Trust Wallet Chrome Extension Vulnerability Drains $6M in Unauthorized Withdrawals
Trust Wallet's Chrome extension version 2.68 was compromised during the holidays, resulting in unauthorized withdrawals totaling over $6 million. The breach, detected on December 25, prompted immediate action from the company. Users were advised to disable the affected version and upgrade to the patched 2.69 release.
The exploit specifically targeted the Chrome extension—mobile apps and other browser extensions remained unaffected. Trust Wallet has yet to disclose the root cause but confirmed an ongoing investigation. Security analysts highlight this as a cautionary tale for hot wallet vulnerabilities during periods of reduced operational vigilance.