A well-known browser wallet extension experienced a supply chain attack in its December 24 update. Affected users who imported their seed phrase found their wallets immediately emptied—the entire process completed in an instant.



According to security tracking data, the confirmed losses have exceeded $7 million. Even more concerning, the attacker used multiple addresses to disperse the funds, increasing the difficulty of tracking.

Security advice: If you imported your seed phrase during that time period, it is recommended to immediately check your asset status and be cautious about any extension updates. In the Web3 world, supply chain-level attacks like this are often the most deadly—because users are usually completely unprepared.
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • 4
  • Repost
  • Share
Comment
0/400
FudVaccinatorvip
· 6h ago
7 million lost, that's why I've been saying you need to be careful with extensions. Who would believe it? Importing seed phrase directly clears everything. This tactic is really ruthless, it's the kind that can't be prevented. Supply chain attacks are the most sinister in Web3. We can't defend against them, everyone. It's another update causing trouble. Now I get wallet update reminders and feel a bit nervous. Multiple addresses for dispersed payments—attackers are really professional, making tracking extremely difficult. Everyone who imported on December 24th, check now, don't wait. I already said not to trust everything about browser extensions. Now it's too late.
View OriginalReply0
JustHereForAirdropsvip
· 6h ago
7 million USD lost, that's why I never dare to update my wallet casually. It's so disgusting.
View OriginalReply0
WenMoon42vip
· 6h ago
$7 million was gone in an instant. Is this Web3? I really can't hold it together anymore. --- This kind of supply chain attack is really disgusting, unstoppable and hard to defend against. --- I was wondering why the wallet was acting strange after the update that day. Luckily, I didn't import the seed phrase. --- Who should I blame this time? Truly speechless. --- Using decentralized addresses for payments is really ruthless; you can't even chase after them. --- Does anyone know exactly which part went wrong... --- Another major catastrophe. That's why I don't dare to update casually. --- Damn, my friend imported it that day, and he's still crying his eyes out. --- Web3 security issues are getting more and more outrageous. It feels like I can't even play anymore. --- No wonder it's advised to be careful with extension updates. Turns out there are so many tricks.
View OriginalReply0
TheShibaWhisperervip
· 6h ago
70 million USD just gone like that, it's really outrageous... The blow to the supply chain was too harsh.
View OriginalReply0
  • Pin

Trade Crypto Anywhere Anytime
qrCode
Scan to download Gate App
Community
  • 简体中文
  • English
  • Tiếng Việt
  • 繁體中文
  • Español
  • Русский
  • Français (Afrique)
  • Português (Portugal)
  • Bahasa Indonesia
  • 日本語
  • بالعربية
  • Українська
  • Português (Brasil)