China-Based Hacker Group Steals $7M in Crypto via Wallet Supply Chain Attacks

TheNewsCryptoОпубликовано 2026-03-18Обновлено 2026-03-18

Введение

A Chinese hacker group operating under the name Wuhan Anshun Technology has been accused of stealing approximately $7 million in cryptocurrency through supply-chain attacks targeting users of wallets like Trust Wallet. The group used malicious browser extensions and compromised Electron-based apps to collect wallet information and transfer funds, primarily on Ethereum, BNB Chain, and Arbitrum. Details emerged after an internal member leaked information due to disputes over profit sharing, releasing evidence and expressing intent to surrender to authorities. While the case remains unconfirmed by officials, it highlights significant security risks in crypto software. Experts advise caution when updating or installing wallet-related tools.

A Chinese hacker collective has been charged with stealing about $7 million in cryptocurrency by using supply-chain attacks to target users of cryptocurrency wallets. According to reports, the group claimed to be a security services provider while operating under the name Wuhan Anshun Technology. On the other hand, members were allegedly conducting illicit operations to pilfer cryptocurrency assets. Wallets like Trust Wallet and other platforms are thought to have been targeted by the attackers.

How the Group works

The group works by using malicious browser extensions and compromised Electron-based apps with remote access tools. They helped collect wallet information and transfer funds. It mainly targeted blockchains such as Ethereum, BNB Chain, and Arbitrum.

The details of the operation came out after a member of the group leaked information. The person claimed there was a disagreement over profit sharing and unpaid compensation. After the disagreement, the individual reportedly released evidence of the operation and said they plan to surrender to authorities. Authorities have not officially confirmed the case, and no formal investigation details have been released so far.

This incident demonstrates that the software and tools used with the wallets are also risky. Experts advise exercising caution when updating software and refraining from installing unknown updates. The case highlights growing risks in crypto security, even though the claims have not yet been verified.

Highlighted Crypto News:

Juliana Stratton Defeats Crypto-Backed Krishnamoorthi in Illinois Senate Primary

TagsBlockchainchinaCryptocurrency

Связанные с этим вопросы

QWhat is the name of the Chinese hacker group accused of stealing $7 million in cryptocurrency?

AThe group operated under the name Wuhan Anshun Technology.

QHow did the hacker group primarily carry out their attacks to steal cryptocurrency?

AThey used malicious browser extensions and compromised Electron-based apps with remote access tools.

QWhich specific blockchains were the main targets of this hacking group's attacks?

AThe group mainly targeted Ethereum, BNB Chain, and Arbitrum.

QWhat event led to the public disclosure of the group's operation details?

AA member of the group leaked information due to a disagreement over profit sharing and unpaid compensation.

QWhat precautionary advice do experts give in light of this incident?

AExperts advise exercising caution when updating software and refraining from installing unknown updates.

Похожее

Arbitrum Pretends to Be the Hacker, 'Steals' Back the Money Lost by KelpDAO

Title: Arbitrum Poses as Hacker to Recover Stolen Funds from KelpDAO Last week, KelpDAO suffered a hack resulting in nearly $300 million in losses, marking the largest DeFi security incident this year. Approximately 30,765 ETH (worth over $70 million) remained on an Arbitrum address controlled by the attacker. In an unprecedented move, Arbitrum’s Security Council utilized its emergency authority to upgrade the Inbox bridge contract, adding a function that allowed them to impersonate the hacker’s address and initiate a transfer without access to its private key. The council’s action, approved by 9 of its 12 members, moved the stolen ETH to a frozen address in a single transaction before reverting the contract to its original state. The operation was coordinated with law enforcement, which attributed the attack to North Korea’s Lazarus Group. Community reactions are divided: some praise the recovery of funds, while others question the centralization of power, as the council can upgrade core contracts without governance votes. However, such emergency mechanisms are common among major L2s. Despite the partial recovery, over $292 million was stolen in total, with more than $100 million in bad debt on Aave and remaining funds scattered across other chains. The incident highlights escalating security challenges in DeFi, with state-sponsored hackers employing advanced tactics and L2s responding with elevated countermeasures.

marsbit5 мин. назад

Arbitrum Pretends to Be the Hacker, 'Steals' Back the Money Lost by KelpDAO

marsbit5 мин. назад

iQiyi Is Too Impatient

The article "iQiyi Is Too Impatient" discusses the controversy surrounding the Chinese streaming platform IQiyi's recent announcement of an "AI Actor Library" during its 2026 World Conference. IQiyi claimed over 100 actors, including well-known names like Zhang Ruoyun and Yu Hewei, had joined the initiative. CEO Gong Yu suggested AI could enable actors to "star in 14 dramas a year instead of 4" and that "live-action filming might become a world cultural heritage." The announcement quickly sparked backlash. Multiple actors named in the list issued urgent statements denying they had signed any AI-related authorization agreements. This forced IQiyi to clarify that inclusion in the library only indicated a willingness to *consider* AI projects, with separate negotiations required for any specific role. The incident, which trended on social media with hashtags like "IQiyi is crazy," is presented as a sign of the company's growing desperation. Facing intense competition from short-video platforms like Douyin and Kuaishou, as well as Bilibili and Xiaohongshu, IQiyi's financial performance has weakened, with revenues declining for two consecutive years. The author argues that IQiyi is "too impatient" to tell a compelling AI story to reassure the market, especially as it pursues a listing on the Hong Kong stock exchange. The piece concludes by outlining three key "AI questions" IQiyi must answer: defining its role as a tool provider versus a content creator, balancing the "coldness" of AI with the human element audiences desire, and properly managing the interests of platforms, actors, and viewers. The core dilemma is that while AI can reduce costs and increase efficiency, it risks creating homogenized, formulaic content and devaluing human performers.

marsbit58 мин. назад

iQiyi Is Too Impatient

marsbit58 мин. назад

Торговля

Спот
Фьючерсы
活动图片