Trust Wallet was exploited during a Christmas vulnerability, resulting in approximately $7 million in user losses, suspected to be linked to an insider.
🔷 Version 2.68 of the Trust Wallet browser extension was infected with a backdoor, primarily affecting desktop users; Trust Wallet recommends updating to version 2.89.
🔷 Changpeng Zhao (CZ) – co-founder of Binance (the company that owns Trust Wallet) confirmed that Binance will fully compensate for the damages.
🔷 According to SlowMist, the attacker prepared from December 8th, installed the backdoor on December 22nd, and withdrew funds on Christmas Day; the malware also collected personal data and sent it to the attacker's server.
🔷 ZachXBT stated that hundreds of users were affected; several experts (including Anndy Lian) and CZ believe it is highly likely to be an insider, as the attacker may have pushed the infected extension to the website.
🔷 Chainalysis: Excluding the $1.4 billion Bybit case, private wallet thefts account for 37% of stolen value in 2025 — indicating increasing risk.
➡️ Recommendation: Trust Wallet users should immediately upgrade to the latest version, check their computers for malware, and monitor compensation notifications from Binance/Trust Wallet.
#TrustWallet $BTC