Trust Wallet Begins Compensation for Victims of $7 Million Browser Extension Hack
Trust Wallet has launched a formal compensation process after a malicious Chrome extension update exposed hundreds of users to fund theft.




Which topics should we dive deeper into?
Select what genuinely interests you. Your picks feed directly into our editorial planning.
Crypto news that's actually worth your time.
Weekly. 60 seconds. Carefully curated by our editors: no hype, no promo flood, no spam.
When a wallet provider says self custody, users expect the software layer to be airtight. That trust took a hit this week after Trust Wallet confirmed a malicious update to its Chrome browser extension led to the theft of roughly $7 million in digital assets. Now, the company says it is moving fast to make affected users whole.
Two days after discovering the breach, Trust Wallet announced it has launched a formal compensation process for victims impacted by the compromised version 2.68 of its Chrome extension.
How the Compensation Process Works
Trust Wallet has opened an official claims portal where affected users can submit details related to the attack. The form asks for basic identification information such as email address and country, along with technical evidence including compromised wallet addresses, attacker receiving addresses, and transaction hashes.
The company says every submission will be individually reviewed. According to Trust Wallet, this verification is essential to prevent errors, false claims, or further abuse of the situation.
In a public statement, the company said it is working around the clock to finalize compensation and ensure accuracy while maintaining security throughout the process.
What Was Stolen and Where the Funds Went
The breach resulted in losses across multiple blockchains, including Bitcoin, Ethereum, and Solana. Blockchain security firm PeckShield estimates that over $4 million of the stolen funds have already passed through centralized exchanges such as ChangeNOW, FixedFloat, and KuCoin.
As of the latest onchain data, roughly $2.8 million remains in wallets controlled by the attacker.
Binance Confirms Loss Coverage
Adding reassurance for users, Changpeng Zhao, founder of Binance, confirmed publicly that all verified losses will be covered.
In a post on X, Zhao stated that approximately $7 million was affected and that Trust Wallet will fully compensate users, emphasizing that user funds remain SAFU.
How the Attack Happened
The incident first surfaced after onchain investigator ZachXBT warned on Telegram that multiple Trust Wallet users were reporting drained balances shortly after installing the December 24 update.
Trust Wallet’s internal investigation revealed that a leaked Chrome Web Store API key was used to publish the malicious extension update at 12:32 p.m. UTC on December 24. This allowed the attackers to bypass the company’s internal release controls.
Security firm SlowMist later identified the malicious code, which leveraged a modified open source analytics library to harvest wallet seed phrases. Once compromised, attackers could quickly drain funds without further user interaction.
Who Was Affected and Who Was Not
Only users of the Chrome extension running version 2.68 were impacted. Trust Wallet pushed a patched release, version 2.69, on December 25. According to CEO Eowyn Chen, users who logged into the extension before December 26 at 11 a.m. UTC were potentially exposed.
Mobile app users and those using other browser versions of the extension were not affected. The Chrome extension alone has close to one million users, according to its Web Store listing.
Warning Against Fake Compensation Scams
Trust Wallet is also urging users to stay alert. In the aftermath of the breach, fake compensation forms and impersonation scams have already begun circulating. The company stressed that claims should only be submitted through its official support portal and warned users not to share recovery phrases or private keys under any circumstances.
What This Means Going Forward
This incident is a reminder that even well known wallet providers remain exposed to supply chain risks, especially through browser extensions. While Trust Wallet’s decision to fully compensate users helps restore confidence, the breach underscores how a single leaked credential can cascade into millions in losses.
For users, the lesson is simple but uncomfortable. Updates matter, verification matters, and browser extensions remain one of the softest targets in the crypto ecosystem.
Related articles
- Breaking: Trust Wallet Chrome Extension Hack Drains $7M, Full Reimbursements Promised
- Trust Wallet Drops 25 Networks: What Users Should Know After September 15
- IoTeX on Coinbase: What IOTX Holders Should Know After the September 23 Trading Halt
- Hot Wallet or Cold Wallet: the Private Key Decides How Safe Your Coins Are
- How to Set Up a Crypto Wallet: Securing Your Coins in Seven Steps
Which topics should we dive deeper into?
Select what genuinely interests you. Your picks feed directly into our editorial planning.
Crypto news that's actually worth your time.
Weekly. 60 seconds. Carefully curated by our editors: no hype, no promo flood, no spam.
August 24, 2026 1:22 PM

Phantom Wallet Ends Sui and Monad Support: What to Do Before the Deadlines
Phantom Wallet removes Monad from its app on August 26 and Sui on September 24. The balances are not lost, but only one of the two ways out leaves your tax position untouched.
August 22, 2026 10:13 AM

BaFin Warns Against NC Wallet and ncwallet.net: What Users of the Wallet App Must Check Now
On August 19, 2026, BaFin issued a warning about the NC Wallet app and two websites: on the regulator's findings, the unknown operators offer financial services there without authorisation. Because the wallet is custodial, it is the provider and not you who holds the key to your balance.
August 21, 2026 4:27 PM

Wallet App Without BaFin Authorisation: When Holding Crypto-Assets Requires a Licence
On 19 August 2026 BaFin published two consumer notices on wallet offerings. Who controls the means of access decides whether an authorisation is needed.
August 20, 2026 4:24 PM

Bitcoin Across Multiple Wallets: How Austria Works Out the Acquisition Cost
Bitcoin spread across several wallets? How Austria works out the acquisition cost and the rolling average price for tax purposes.
September 30, 2026 7:16 AM

Tangem Wallet: The Card Without a Seed Phrase vs the Classic Hardware Wallet
The Tangem Wallet secures crypto with two or three identical cards instead of 24 words. What the sets cost, what the EAL6+ chip delivers and why losing every card is final.
September 28, 2026 10:26 AM

Phantom Wallet and Solscan: What a Solana Transfer Really Costs and Where It Fails
A transfer on Solana costs 0.000005 SOL, a new token account ties up 0.00148844 SOL once — both values measured on-chain by us today. This practical guide shows how to set up Phantom, how to get there from the exchange, how to read Solscan and what applies for tax in Germany.
September 27, 2026 7:14 AM

Toncoin Is Now Gram: What the Telegram Wallet Changes for Holders
Since June 15, 2026 the token of the network The Open Network has carried its original name Gram again, and since late August a self-custodial wallet has been rolling out inside the messenger. What you have to do, what MiCA says about it, and how much is left of the ecosystem that began with tap-to-earn games in 2024.
September 17, 2026 4:14 PM

D'CENT App Wallet: How to Tell If Your Recovery Phrase Has to Move Now
Manufacturer IoTrust reports suspicious asset transfers in the D'CENT app wallet and asks users to move their holdings. One question decides the matter: has your recovery phrase ever been entered into the app?
September 16, 2026 4:12 AM

Wallet Drops a Network: How to Rescue Your Coins Before the Deadline
Phantom is ending Sui support on September 24, 2026, and Trust Wallet has already removed 25 networks: five shutdowns of this kind in four weeks alone. What really happens to your balance, which two routes you have before the deadline and where the move most often fails.
September 2, 2026 7:44 AM

MyDoge Ends Doginals and DRC-20 Support: What Holders Should Know After September 17
Recap as of September 27, 2026: infrastructure provider Maestro had announced it would discontinue its Dogecoin services on September 18, 2026, with MyDoge withdrawing support for Doginals and DRC-20 a day earlier. Our own survey of September 2 showed that nothing about the shutdown could be found on the public pages of those involved.
August 31, 2026 7:20 AM

Browser Extensions as Wallet Thieves: How a Sports App Became a Seed Phrase Collector
In August 2026 the security firm Socket disclosed two separate campaigns: 40 confirmed malicious Firefox extensions and 19 for Chrome and Edge, all of them from the official marketplaces. Nine of them were harmless sports apps that only turned into wallet thieves through an update.
November 26, 2025 11:00 PM

Bitget Wallet Introduces Zero-Fee Feature for Its Crypto Card in Over 50 Markets
The Bitget Wallet Card enables fee-free stablecoin spending and customized designs, expanding everyday crypto payments across Visa and Mastercard networks.
May 23, 2024 7:29 PM

Grayscale SEC Approval: Launching Two New Crypto Funds
Grayscale is committed to expanding its portfolio of single-asset cryptocurrency trusts and offering more opportunities for investors, as it announced today the latest trusts launch.
May 18, 2024 11:00 PM

Bitget Wallet Unveils Bitget Onchain Layer, Rolls Out $10M BWB Ecosystem Fund
Bitget Wallet, a leading non-custodial wallet and decentralized ecosystem platform, has announced the launch of its latest product blueprint.
May 15, 2024 12:04 PM

Crypto Scams: How to Protect Your Cryptos?
With the rise of crypto scams, and while international efforts are still working to combat these threats and protect investors, some recent tactics have been identified, and here is your full guide.
March 12, 2020 1:12 PM

What Is A Cold Wallet? And Why Is It Important?
A cold wallet is a wallet which is completely offline and used for storing cryptocurrencies. It is also known as cold storage.
September 26, 2026 7:34 AM

Setting Up a Multisig Wallet: When Two of Three Keys Are Worth It for You
A multisig wallet demands several keys for a transfer and so makes a single theft worthless. We show which threshold fits you, what you have to back up besides the keys, and why most setups fail at the configuration.
September 25, 2026 4:11 AM

Bitget Hack of $351 Million: What to Check at Your Crypto Exchange Now
Bitget reports unauthorised outflows of around $351.6 million and has suspended withdrawals. For existing customers in Europe, that closes the one route MiCA had left them.
September 20, 2026 4:15 PM

Crypto Phishing After a Data Breach: The Warning Signs in a Fake Exchange Email
After every major data breach, the number of phishing emails sent in the name of crypto exchanges and wallet manufacturers rises. This article shows you how to recognise such a message, which data a reputable provider never requests by email, and what to do in the first hour after a click.
September 16, 2026 1:28 PM

Crypto Withdrawal to Your Own Wallet: Ten Providers Checked, Three Will Not Let Your Coins Out
Seven of ten providers available in Germany offer a payout to a wallet address you control yourself; three do not. Our survey of September 16, 2026, shows how to spot the difference before you buy, and why the question matters right now.
September 16, 2026 4:19 AM

Check Your Safe Wallet Modules: How One Module Moved $7.7 Million Without a Signature
On September 15, 2,882 rsETH drained out of a Safe multisig without a single owner signing. An enabled module was to blame, and this is how you check your own wallet in five minutes.
September 13, 2026 10:19 PM

Reporting Duty for Wallet Makers: What Has Applied Since September 11, 2026
Since September 11, 2026, anyone offering a wallet commercially in the EU must report an actively exploited vulnerability within 24 hours and inform the affected users. What Article 14 of the EU Cyber Resilience Act requires, where the limit of interpretation lies, and what you should take from it for your own custody.
September 7, 2026 7:26 PM

Stolen Keys Beat Code Flaws: Why the Private Key Is the Way In for 2026 Crypto Hacks
Compromised private keys overtook smart contract code flaws as the most common attack route for the first time in 2026. What sits behind the shift, and how to check your own setup for its single point of failure.
September 6, 2026 7:11 PM

EUDI Wallet: The EU Deadline Falls on December 24, 2026, Germany Targets January 2, 2027
Two deadlines, both verifiable, and both counted from the implementing acts of December 2024 rather than from the day the regulation entered into force. Plus the honest answer to the question of whether crypto exchanges have to accept the wallet.
September 1, 2026 7:27 AM

Clipboard Attack: How Malware Swaps the Wallet Address You Copied
A clipper replaces the receiving address between copying and pasting with the attacker’s, and your wallet’s checksum notices nothing. What Microsoft and the Federal Office for Cybersecurity have documented, and which check really makes the attack come to nothing.
August 31, 2026 1:22 PM

Cosmostation Wallet Shutdown on September 1: What Cosmos Wallet Users Should Know Now the Deadline Has Passed
Recap as of September 27, 2026: Cosmostation had announced it would discontinue its wallet apps on September 1, 2026, leaving only the export of the recovery phrase and the private key. This article describes the situation before the deadline and how to move Cosmos holdings, including delegated ATOM.
August 31, 2026 10:12 AM

Fake AML Checks for Crypto Wallets: How to Spot the Scam Sites
Fraudulent websites pose as money-laundering screening services for crypto addresses and ask you to connect your wallet. A genuine check needs only the public address, and three of the domains named by Malwarebytes still respond twelve days later.
More from CryptoTicker
