablecoin growth is steady but politically capped. Crypto infrastructure fades from view as it gets absorbed into traditional finance backends. The article's central thesis is that the key bottleneck for crypto's next phase is legal and regulatory channels for real asset ownership, not technology.

marsbit1h ago

Will the Next Crypto Bull Run Start with On-Chain Trading of SpaceX?

marsbit1h ago

The Value Distribution of Stablecoins

**Summary: The Value Distribution of Stablecoins** The article argues that stablecoins are evolving from mere trading tools into broader channels for dollar access. It divides the stablecoin ecosystem into four layers to analyze how value is distributed: 1. **Issuance Layer:** Mints stablecoins, holds reserve assets, and captures the spread between reserve yield and user costs (e.g., Tether, Circle). This layer currently earns the largest profit margin. 2. **Infrastructure Layer:** Connects stablecoins to the traditional financial system, handling fiat on/off-ramps, banking integration, compliance (KYC/AML), and asset management (e.g., Bridge, BVNK). This is the "unglamorous" but critical work, building the essential bridges between crypto and real-world finance. 3. **Acquiring/Distribution Layer:** Integrates stablecoins into merchant systems, manages payment flows, and provides enterprise financial software (e.g., Stripe, Coinbase). They act as the access point for businesses. 4. **Application Layer:** The end-users and businesses that ultimately use stablecoins for payments, settlements, or as a store of value. They benefit from convenience but have little pricing power. The core thesis is that while the issuance layer currently dominates profits, the often-overlooked **infrastructure layer holds significant long-term potential**. The real challenge and barrier to mass adoption is not the on-chain transfer of stablecoins (which is simple), but the complex "last mile" integration into existing business workflows, banking systems, and regulatory frameworks across different countries. Companies in this layer are currently in a "land grab" phase, investing heavily to build networks, secure bank partnerships, and establish compliance pathways. While their position is currently pressured by the profitable issuers above and distribution platforms below, the article suggests that if stablecoins become a default financial rail for businesses, the infrastructure providers who have done the hard work of integration will ultimately gain strong pricing power and become entrenched, essential players.

marsbit8h ago

The Value Distribution of Stablecoins

marsbit8h ago

Trading

Spot
Futures
活动图片