{"id":204515,"date":"2025-12-28T06:03:21","date_gmt":"2025-12-28T06:03:21","guid":{"rendered":"https:\/\/www.newsbeep.com\/nz\/204515\/"},"modified":"2025-12-28T06:03:21","modified_gmt":"2025-12-28T06:03:21","slug":"trust-wallet-users-at-risk-zachxbt-flags-security-warning","status":"publish","type":"post","link":"https:\/\/www.newsbeep.com\/nz\/204515\/","title":{"rendered":"Trust Wallet Users at Risk? ZachXBT Flags Security Warning"},"content":{"rendered":"<p>Blockchain investigator ZachXBT reported on December 25 that multiple Trust Wallet users experienced unauthorized fund outflows within the past few hours.\u00a0<\/p>\n<p>Affected users say assets were drained from their wallet addresses without approval.<\/p>\n<p>Sponsored<\/p>\n<p>SponsoredMajor Security Warning For Trust Wallet Users?<\/p>\n<p>According to ZachXBT, the exact root cause remains unconfirmed. However, the timing has raised concerns. Today\u2019s incidents followed a recent update to <a href=\"https:\/\/beincrypto.com\/trust-wallet-revolut-crypto-pay\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Trust Wallet\u2019s<\/a> Chrome extension that was released a day earlier.\u00a0<\/p>\n<p><a href=\"https:\/\/beincrypto.com\/zachxbt-slams-xrp-exit-liquidity-ripple-price\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">ZachXBT<\/a> has begun collecting wallet addresses linked to the suspected thefts and asked affected users to come forward as the investigation continues.<\/p>\n<p><img decoding=\"async\" src=\"https:\/\/www.newsbeep.com\/nz\/wp-content\/uploads\/2025\/12\/76c46efce24344f9a7acbc5c7412f75a.png\" alt=\"\" class=\"wp-image-785527\"\/>ZachXBT Issues Community Alert for Trust Wallet Users on His Telegram Group<\/p>\n<p><a href=\"https:\/\/beincrypto.com\/learn\/buy-xrp-trust-wallet\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Trust Wallet<\/a> has since confirmed a security incident affecting Trust Wallet Browser Extension version 2.68 only. <\/p>\n<p>In a public statement, the company said users running version 2.68 should disable the extension immediately and upgrade to version 2.69 via the official Chrome Web Store.<\/p>\n<p lang=\"en\" dir=\"ltr\">We\u2019ve identified a security incident affecting Trust Wallet Browser Extension version 2.68 only. Users with Browser Extension 2.68 should disable and upgrade to 2.69.<\/p>\n<p>Please refer to the official Chrome Webstore link here: <a href=\"https:\/\/t.co\/V3vMq31TKb\" rel=\"nofollow\">https:\/\/t.co\/V3vMq31TKb<\/a><\/p>\n<p>Please note: Mobile-only users\u2026<\/p>\n<p>\u2014 Trust Wallet (@TrustWallet) <a href=\"https:\/\/twitter.com\/TrustWallet\/status\/2004316503701958786?ref_src=twsrc%5Etfw\" rel=\"nofollow noopener\" target=\"_blank\">December 25, 2025<\/a><br \/>\nSponsored<\/p>\n<p>SponsoredChrome Extensions Continue to Drive Wallet Security Concerns<\/p>\n<p><a href=\"https:\/\/beincrypto.com\/malicious-chrome-extension-targets-solana\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Chrome extensions operate<\/a> with elevated permissions. Security researchers have repeatedly warned that a single malicious update or compromised dependency can expose users to significant risk.<\/p>\n<p>Recent months have already seen several high-profile extension-related wallet threats.\u00a0<\/p>\n<p>Security firms previously <a href=\"https:\/\/thehackernews.com\/2025\/11\/fake-chrome-extension-safery-steals.html\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">flagged<\/a> fake wallet extensions designed to capture seed phrases, allowing attackers to fully recreate wallets and drain funds later.\u00a0<\/p>\n<p><img decoding=\"async\" src=\"https:\/\/www.newsbeep.com\/nz\/wp-content\/uploads\/2025\/12\/53ad47091dcc45c4bdf15bcecb1a603d.png\" alt=\"\" class=\"wp-image-785526\" style=\"width:1029px;height:auto\"\/>Recently Reported Fake Chrome Extensions that Drain Crypto Wallets. Source: <a href=\"https:\/\/thehackernews.com\/2025\/11\/fake-chrome-extension-safery-steals.html\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">The Hacker News<\/a><\/p>\n<p>In other cases, malicious trading \u201c<a href=\"https:\/\/socket.dev\/blog\/malicious-chrome-extension-injects-hidden-sol-fees-into-solana-swaps\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">helper<\/a>\u201d extensions quietly modified transaction instructions, siphoning small amounts of crypto each time a user approved a swap.<\/p>\n<p>More broadly, cybersecurity researchers have documented campaigns involving seemingly legitimate browser extensions that were later updated to inject scripts, reroute traffic, or harvest sensitive data.\u00a0<\/p>\n<p>While not always crypto-specific, such capabilities can be repurposed to <a href=\"https:\/\/beincrypto.com\/yi-he-wechat-hack-mubarakah-pump\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">target wallet sessions<\/a>, sign-in flows, or transaction approvals.<\/p>\n<p>Against that backdrop, the Trust Wallet reports have triggered immediate concern across the crypto community.\u00a0<\/p>\n<p>Users are being urged to review recent transactions, revoke unnecessary permissions, and avoid signing new transactions until more clarity emerges.\u00a0<\/p>\n<p>Those who suspect compromise are advised to move remaining funds to new wallets created from fresh seed phrases.<\/p>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n","protected":false},"excerpt":{"rendered":"Blockchain investigator ZachXBT reported on December 25 that multiple Trust Wallet users experienced unauthorized fund outflows within the&hellip;\n","protected":false},"author":2,"featured_media":204516,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[16],"tags":[342,111,139,69,145],"class_list":{"0":"post-204515","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-mobile","8":"tag-mobile","9":"tag-new-zealand","10":"tag-newzealand","11":"tag-nz","12":"tag-technology"},"_links":{"self":[{"href":"https:\/\/www.newsbeep.com\/nz\/wp-json\/wp\/v2\/posts\/204515","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.newsbeep.com\/nz\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.newsbeep.com\/nz\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/nz\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/nz\/wp-json\/wp\/v2\/comments?post=204515"}],"version-history":[{"count":0,"href":"https:\/\/www.newsbeep.com\/nz\/wp-json\/wp\/v2\/posts\/204515\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/nz\/wp-json\/wp\/v2\/media\/204516"}],"wp:attachment":[{"href":"https:\/\/www.newsbeep.com\/nz\/wp-json\/wp\/v2\/media?parent=204515"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.newsbeep.com\/nz\/wp-json\/wp\/v2\/categories?post=204515"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.newsbeep.com\/nz\/wp-json\/wp\/v2\/tags?post=204515"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}