Trust Wallet Users Lost $7 Million in Cryptocurrency Due to Hack

RBK-crypto发布于2025-12-26更新于2025-12-26

文章摘要

On December 26, the team behind Trust Wallet, a popular cryptocurrency wallet owned by Binance, reported a security breach affecting the browser extension version 2.68. According to Binance founder Changpeng Zhao, the incident was the result of a hack, resulting in losses of approximately $7 million. Users of the compromised version were advised to disable or uninstall it and upgrade to the secure version 2.69. The breach did not impact the mobile application. Trust Wallet's native token (TWT) initially dropped around 7% in price but recovered after the official announcement. Zhao stated that Trust Wallet would cover all user losses and urged affected individuals to contact support. Although no official cause was confirmed, reports suggest that version 2.68 contained hidden malicious code that intercepted users' secret recovery phrases during wallet imports, sending them to an external server. This allowed attackers to gain full access to affected wallets. Some community members, including Zhao, suspect the breach may have been an inside job involving a team member.

On the night of December 26, the team of the popular cryptocurrency wallet Trust Wallet reported a security breach that affected the browser application version 2.68. As explained by Binance founder and head of YZi Labs, which owns Trust Wallet, Changpeng Zhao, the incident occurred as a result of a hacker attack, and the damage amounted to $7 million.

Users of version 2.68 should disable or delete this build and only then install the new version 2.69, and under no circumstances should they open or use the unsafe version. The hack only concerns the browser version 2.68 and did not affect the mobile application.

The native token of Trust Wallet (TWT) reacted with a price drop of about 7%, falling for three hours before the team's announcement around 01:20 Moscow time on December 26. After the official announcement, the TWT price recovered to previous levels and the asset is trading slightly below $0.83.

Zhao stated that Trust Wallet will cover all user losses, and affected users were asked to write to the wallet's support service, a link to which can be found on the official website.

No official statements have been made regarding the causes of the hack. But its essence, according to a report by user Akinator on social network X, may be that a hidden malicious code was embedded in version 2.68 of the Trust Wallet browser extension. Akinator was one of the few who reported the hack several hours before the official confirmation from Trust Wallet.

The assumption is that when a user enters their secret phrase to import a wallet, this code stealthily intercepts the data and sends it to an external server. In this way, the attackers could gain full access to the users' wallets and funds.

The crypto community believes that the malicious code was embedded by someone from the cryptocurrency wallet team. In response to a suggestion by X user under the nickname Crazino.eth that the hack was "certainly carried out by an insider working in the team," Zhao replied "probably."

Broke the cycle. How the price of Bitcoin changed over 10 years at Christmas

AI outperformed humans in a crypto trading tournament. What were the results

Miner "capitulation" called a bullish factor for Bitcoin. Why

相关问答

QWhat was the total amount of cryptocurrency lost by Trust Wallet due to the hack?

AUsers lost $7 million in cryptocurrency due to the hack.

QWhich specific version of the Trust Wallet application was compromised in the security breach?

AThe security breach affected the browser application version 2.68.

QWhat was the impact on Trust Wallet's native token (TWT) price following the incident?

AThe native token TWT initially dropped by approximately 7% but recovered to its previous levels after the official announcement, trading slightly below $0.83.

QAccording to the article, how did the alleged malware in version 2.68 potentially steal user funds?

AThe hidden malicious code allegedly intercepted a user's secret recovery phrase during wallet import and sent it to an external server, giving attackers full access to the wallets and funds.

QWho did the crypto community and Binance's Changpeng Zhao suggest might be responsible for the hack?

AThe crypto community and Changpeng Zhao suggested that the hack was likely carried out by an insider within the Trust Wallet team.

你可能也喜欢

加密货币中的算法:“芬纳姆”的“加密工具”策略如何运作

《芬诺姆的“加密工具”策略:算法如何驱动加密货币投资》 本文介绍了芬诺姆公司推出的“加密工具”策略,这是一种基于算法的系统性投资方法,旨在帮助投资者应对加密货币市场的高波动性,避免情绪化决策。 **核心要点:** 1. **策略原理**:该策略基于自动化交易算法,追踪比特币、以太坊、瑞波币等九种主要及MEME代币,寻找可能发展为中期上涨趋势的早期价格脉冲信号,并自动执行交易。其核心优势在于纪律性,不受市场噪音和投资者情绪干扰。 2. **运作方式**: * **市场环境**:策略在明确的上升趋势中表现最佳,旨在捕捉并持有中期上涨行情。在下跌趋势中,算法会平仓并转入货币市场基金等保守工具以控制风险,但不做空。横盘震荡市场可能产生连续的小额亏损。 * **决策机制**:完全自动化,具体算法参数未公开。交易频率适中,通常每月每资产交易不超过1-2次。 * **风险管理**:遵循分散投资原则,并应用如“单笔交易风险不超过本金1%”等风控规则。 3. **目标与表现**: * **目标用户**:仅面向合格投资者,适合将加密货币作为多元化投资组合一部分、了解其风险的投资者。 * **历史回测**:基于过去四年的数据测试显示,该策略实现了约400%的累计回报,最大回撤低于20%,年化回报约60%,其风险收益比优于单纯持有相同资产的被动策略(后者回报约78%,最大回撤约60%)。**但历史表现不保证未来收益。** 4. **优势与局限**: * **优势**:自动化执行、情绪隔离、风险控制、在俄罗斯法律框架内运作(芬诺姆作为税务代理)。 * **局限**:无法从市场下跌中直接获利(不能做空)、对长期横盘市场敏感、依赖上涨趋势的出现、仅面向合格投资者。 **总结**:“加密工具”策略是将经典趋势投资原则(自动化、纪律性、风险分散)应用于波动剧烈的加密货币市场的一次尝试。它并非高频交易或市场时机猜测工具,而是强调系统性执行。投资者应将其视为高风险资产配置的一部分,而非保本或 guaranteed 超高收益的来源,并需做好承受波动的准备。

cryptonews.ru3分钟前

加密货币中的算法:“芬纳姆”的“加密工具”策略如何运作

cryptonews.ru3分钟前

交易

现货
活动图片