Trust Wallet CEO Provides Update on New Chrome Web Store Wallet Extension
Summary
The release of the new Trust Wallet browser extension for the Chrome Web Store is temporarily halted due to an encountered bug, according to CEO Eowyn Chen. This delay is significant because the new version contains a feature designed to help victims of the recent Christmas Day hack submit reimbursement claims for their lost funds, which totaled $7 million. Chen noted that they have identified 2,596 affected wallet addresses and received about 5,000 claims, suggesting many false or duplicate submissions. Trust Wallet's incident report suggests the hack stemmed from the "Sha1-Hulud" supply chain exploit, which led to the leak of development "secrets" and the Chrome Web Store API key, allowing an attacker to upload a malicious version. Both Trust Wallet and Binance co-founder CZ suspect the involvement of an insider due to the attacker's familiarity with the code.
(Source:Cointelegraph)