Trust Wallet Hacked: What Crypto Users Should Do Now

bitcoinistPublicado a 2025-12-26Actualizado a 2025-12-26

Resumen

Trust Wallet has confirmed a security incident specifically affecting its Chrome browser extension version 2.68, advising users to immediately disable and upgrade to version 2.69. Mobile-only users and those on other extension versions are not impacted. The breach was first flagged by on-chain investigator ZachXBT, who reported multiple users had funds drained. Cybersecurity firm PeckShield estimates losses exceeded $6 million, with a portion sent to centralized exchanges. Trust Wallet is directing affected users to contact support, and Binance founder Changpeng Zhao has stated that Trust Wallet will cover the estimated $7 million in losses. Users are urged to update their extensions and avoid using version 2.68 until upgraded.

Trust Wallet says a “security incident” hit only one slice of its product stack: the Chrome browser extension on version 2.68. If you are a mobile-only user, the company says you’re not affected. If you are on any other extension version, the company says you’re not affected either. The problem, per Trust Wallet’s own wording, is tightly scoped, even if the fallout doesn’t feel that way when you’re staring at an emptied address.

The first public flare went up on Dec. 25 via on-chain investigator ZachXBT, who posted a Telegram warning that “a number of Trust Wallet users have reported that funds were drained from wallet addresses within the past couple of hours.”

He stressed that “the exact root cause has not been determined,” then pointed out an uncomfortable coincidence: “the Trust Wallet Chrome extension pushed a new update yesterday.” In the same message, he asked victims to DM him on X so he could “update the list of theft addresses below as I verify more,” and he began publishing alleged theft destinations across multiple chains. His list included multiple EVM addresses and a Solana address.

Trust Wallet Confirms The Hack

The wallet firm later confirmed the incident on X. “We’ve identified a security incident affecting Trust Wallet Browser Extension version 2.68 only. Users with Browser Extension 2.68 should disable and upgrade to 2.69,” the company wrote, linking users to the official Chrome Web Store listing.

It added: “Please note: Mobile-only users and all other browser extension versions are not impacted.” The post closed with the kind of line every security team ends up typing sooner or later: “We understand how concerning this is and our team is actively working on the issue. We’ll keep sharing updates as soon as possible.”

Then the guidance got more urgent, and more specific. Trust Wallet warned users who hadn’t updated to 2.69: “please do not open the Browser Extension until you have updated. This may help to ensure the security of your wallet and prevent further issues.”

In a follow-up, it spelled out a step-by-step that boils down to: don’t open the extension, go to Chrome’s extensions page for Trust Wallet, toggle it off if it’s still on, enable Developer mode, hit “Update,” and confirm you’re on version 2.69 before doing anything else. It’s not glamorous, but it’s actionable, which is what matters when you’re in incident mode.

As the claims and counterclaims swirled, cybersecurity firm PeckShield put an early dollar figure on the damage. “The Trust Wallet exploit has drained >$6M worth of cryptos from victims,” PeckShield wrote, adding that while about “~$2.8M of the stolen funds remain in the hacker’s wallets (Bitcoin/EVM/Solana), the bulk – >$4M in cryptos – has been sent to CEXs,” with a breakdown of “~$3.3M to ChangeNOW, ~$340K to Fixed Float, & ~$447K to Kucoin.”

One more pressure point surfaced quickly: compensation. ZachXBT said, “I currently have many concerned victims contacting me via DM so can your team please clarify if you will be offering any compensation for Trust Wallet Browser Extension users.” Trust Wallet did not answer that directly in public. Instead, it replied that its customer support team was already in touch with impacted users regarding next steps and directed people to reach out via its support channel.

So what should users do now, in plain terms? If you are on extension version 2.68, Trust Wallet’s instruction is to stop using it as-is: disable it and upgrade to 2.69 before you open it again. If you think you were affected, the company is routing users to support, while independent investigator ZachXBT is asking for reports to help map theft flows.

UPDATE: Binance founder Changpeng Zhao confirmed via X that user will be compensated for the hack. “So far, $7m affected by this hack. Trust Wallet will cover. User funds are SAFU. Appreciate your understanding for any inconveniences caused. The team is still investigating how hackers were able to submit a new version,” Zhao wrote today.

At press time, the total crypto market cap stood at $2.95 trillion.

Total crypto market cap sits below the 2021 high, 1-week chart | Source: TOTAL on TradingView.com

Preguntas relacionadas

QWhich specific version of the Trust Wallet extension was affected by the security incident?

AThe security incident affected Trust Wallet Browser Extension version 2.68 only.

QWhat is the primary action users of the affected extension version should take immediately?

AUsers on version 2.68 should disable the extension and upgrade to version 2.69 before opening it again.

QAccording to cybersecurity firm PeckShield, what was the estimated value of crypto drained in the exploit?

APeckShield reported that the exploit drained over $6 million worth of cryptocurrencies from victims.

QWho first publicly reported the potential issue with Trust Wallet on December 25th?

AOn-chain investigator ZachXBT first reported the issue via a Telegram warning.

QDid Trust Wallet or its parent company commit to compensating affected victims?

AYes, Binance founder Changpeng Zhao confirmed via X that Trust Wallet would cover the losses, stating that user funds are SAFU.

Lecturas Relacionadas

Memecoins Reclaim 29% of Spot Trading Volume on Solana DEX, Highest Since August 2025

Memecoins on Solana have surged back to account for 29% of the network's decentralized exchange (DEX) spot trading volume for the week of July 20-26, marking their highest share since August 2025. This represents a significant jump from the 10-15% levels seen just weeks prior. The resurgence is largely attributed to the explosive rise of the memecoin $ANSEM ("The Black Bull"), which saw an 18,000% surge in three days after its June launch and peaked at a market cap near $449 million, revitalizing trading activity on platforms like Pump.fun. Despite this memecoin rally, the data refutes the simplified view of Solana as a memecoin-dominated chain. SOL-stablecoin pairs accounted for 37% of weekly volume, stablecoin-to-stablecoin swaps made up 22%, with foreign tokens, project tokens, and tokenized assets comprising smaller shares. Memecoins ranked second, not first. The article highlights Solana's underlying strength beyond speculative activity. The network's stablecoin supply surpassed $15 billion in July and remained resilient during the 2026 market downturn. Furthermore, Solana leads all networks in the number of tokenized real-world assets (RWAs), hosting 2,582 such assets valued over $3.5 billion. Institutional adoption, evidenced by firms like Western Union and B2C2 utilizing the chain for settlements, underscores its growing utility. While memecoin volumes are cyclical, Solana's stablecoin and RWA ecosystems have shown consistent, counter-cyclical growth.

cryptonews.ruHace 9 min(s)

Memecoins Reclaim 29% of Spot Trading Volume on Solana DEX, Highest Since August 2025

cryptonews.ruHace 9 min(s)

Low Probability, High Impact: Citi Issues Nine Extreme Risk Warnings for Commodities in H2 2026

Citigroup Global Research has released a commodity tail risk report focusing on low-probability, high-impact scenarios for late 2026. The report argues that traditional supply-demand frameworks are now regularly disrupted by geopolitical, climate, and technological shocks. Nine key "wildcard" risks are identified: 1. **U.S.-Iran conflict** escalating to a persistent, multi-year disruption of Gulf oil production, potentially pushing crude above $150/bbl and retail gasoline above $6/gallon. 2. **Russia-Ukraine war escalation** triggering new restrictions on Russian energy exports, particularly impacting global natural gas and refined products markets more than crude oil. 3. **Aggressive stockpiling of critical minerals**, such as copper, potentially driving prices above $20,000/ton. 4. **Gold prices** potentially falling another 15-20% in the near term before potentially doubling to around $6,000/oz in the longer term. 5. **A record-strength El Niño** severely disrupting agricultural supplies, possibly pushing cocoa back above $10,000/ton. 6. **AI boom or bust** creating a two-way risk: a boom would boost demand for power-related commodities (electricity, gas, uranium, copper, aluminum), while a bust could cause a deflationary demand shock, though gold could benefit in either scenario. 7. **Renewed U.S.-China trade war** impacting American farm exports, potentially pushing corn below $4.20/bushel and soybeans below $10/bushel. 8. **Finalization of the Russia-China "Power of Siberia 2" gas pipeline** deal, which would drastically reduce China's LNG import needs post-2030, exacerbating a looming global LNG glut and pressuring prices towards $5-6/MMBtu. 9. **An extreme "Monroe Doctrine" scenario** where the U.S. blocks all oil exports from the Americas, causing a severe benchmark dislocation (high global prices like Brent above $100/bbl, but a steep discount for trapped American crude). The report advises investors to stress-test portfolios against these poorly priced extreme scenarios, as "once-in-a-decade" shocks have become more frequent.

marsbitHace 23 min(s)

Low Probability, High Impact: Citi Issues Nine Extreme Risk Warnings for Commodities in H2 2026

marsbitHace 23 min(s)

Trading

Spot
活动图片