Security Notice: Trust Wallet Browser Extension Version 2.68 Vulnerability

Modified on Mon, 29 Dec, 2025 at 6:16 PM

Last Updated: December 29, 2025

Overview

We have identified a security incident affecting only the Trust Wallet Browser Extension version 2.68. To maintain the security of your wallet and assets, users currently using version 2.68 should immediately disable this version and upgrade to the secure version 2.69.

Important: This issue impacts only version 2.68 of the Browser Extension. Mobile-only users and users of other extension versions are not affected.

What You Need to Do

If you have not yet updated to version 2.69, please do not open or use the Trust Wallet Browser Extension on your desktop device until you have completed the update. This precaution helps protect your wallet and prevent any further security issues.

Follow the step-by-step guide below to disable the vulnerable version and update safely:

Step-by-Step Update Guide

  1. Do not open the Trust Wallet Browser Extension until after completing these steps.

  2. Open your Chrome browser and go to the Extensions panel by entering the following address in the URL bar:
    chrome://extensions/?id=egjidjbpglichdcondbcbdnbeeppgdph

  3. Locate the Trust Wallet extension and toggle the switch to Off if it is currently On.

  4. Enable Developer mode by clicking the toggle in the upper right corner of the Extensions page.

  5. Click the Update button located in the upper left corner to refresh your extensions.

  6. After updating, verify the version number of Trust Wallet is 2.69 — this is the latest, secure version.


You can also access the official Trust Wallet Browser Extension directly on the Chrome Web Store here:

Trust Wallet - Chrome Web Store

Refund Process

If you believe you have been affected by this security incident and need to request a refund, please follow the claims process carefully. To validate your claim and protect your security, the following required attachments must be submitted with your refund request:

Scan of valid government-issued Identification Document

Examples include Passport or Driver's License. The document must contain your full name and a clear facial photo and must not be expired. This information is solely for processing and validating your claim and will be deleted once the claims process is complete. Claims submitted without this document will not be processed.

Proof of ownership of affected wallet addresses 1: 

Please upload a screenshot of the "Fund your wallet" (Receive) QR code page for the relevant networks from the Trust Wallet mobile app or browser extension. We require a full screenshot of the app page and not just the QR code alone. The wallet addresses must match those listed in your claim. Multiple files can be uploaded if needed.

Proof of ownership of affected wallet addresses 2:

Please upload a screenshot or email receipt showing the funding of the affected wallet from a centralized exchange or onramp dated before December 24, 2025. The receipt must clearly show your name and the funded wallet address to verify your identity and ownership. 


KYC


From our ticket system, we will send you a secure link to our trusted KYC partner to verify your identity. Please note that the information you provide will be used solely to validate your claim and to prevent fraud related to your reimbursement. We partner with a reputable global KYC provider, and your data will be retained only for the duration required by applicable financial record-keeping regulations. Once that period expires, your information will be permanently deleted to ensure your privacy and security.



Police report (recommended)

This will be helpful to speed up the process and validate the claim.

  • We need this information to make sure that the funds get back to the right people. Our commitment to you

  • We will only use it to validate your claim and prevent scam theft of your reimbursement

  • We retain this information only for the period required by financial record-keeping laws and potential law enforcement investigations, after which it will be permanently deleted

  • Once we receive this information, it will be reviewed by our team to see if it meets the parameters identified by our security team.


Frequently Asked Questions (FAQ)

1. How long will the refund process take?

While we cannot provide an exact estimated time of completion (ETA), please be assured that every claim will be handled with diligence and care. Once our forensic investigation confirms your eligibility, the refund will be processed and sent to a newly created wallet associated with your claim. This process applies fairly to all affected users.

2. What cryptocurrency will I receive my refund in?

The specific coin for refunds is still being determined, but most likely the refunds will be issued in stable-coins to ensure value stability.

3. What if I have questions during the claim process?

If you have any questions or need assistance throughout the refund process, please contact our support team through the official Trust Wallet support channels for timely help.

4. Can I submit claims without all the required attachments?

No. All claims must include the required documentation to verify your identity and ownership of the affected wallet(s). Claims submitted without complete attachments will not be processed.

5. Will mobile-only users or users of other extension versions be affected?

No. This security incident impacts only users of the Browser Extension version 2.68. Mobile-only users and those using other versions of the extension are not impacted.

6. How long will the refund process take?

Please be assured that every claim will be handled with diligence and care. Once our forensic investigation confirms your eligibility, the refund will be processed and sent to a newly created wallet associated with your claim. This process applies fairly to all affected users.


7. How do I create a new Wallet For reimbursement 


You can follow this step-by-step guide to create your own multi-coin wallet with ease. This guide will walk you through the process  


We’re Here to Help

We understand the concerns this security incident may cause and want to assure you that our team is actively working to reinstate the assets of affected users. We have partnered with various organizations specializing in funds identification and have taken all necessary measures to remove the compromised extension version from public access.


Please continue to monitor this support page and follow our official channel on the X platform for the latest updates and guidance.


Stay safe, and thank you for your prompt attention to this important matter.

Trust Wallet Support Team

If you have any questions or need assistance, please reach out to our support channels.

This article reflects the latest information as of December 29, 2025, and will be updated as necessary.

Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article

×