December 29, 2025
Trust Wallet? Trust Issues!
Binance's Trust Wallet extension hacked; users lose $7M
Trust Wallet hack drains $7M; community cries irony as CZ promises payback
TLDR: A malicious Trust Wallet browser update let thieves steal $7M by grabbing users’ secret keys, and CZ says Binance will reimburse victims. Commenters are split between insider-theory drama, “crypto is too fragile” rants, and jokes about trust being the first thing to get hacked.
Crypto’s “Trust Wallet” Chrome extension just betrayed its own name, and the comments are absolute chaos. After a recent update (version 2.68), malicious code allegedly grabbed people’s secret recovery phrases — the keys to their money — and wallets were drained for a combined $7 million. Binance’s founder CZ chimed in to say victims would be reimbursed, which immediately sparked drama: some users called it damage control from someone who “doesn’t run Binance” anymore, while others cheered the refund like a corporate bailout with bonus points.
The hottest thread: was this an insider job or fallout from a bigger code repo hack? One commenter pointed to prior GitHub compromises and asked if Trust Wallet got caught in that blast radius. Meanwhile, skeptics like wyldfire rolled their eyes at the whole concept: crypto sounds cool, but one slip and your money vanishes — and the “do-it-yourself banking” vibe is proving brutal. Another popular take: sunshine-o slammed Web3’s reliance on old-school web tech, calling it the Achilles’ heel that keeps letting attackers in. And just to prove how wild things are, a separate trader lost nearly $50 million in a lookalike-address scam, then posted an on-chain “come back with my money” note while the thief washed funds through Tornado Cash. The meme of the day: “Trust Wallet? Trust issues.”
Key Points
- •Trust Wallet’s Chrome extension was compromised via a supply chain attack after updating to version 2.68.
- •Malicious code exfiltrated seed phrases, allowing attackers to drain wallets; losses total about $7 million.
- •Binance founder Changpeng Zhao stated Binance will reimburse affected users.
- •A separate trader lost nearly $50 million in Tether due to an address poisoning scam.
- •The thief laundered the stolen funds through Tornado Cash; an on-chain $1 million bounty offer saw no response.