đ NO APPROVALS. NO WARNINGS. $7M GONE.
1ïžâŁ On Dec 24, Trust Wallet released Chrome Extension v2.68
Hidden inside: malicious code disguised as analytics.
2ïžâŁ When users opened wallets or entered seed phrases,
the code secretly sent them to a fake domain: metrics-trustwallet.com
3ïžâŁ With seed phrases stolen, hackers didnât need approvals.
They simply restored wallets elsewhere and drained everything.
4ïžâŁ Damage so far:
đ„ $7M+ stolen
đ„ BTC, ETH, SOL, BNB Chain affected
đ„ Some users lost six figures in minutes
5ïžâŁ Stolen funds flowed through: ChangeNOW âą FixedFloat âą KuCoin âą HTX
6ïžâŁ CZ CONFIRMS:
Trust Wallet will fully reimburse all affected users
âUser funds are SAFU.â
7ïžâŁ đš DO THIS NOW
â Avoid v2.68
â Update to v2.69 (official store only)
đ If you used v2.68 â move funds to a new wallet immediately
8ïžâŁ đ§ Lesson:
Browser wallets = higher risk
Wallet-level hacks = full access
đ $3.4B+ stolen in crypto in 2025 alone
đ Verify everything. Never share your seed phrase