• Dapps:16.23K
  • Blockchains:78
  • Active users:66.47M
  • 30d volume:$303.26B
  • 30d transactions:$879.24M
Malicious Code in Trust Wallet Extension Compromises User Security

Malicious Code in Trust Wallet Extension Compromises User Security

user avatar

by Arif Mukhtar

6 months ago


A recent investigation by blockchain security firm SlowMist has revealed alarming details about the attack on Trust Wallet, highlighting significant vulnerabilities in the wallet's extension code. According to the official information, this incident raises serious concerns about the security measures in place for software distribution in the cryptocurrency space.

Analysis of the Attack

The analysis indicates that the attack was not the result of a malicious third-party library, but rather stemmed from direct modifications made to Trust Wallet's own extension code. Specifically, the malicious logic was embedded within the analytics component of the extension, which systematically iterated through all wallets stored in the extension.

Mechanism of the Breach

As users unlocked their wallets, the extension triggered a request for their mnemonic phrases, leading to the decryption of encrypted seed phrases. These sensitive pieces of information were then transmitted to a server controlled by the attacker.

Implications for Wallet Security

This breach highlights the urgent need for wallet providers to enhance the security of their release processes and protect users from potential exploits.

In light of the recent security concerns raised by the Trust Wallet attack, leading wallet providers have taken proactive measures to enhance user safety by collaborating with the Security Alliance SEAL. This initiative aims to combat phishing threats in the cryptocurrency space, as detailed in the full article.

0

Rewards

chest
chest
chest
chest

More rewards

Discover enhanced rewards on our social media.

chest

Other news

Fable 5 May Return with New Subscription Model

chest

Leaked information suggests that Fable 5 may return with a new weekly usage model in subscription plans.

user avatarGustavo Mendoza

Microsoft Stands Firm on Majorana 2 Quantum Chip Claims

chest

Microsoft defends its Majorana 2 quantum chip claims against criticism from physicist Henry Legg, asserting the stability of signals observed in experiments.

user avatarRajesh Kumar

Researcher Disputes Microsoft's Majorana 2 Quantum Chip Claims

chest

Researcher Henry Legg disputes Microsoft's claims about the Majorana 2 quantum chip, arguing insufficient evidence for a topological qubit.

user avatarMiguel Rodriguez

Synthetix Proposes Basis Vaults for sUSD Stability

chest

Synthetix is considering a shift towards a more structured approach to support sUSD stability through basis vaults.

user avatarLuis Flores

Synthetix Founder Addresses sUSD Management Issues

chest

Kain Warwick, the founder of Synthetix, takes responsibility for the mismanagement of sUSD, highlighting ongoing challenges in maintaining its peg.

user avatarArif Mukhtar

Crypto Markets Under Pressure as Macro Conditions Tighten

chest

The crypto markets are currently facing increased pressure as macroeconomic conditions shift towards a more hawkish stance.

user avatarMaria Gutierrez

Important disclaimer: The information presented on the Dapp.Expert portal is intended solely for informational purposes and does not constitute an investment recommendation or a guide to action in the field of cryptocurrencies. The Dapp.Expert team is not responsible for any potential losses or missed profits associated with the use of materials published on the site. Before making investment decisions in cryptocurrencies, we recommend consulting a qualified financial advisor.