ZachXBT Reveals at Least $6 Million Stolen from Trust Wallet Users — Browser Extension Vulnerability at the Core

2025-12-26 04:55:06
Beginner
Quick Reads
Blockchain investigator ZachXBT has revealed that a vulnerability in the Trust Wallet browser extension has resulted in the theft of funds from hundreds of users, with losses surpassing $6 million. He further provided an analysis of the incident's specifics and the related security risks.


Image: https://x.com/DegenerateNews/status/2004283308059083250/photo/1

Incident Background and Latest Disclosures

Recently, on-chain investigator ZachXBT issued a critical security alert through social media and blockchain monitoring tools, revealing a vulnerability in the Trust Wallet browser extension. This flaw enabled the unauthorized transfer and theft of crypto assets from hundreds of users in a short time frame. Preliminary monitoring estimates place the total stolen amount at no less than $6 million.

The news spread rapidly across the crypto community, drawing significant attention from both users and industry professionals. ZachXBT’s monitoring data shows that several wallet addresses experienced suspicious outflows simultaneously. These funds were routed to unknown addresses or intermediary accounts and subsequently moved again.

Analysis of Losses and Impacted User Scale

Recent tracking data indicates that several hundred victims have been identified, with losses spanning multiple blockchains and assets—including, but not limited to, ETH, BTC, and SOL. The irregularities were not isolated to a single chain but were distributed across many wallet addresses, highlighting the event’s substantial scale.

In his latest update, ZachXBT emphasized that the sheer number of affected wallets makes it difficult to verify losses for each address. However, the preliminary estimate already exceeds $6 million, and this figure may rise as additional victims report their losses.

Stolen Funds Flow and Attack Patterns

Current analysis of fund movements suggests these thefts are tied to the browser extension vulnerability, especially when users import private keys or seed phrases, exposing themselves to significant risk. Multiple victims reported that their funds were drained rapidly to unknown accounts, indicating attackers had immediate access.

On-chain data shows that the attacks were highly automated, with stolen funds quickly dispersed and transferred across chains. This pattern differs from traditional hacks and more closely resembles a supply chain exploitation targeting hot wallet extension vulnerabilities.

Trust Wallet Official Response and User Actions


Image: https://x.com/TrustWallet/status/2004316503701958786

Trust Wallet has issued a security alert confirming that version 2.68 of the browser extension contains a critical vulnerability. Users are advised to immediately disable this version and upgrade to 2.69 or higher to mitigate risk. The official statement also clarified that the mobile app and other extension versions are not affected by this vulnerability.

Impacted users should take the following steps:

  • Immediately stop using the outdated extension and upgrade to the latest version \
  • If funds remain in your wallet, transfer them promptly to a cold wallet or another secure solution \
  • Report stolen assets through official support channels and retain all related on-chain evidence for investigation \

Security Lessons and Industry Impact

This incident highlights the ongoing challenge of balancing user experience and security in self-custody wallets. While browser extensions offer convenience, they also raise the risk of private key exposure and malicious activity. When users import mnemonic or seed phrases directly into extensions with vulnerabilities, assets can be drained within minutes.

Industry security experts recommend that users prioritize private key management, use hardware wallets or thoroughly audited security solutions, and avoid entering seed phrases into unverified clients or extensions. This event may also prompt wallet developers to enhance supply chain security assessments and code audits, strengthening overall ecosystem defenses.

Summary

ZachXBT’s latest disclosure of the Trust Wallet browser extension vulnerability underscores the critical need for crypto users to prioritize wallet security and remain vigilant about extension risks. In this incident, hundreds of users lost at least $6 million, prompting the community to re-examine self-custody wallet security. Users should act quickly to implement security measures, monitor official updates, and adopt safer asset management strategies to prevent similar incidents in the future.

Author: Max
Disclaimer
* The information is not intended to be and does not constitute financial advice or any other recommendation of any sort offered or endorsed by Gate.
* This article may not be reproduced, transmitted or copied without referencing Gate. Contravention is an infringement of Copyright Act and may be subject to legal action.

Share

Crypto Calendar
OM Token Göçü Sona Erdi
MANTRA Chain, kullanıcıları OM token'larını 15 Ocak'tan önce MANTRA Chain ana ağına taşımaları için bir hatırlatma yayınladı. Taşıma işlemi, $OM'nin yerel zincirine geçişi sırasında ekosistemdeki katılıma devam edilmesini sağlar.
OM
-4.32%
2026-01-14
CSM Fiyat Değişikliği
Hedera, Ocak 2026'dan itibaren KonsensüsSubmitMessage hizmeti için sabit USD ücretinin $0.0001'den $0.0008'e yükseleceğini duyurdu.
HBAR
-2.94%
2026-01-27
Vesting Kilidi Gecikti
Router Protocol, ROUTE tokeninin Hakediş kilidinin 6 aylık bir gecikme ile açılacağını duyurdu. Ekip, projenin Open Graph Architecture (OGA) ile stratejik uyum sağlamak ve uzun vadeli ivmeyi koruma hedefini gecikmenin başlıca nedenleri olarak belirtiyor. Bu süre zarfında yeni kilit açılımları gerçekleşmeyecek.
ROUTE
-1.03%
2026-01-28
Tokenların Kilidini Aç
Berachain BERA, 6 Şubat'ta yaklaşık 63,750,000 BERA tokenini serbest bırakacak ve bu, mevcut dolaşımdaki arzın yaklaşık %59.03'ünü oluşturacaktır.
BERA
-2.76%
2026-02-05
Tokenların Kilidini Aç
Wormhole, 3 Nisan'da 1.280.000.000 W token açacak ve bu, mevcut dolaşımdaki arzın yaklaşık %28,39'unu oluşturacak.
W
-7.32%
2026-04-02
sign up guide logosign up guide logo
sign up guide content imgsign up guide content img
Sign Up

Related Articles

2025 BTC Price Prediction: BTC Trend Forecast Based on Technical and Macroeconomic Data
Beginner

2025 BTC Price Prediction: BTC Trend Forecast Based on Technical and Macroeconomic Data

This article will provide a systematic interpretation of the Bitcoin price trend in 2025 from the perspectives of technical analysis, on-chain data, and macroeconomic factors, combining the latest trends and data, and supplemented with example charts to help investors form a comprehensive judgment.
2025-07-11 10:42:17
Flare Crypto Explained: What Is Flare Network and Why It Matters in 2025
Beginner

Flare Crypto Explained: What Is Flare Network and Why It Matters in 2025

Discover what Flare Crypto is, how it works, its use cases, tokenomics, and why it's gaining traction in the blockchain space in 2025.
2025-04-15 01:21:45
How to Use a Crypto Whale Tracker: Top Tool Recommendation for 2025 to Follow Whale Moves
Beginner

How to Use a Crypto Whale Tracker: Top Tool Recommendation for 2025 to Follow Whale Moves

This article will take you through what is a crypto whale tracker and why it has become the "must-have weapon" for encryption investors. We will recommend seven mainstream Whale tracking tools, and combined with usage scenarios, teach you how to efficiently use these tools to obtain first-hand signals from the market. Of course, Whale behavior may also be a "lure," so while using these tools, you also need to have a certain level of judgment and data interpretation ability. This article is suitable for beginners to quickly get started, as well as for experienced players to optimize strategies.
2025-04-14 06:57:17
Pi Coin Transaction Guide: How to Transfer to Gate.com
Beginner

Pi Coin Transaction Guide: How to Transfer to Gate.com

Pi Network is a decentralized cryptocurrency network for the general public, using the Stellar Consensus Protocol (SCP) consensus mechanism, which allows users to easily mine Pi tokens from their mobile devices and use them for payments and transactions. With the official opening of the mainnet on February 20, 2025, investors can deposit and trade $PI on exchanges such as Gate.com. This article details how to securely transfer Pi Coins to Gate.com, including obtaining a deposit address, completing the transfer using the Pi Network mainnet wallet, and the exchange's arrival confirmation process. In addition, we have analysed $PI investment risks, including market volatility, compliance and potential fraud risks, to remind investors to take risk management before trading.
2025-02-25 08:21:43
What is N2: An AI-Driven Layer 2 Solution
Beginner

What is N2: An AI-Driven Layer 2 Solution

This article introduces N2 (Niggachain AI Layer 2), the world's first AI-driven Layer 2 blockchain solution. N2 combines AI technology and quantum computing resistance to address the limitations of traditional blockchains in scalability, transaction speed, and cost. Its core technologies include '0-second block time', AI-driven network optimization, and quantum-resistant security protection, aiming to improve transaction efficiency and ensure system stability.
2024-12-23 07:21:00
Understand Baby doge coin in one article
Beginner

Understand Baby doge coin in one article

Baby Doge Coin, also known as "Baby Dog Token", is a meme token derived from the Dogecoin community, which gained popularity through Elon Musk's tweets and enhanced token utility through mechanisms such as deflation, payment integration, and NFT ecosystem. This article comprehensively analyzes the project background, token information, application scenarios, and market performance of Baby Doge, helping investors quickly understand its potential and risks.
2025-02-14 16:53:03