Supply chain
[SC] Supply Chain
[loss] $7M+
Tweet thread by TrustWallet
Primary Source ↗Financial Loss
$7.0M
(7,000,000 USD)
Incident Details
The Trust Wallet Chrome extension was compromised in an apparent supply chain attack. People who used the non-custodial wallet extension after it updated to version 2.68 lost funds after malicious code was introduced to exfiltrate wallet seed phrases so that the attackers could then drain the wallets. Victims have lost a combined $7 million due to the compromise.Binance founder Changpeng Zhao — who supposedly has no managerial role at Binance after he and the company were criminally charged in the US — announced that Binance would reimburse users who lost funds.
Total loss estimated at $7,000,000.
Technical Details
- Initial Attack Vector
- Software supply chain attack
- Vendor / Product
- Trust Wallet
- Supply Chain Attack
- ✅ Confirmed third-party / vendor compromise
Timeline
- 2025-12-25 Breach occurred
- 2025-12-25 Publicly disclosed