[ad_1]
A malicious update to Binance-owned Trust Wallet’s Chrome extension turned a quiet Christmas night into a nightmare for hundreds of users, resulting in losses of nearly $7 million.
The breach, which occurred on December 25, was caused by a supply-chain attack that injected malicious code into the extension’s JavaScript files, disguised as routine analytics functionality.
Users who installed the affected version (2.68) and imported their seed phrases unknowingly handed attackers access to their wallets. When users imported their recovery phrases, the…
[ad_2]
Source link