Analysis: Trust Wallet extension wallet suspected of supply chain attack, malicious code steals seed phrases
PANews reported on December 26 that, according to security researchers @im23pds and @0xakinator, version 2.68 of the Trust Wallet browser extension is suspected of being implanted with malicious code (file 4482.js), which disguises itself as an analytics tool to steal users' mnemonic phrases. When users import their wallets, the code sends the mnemonic phrases to a newly registered phishing domain metrics-trustwallet[.]com. Currently, this domain is no longer accessible.
Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
You may also like
Knightscope increases maximum shares available under ATM equity offering program
Qfin names Yan Zheng CEO, replacing Haisheng Wu
Ryde faces Cayman Islands shareholder petition over governance, share issuance matters
Volato names Christopher M. Ensey CEO under USD 400,000 annual services agreement
