China-Based Hacker Group Steals $7M in Crypto via Wallet Supply Chain Attacks

TheNewsCrypto发布于2026-03-18更新于2026-03-18

文章摘要

A Chinese hacker group operating under the name Wuhan Anshun Technology has been accused of stealing approximately $7 million in cryptocurrency through supply-chain attacks targeting users of wallets like Trust Wallet. The group used malicious browser extensions and compromised Electron-based apps to collect wallet information and transfer funds, primarily on Ethereum, BNB Chain, and Arbitrum. Details emerged after an internal member leaked information due to disputes over profit sharing, releasing evidence and expressing intent to surrender to authorities. While the case remains unconfirmed by officials, it highlights significant security risks in crypto software. Experts advise caution when updating or installing wallet-related tools.

A Chinese hacker collective has been charged with stealing about $7 million in cryptocurrency by using supply-chain attacks to target users of cryptocurrency wallets. According to reports, the group claimed to be a security services provider while operating under the name Wuhan Anshun Technology. On the other hand, members were allegedly conducting illicit operations to pilfer cryptocurrency assets. Wallets like Trust Wallet and other platforms are thought to have been targeted by the attackers.

How the Group works

The group works by using malicious browser extensions and compromised Electron-based apps with remote access tools. They helped collect wallet information and transfer funds. It mainly targeted blockchains such as Ethereum, BNB Chain, and Arbitrum.

The details of the operation came out after a member of the group leaked information. The person claimed there was a disagreement over profit sharing and unpaid compensation. After the disagreement, the individual reportedly released evidence of the operation and said they plan to surrender to authorities. Authorities have not officially confirmed the case, and no formal investigation details have been released so far.

This incident demonstrates that the software and tools used with the wallets are also risky. Experts advise exercising caution when updating software and refraining from installing unknown updates. The case highlights growing risks in crypto security, even though the claims have not yet been verified.

Highlighted Crypto News:

Juliana Stratton Defeats Crypto-Backed Krishnamoorthi in Illinois Senate Primary

TagsBlockchainchinaCryptocurrency

相关问答

QWhat is the name of the Chinese hacker group accused of stealing $7 million in cryptocurrency?

AThe group operated under the name Wuhan Anshun Technology.

QHow did the hacker group primarily carry out their attacks to steal cryptocurrency?

AThey used malicious browser extensions and compromised Electron-based apps with remote access tools.

QWhich specific blockchains were the main targets of this hacking group's attacks?

AThe group mainly targeted Ethereum, BNB Chain, and Arbitrum.

QWhat event led to the public disclosure of the group's operation details?

AA member of the group leaked information due to a disagreement over profit sharing and unpaid compensation.

QWhat precautionary advice do experts give in light of this incident?

AExperts advise exercising caution when updating software and refraining from installing unknown updates.

你可能也喜欢

Chainlink CCIP 加入央行数字货币试点项目

Chainlink的跨链互操作性协议CCIP正被用于多个央行的数字货币及资产代币化结算试点项目,标志着该协议进入了区块链基础设施领域重要的机构性实验场景。这些试点包括巴西的Drex数字雷亚尔计划、中国香港的Ensemble代币化沙盒网络,以及香港金融管理局的e-HKD+项目(涉及澳新银行的A$DC)。目前这些均为试验阶段,尚未投入商业生产,但具有重要意义,因为它们展示了受监管机构如何测试公共区块链基础设施概念。 央行的试点项目虽然多数不会立即转化为完整生产系统,但揭示了机构正在探索的方向,尤其是互操作性这一核心主题。未来金融体系很可能由多个受监管的网络、支付系统和结算层构成,因此安全可靠的跨链通信与价值传输成为关键基础设施需求。CCIP在这些试点中扮演了跨链消息传递和结算层的角色,用于测试支付对支付结算、跨境资产流动等场景。 对Chainlink而言,参与这些试点有助于强化其机构市场定位,表明其技术正在对可靠性、风险控制要求极高的环境中接受检验。然而,试点不等于正式采用,要实现持续的商业化采用仍需克服监管审批、技术整合和机构协调等多重挑战。整体来看,这反映了资产代币化结算正成为一个重要的机构议题,行业焦点已从简单的资产发行转向互操作性、跨境结算和可编程金融基础设施。

bitcoinist37分钟前

Chainlink CCIP 加入央行数字货币试点项目

bitcoinist37分钟前

XRP账本修订案临近验证节点投票截止日期

XRP Ledger(XRPL)即将进入一项关键验证者投票窗口期,决定是否激活拟议的协议修正案。这凸显了XRPL升级并非仅由开发代码发布驱动,而需经过网络治理流程。 修正案通过rippled发布流程和验证者投票系统推进。与其他XRPL变更类似,拟议修正案需要获得广泛验证者支持才能激活,通常要求达到并维持80%的验证者同意门槛持续一段时间。这一设计旨在确保升级审慎,避免仓促变更,让参与方有充分时间评估新功能。 验证者在XRPL治理中扮演核心角色,其投票决定直接影响协议是否引入新功能,进而塑造未来在支付、资产发行和去中心化交易所等方面的效用。虽然市场注意力常集中于价格波动,但此类协议升级对网络的长期发展更为关键,可能影响智能合约功能、资产特性、交易类型及运行可靠性。 需要明确的是,投票截止日期并不意味着升级必然激活。即使功能已包含在代码版本中,仍需获得足够且持续的支持。验证者可能支持、保留支持或要求更多审查,这是一个健康的决策过程。 对XRP而言,修正案进程之所以重要,是因为其长期价值与XRPL的实用性能紧密相连。协议的进步若能带来更多用例、更好的工具和更强的应用需求,才能真正提升网络效用。因此,当前进展更应被视为基础设施的推进,而非单纯的市场价格信号。 总之,XRPL正进入又一个治理检查点,本次投票将反映验证者对推动下一组协议变更的态度。

bitcoinist51分钟前

XRP账本修订案临近验证节点投票截止日期

bitcoinist51分钟前

交易

现货
活动图片